General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Extending VLAN through IPSEC + GRE

I am trying to extend the VLAN from main site to branch site using a combination of GRE and IPSEC.

 

Below is a quick representation of the architecture, the objective is to enable remote communications between the main and the branch sites for all d

...

OELHANCHI_0-1714232289883.png

VM-50 discontinued?

Hi,

 

We have a VM50 firewall in our business for 3yrs and have been told that the VM-50 is no longer available? As such, we need to get a VM-100 licence. Are there any other options? - since the cost is double?

 

Thanks

cluster

Hello, Can you form a HA cluster with a PA-3020 and PA-3060? Or do models have to be identical?

Joeful by L0 Member
  • 350 Views
  • 1 replies
  • 0 Likes

Globalprotect-Need LDAP and RADIUS auth(MFA)

I am currently using Digipass Vasco OTP as RADIUS for Globalprotect. Users just put in their LDAP username and the OTP to login.

I'm looking to add another factor i.e LDAP username and password before they get prompted for RADIUS token. Pls help me co

...

TCP fast open and Palo Alto

as far as I could test there is no way to make TCP fast open work through a Palo Alto fw (at least, since  9.1 which seemed to work. It tried 10.2 and 11.2 and all my tests fail there).

Whenever a client sends a SYN packet with data, it is transmitte

...

frigault by L0 Member
  • 983 Views
  • 2 replies
  • 0 Likes

10.0.10 code bug? LDAP auth server is up !!!

Since upgrading to 10.0.10, we've been getting system medium severity messages on our active firewalls that "LDAP auth server xxxx.xxx.xxx is up !!!".  We never receive a down message though.  We're not experiencing any issues with LDAP which makes m

...

jmurphy by L2 Linker
  • 4634 Views
  • 12 replies
  • 1 Likes

SysLog setup not working

Hi,

I am using PA-2050, with PAN OS 4.1.3.

From few days I am trying to configure the syslog to be sent to a central logging system. I followed every possible documentation, but I am not getting any syslogs coming to the syslog server.  I tried on sys

...

GlobalProtect Split DNS configuration

I'm looking to configure split tunneling and DNS in the following way:

 

If the DNS request is from a defined list, send the query to the tunnel DNS servers, if not, send through local adapter DNS. If the resulting reply contains an IP in the defined

...

JoeLane by L0 Member
  • 938 Views
  • 3 replies
  • 0 Likes
  • 23707 Posts
  • 103 Subscriptions
Top Solution Authors
Top Liked Authors
Labels