General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 239 Views
  • 0 replies
  • 0 Likes

NAT/PBF behaviour

Hi,

 

I am having some trouble successfully creating a NAT/PBF combination. Long story short...:

 

We have an office with two WAN switches that have IP addresses in the same range as that office LAN WiFi IP range. Thus if anyone in the office or on their

...

NAT1.PNG
NAT2.PNG
PBF1.PNG
PBF2.PNG

Site-to-Site Palo Alto VPN is Failing

I apologize if this is posted in the wrong message board. It is unclear to me where I should specifically be asking this type of question. 

 

I configured a site-to-site IPSec VPN between two Palo Alto's and they are both failing on Phase 1 and Phase 2

...

Internet not working

Hi Guys,
So we were using a router with two VLAN 10 and 20, connected to two different APs and everything was working fine.

Today we purchased a firewall and we placed it before the router (refer to the image). I created two static routes 192.168.110.0

...

Firewall.png
Satyam by L1 Bithead
  • 2695 Views
  • 1 replies
  • 0 Likes

Resolved! PanOS upgrade strategy

Hi All,

We are running PA firewalls + Panorama + Prisma Access in our environment. Our aim is to upgrade our cloud prisma plugin to 3.0 for additional features, however we are not getting the best approach to do this. 

Our existing environment is : 

Dev...

"Error in getting config lock"

Hi, 

 

 We encountered an error "Error in getting config lock"  on the web gui and an error "Server error: Error in getting config lock" when we tried to run commands on the CLI. This issue has been resolved by the TAC with the help of the root engin

...

SNMP Trap test

Hi

i need to do the SNMP Trap test from the FW's. Mainly i am looking for HW's related issues. Is there a way we can manually generate the trap and test. I am looking for these, and if any new Traps are there in recent days pls share it.

panROUTINGRout

...

PA-3020 Dataplane 100%

We have aggregated ports for the PA to "handle" what Consolidated has for us on a 2GB circuit.  Is this a case where our 3020 can't handle the traffic we have or is excessive logging a more likely culprit.  GoldSeal has our support and the need for i

...

sgarvin by L0 Member
  • 2079 Views
  • 3 replies
  • 0 Likes

Resolved! Template Variables - vrouter destination

I seem to not be able to use a template variable as a route destination in a vrouter.  There is an option to create a variable in the destination field, but it becomes an invalid option after creating.

 

 

If you know how to make this work, please let m

...

jasonrakers_1-1647027402719.png
jasonrakers_0-1647027347760.png

Resolved! iBGP Between Palo Alto and Cisco Router

Got two Cisco ISR 4431 as border routers peering with 2 ISP. Got PA-850 that I need to configure as:

  1. HA
  2. iBGP - OSPF
  3. configured ip unnumbered on the Palo Alto interface connecting to the Cisco 

Any configuration example out there that can assist will be r

...

HA mistake after update to 10.2

FW1 10.1.4 è Download 10.2 and synch to FW2

Download OK Sync OK

Setup 10.2 on FW1 and reboot ==> FW2 begin Master.

Check FW1 reboot OK 10.2 online OK.

FW1 ==> Master

Setup 10.2 on FW2

Reboot ==> Lost access on management interface.

  • Disconnect Wan int
...

Resolved! XFF When Using DNS Proxy Object

Hi All,

 

I am using DNS proxy and as such all the threat logs that are to do with DNS requests only have the firewall IP in them, all users are using Global Protect and I have enabled x-forwarded-for headers for user-id.

 

Is there anything else that I

...

  • 23624 Posts
  • 107 Subscriptions
Labels