General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Captive Portal doesn't work for remote offices

Greetings to all

I have the scenario described in the graph:

 

I use Captive Portal based authentication for certain devices. It works fine for the LAN zone, but not for the WAN zone.

In the WAN Zone we have remote offices that connect through the MPLS o

...

adiazm_0-1630073510049.png
adiazm by L1 Bithead
  • 2942 Views
  • 4 replies
  • 0 Likes

Layer 2 vlan subinterface restriction?

Hello

I am using PA VM-50 and wonder if there is any restriction on the number of Layer 2 subinterfaces that I can create under 1 interface.   I have more than 50 vlan subinterfaces created and the one I have added recently does not seem to pass traff

...

User-ID agent Alert

Hi,

 

As i have two user ID agent and both are working fine. Iam continuously received this alert on email please suggest

 

 

Joshan_Lakhani_0-1638692105308.jpeg

Resolved! Firewall upgrades guidance

  1. Hello we have a customer with central location acting as Datacenter with PA 3000 series. The panorama also stays in same DC.

 

All the other locations worldwide are connected to central DC over IPSEC tunnels.

 

Most of the firewalls running at remote sit

...

Resolved! high CPU (management plane) after enabling ECMP

Hello

 

We have an active/passive cluster (PA-820) which we use for IPSec tunnels (with 30 different partners).

One of the partners insisted on having a redundant connection using two IPSec tunnels with different peers. So we came up with the idea of en

...

Resolved! GlobalProtect monitoring

I need to graph GlobalProtect current users + traffic via SNMP. I cannot find anything in SNMPwalk or in the available MIBs.


I looked through some older discussions but it seems there is no immediate answer. Any update?


Thanks

Routing issues when using NAT over VPN

I'm looking at this document. https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClipCAC
It says our selected NAT addresses (2.2.2.0/24 on PA-2020 in this case) need to be routed to a tunnel interface, in order for policy lookup

...

mathiasj by L1 Bithead
  • 1688 Views
  • 2 replies
  • 0 Likes

Session end reason threat traffic allow

Hi Everyone 

 

we got the problem for session end reason “threat”, cause we detected the coin miner traffic through firewall and transmission to internet, even we saw the session end reason already hit to threat when the spyware traffic initially and

...

Resolved! PA220 upgrade to 10.0.x

hello

 

we have a customer with PA220 runing 8.1.8 and they want to upgrade to 10.0.8

 

I know 10.0 is supported on PA220 but is there any performance issue on PA220 for panOS 10.0.X LIKE slowness etc ?

 

Any guidelines if is it worth to upgrade to 10.0.X

...

  • 24183 Posts
  • 101 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels