General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4468 Views
  • 0 replies
  • 0 Likes

Global protect disconnecting every 15 minutes after the panos upgrade from 10.1.5 to 10.1.6-H6

Kindly find the gp logs below seeing socket closed after waking up from modern standby. All the users irrespective of any gp versions are facing this issue, Any help in this regards will be appreciated: Pasting pangps logs below: P5164-T31512)Debug( 372): 09/22/22 12:46:48:164 wsc-autodetect is enabled(P5164-T31512)Debug( 421): 09/22/22 12:46:...

9.1.14-h4 and subnet shared between multiple vSYS

Hello All, We are checking a corner case design where we have PA-3220 firewall with 9.1.14-h4 software version. It has 2 vSYS enabled already and we have simple setup: ISP_Router ---- L2 Switch ---- Firewall. The question I have: is it possible to use same subnet/same VLAN ID for subinterfaces between 2 vSYS? For example we have a port-chann...

Unable to manually upload PAN-OS software into the firewall getting "upload file size exceeds system limit error"

Hi Folks, We have PA-410 deployed in our environment running on PAN-OS 10.1.2. We are unable to upload the PAN-OS software manually into the firewall getting the below error any thoughts on this "Upload file size exceeds system limit" We had checked the system disk-space. The PAN-OS image size is only 500 MB. > show system disk-space...

tamilvanan_0-1664473539930.png

Resolved! Global protect on the same interface with another public IP address

This is one of the requirements for globalProtect . Already a globalProtect tunnel running an external interface with one public IP address. Now want to create an additional globalProtect tunnel configure on the same interface with another public IP address. Both IP addresses are configured under one external interface. So please let me know i...

Resolved! PPPoE session failed to connect for user:xxxx on interface:ethernet1/1. Reason: Timeout, LCP down

PA 440 firewall with the wan interface in pope mode. When the firewall is in standalone the ppoe negotiation works fine. If configure the firewall in cluster active-passive, an issue with PPoE negotiation with this message: 'PPPoE session failed to connect for user:xxxx on interface:ethernet1/1. Reason: Timeout, LCP down

Ha_agent.log error

Hello All, I am getting this error in Ha_agent.log file on every firewall I check. 2022-08-17 18:36:13.962 +0500 debug: ha_sysd_config_status_notifier_callback(src/ha_sysd.c:2870): Ending monitor increase holdup on commit end2022-08-17 18:36:13.962 +0500 debug: ha_state_stop_increase_monitor_holdup(src/ha_state.c:1239): Ending monitor holdup...

Resolved! VM-Series - Migration from On-prem DC to Cloud

Hello I have a question from a customer regarding the VM-Series. My customer is interested in deploying a VM-Series appliance in the DC today but has a future requirement to migrate the protected application environment from the on-prem DC to public cloud. Is it possible to migrate the fully configured and operational VM-Series appliance f...

Redman by L1 Bithead
  • 2965 Views
  • 2 replies
  • 0 Likes

Resolved! PA-460 Minimum Version of PAN

Hi Team, We are migrating to the Model PA-460 from PA-3020. May i know minimum PAN OS version that can be run on PA-460. Also could you please confirm what OS version this device will be delivered usually? Regards, Sanjay S

PA Migration from 3050 to 5220 Appliances

Seeking a little bit of advice with an upcoming Migration we are performing. We currently have an HA pair of PA-3050's that are being managed within Panorama (M-200). This HA Pair, is one of (2) Perimeter Firewalls we have in place going to our ISP. So within Panorama this HA pair is in 2 device Groups. Which is making me second guess what th...

service custom interface as a DHCP

Hello guys. The MGMT IP is the default https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PP9uCAGhttps://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Clp3CAC I set the same settings after looking at the data, but there is no communication with the NMS server.

01.PNG
02.PNG
01.PNG
02.PNG
qmso475 by L3 Networker
  • 1910 Views
  • 2 replies
  • 0 Likes

Scheduled Configuration export From Panorama To SFTP server

Hi Team, I have configured Scheduled Configuration export to linux SFTP server, it doesn't work. Hence I'm using default sftp port 22. But in configuration I could only saw the option that can export only using FTP or SCP. I've tried using winSCP its working. But when I tried using cli command to export the "configuration.xml" file from panorama...

Sethupathi_0-1587543496868.png

Resolved! URL Filtering - Max URL Entries

Is there a limit to the number of URL entries allowed or is it only limited by hardware resources? We are a school district, so the number of whitelisted/blacklisted URLs is substantial - probably near 1000. We are currently running PANOS 10.2 on a 5250. Thanks.

Knowledge sharing: Palo Alto Free Workshops, Trainings and Trials and possible PCNSA/PCNSE training

As part of my "Knowledge sharing" series I decided to share to everyone interested in learning more about Palo Alto the following links. 1. The Palo Alto Demo Center, where there are workshops, demos, trials (You have 30 day trial on the Palo Alto NGFW with a virtual machine or the XSOAR product): https://www.paloaltonetworks.com/demos ...

  • 24379 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels