General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4131 Views
  • 0 replies
  • 0 Likes

Block HTTP/HTTPS access via IP

Hello. I would like to block access to my site (http/https) when it is made via IP. I want to only allow access made by name. Ex.: www.mysite.com <=> 1.2.3.4 https://1.2.3.4 => deny https://www.mysite.com => allow Is that possible with Palo Alto? Thanks.

PA-access.by.name.jpg
Robynson by L0 Member
  • 2880 Views
  • 1 replies
  • 0 Likes

Resolved! Template- Variable CSV greyed out

I want to import template variables but the "Variable CSV" is greyed out as seen below. We are running Panorama 10.2.3 . I want to build a CSV to import variables for a template. Any ideas? Thanks

NSutfin_0-1667944924048.png
NSutfin by L2 Linker
  • 2597 Views
  • 1 replies
  • 0 Likes

PA Packet Capture

Hi All, Is there any similar command which we can use to check how the packet flows in PA and where the packet is being dropped, which blade is dropping the traffic. To simplify my question is there any command like Packet tracer command in Cisco ASA? Also anything like fw monitor in Checkpoint? Regards, Sanjay S

Best practices health treshold palo alto

We need to know a threshold to determine whether the CPU memory and Palo Alto dataplane are normal, warning, or critical. Does Palo Alto itself have a predetermined threshold? #threshold #850 #panorama #m200 #800series

Resolved! PCI Compliance - Weak SSL/TLS Key Exchange - 443 / tcp over ssl

We have been having the same issue with PCI compliance scans with two different companies. After scanning, they come back with the following error: Weak SSL/TLS Key Exchange ------------------------------------------------------------------------- Change the SSL/TLS server configuration to only allow strong key exchanges. Key exchanges should pr...

jwise by L0 Member
  • 5290 Views
  • 1 replies
  • 0 Likes

Resolved! bulk URL category check in Pano 10.2

Greetings Palo-Altonians, Is there an upgraded version of the below command or API test url www.paloaltonetworks.com or an API that is compatible with #Panorama Version 10.2 Thanks for any help that you folks can provide. Cheers, ~Uri

UriPerez by L0 Member
  • 2781 Views
  • 2 replies
  • 0 Likes

HA and LSVPN in 10.1

Back in 9.x we feel like the HA peers had no trouble passing LSVPN from active to passive when an HA failover event occurred. Now in 10.1 we're seeing about half of our sites fail to bring up the tunnels when HA moves from active to passive. I've been unable to find clear documentation on what to expect in an HA event as far as LSVPN is concerne...

Global Protect - "A valid client certificate is required for authentication" but works correctly for X days after PA restart

Hi all, Just putting this out there to see if anybody else has had similar issues. If you have, I would really appreciate you letting me know please! Palo Alto PA-820 - HA (active/passive) - PanOS 9.1.5 For several months we have had intermittent problems with Global Protect rejecting client certificates when our users try to connect to o...

DavePalo by L4 Transporter
  • 16071 Views
  • 2 replies
  • 0 Likes

Palo Alto PA5220 is not login after password complexity changes

We changed the password complexity and history settings on our firewall a couple of days ago.After committing the changes the local users are not able to login on the firewall.So we tried to boot into maintenance mode by connecting through a console cable in order to roll back to a older running config.This did not do anything though, because th...

  • 24337 Posts
  • 124 Subscriptions
Labels