General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! PA-460 Minimum Version of PAN

Hi Team, We are migrating to the Model PA-460 from PA-3020. May i know minimum PAN OS version that can be run on PA-460. Also could you please confirm what OS version this device will be delivered usually? Regards, Sanjay S

PA Migration from 3050 to 5220 Appliances

Seeking a little bit of advice with an upcoming Migration we are performing. We currently have an HA pair of PA-3050's that are being managed within Panorama (M-200). This HA Pair, is one of (2) Perimeter Firewalls we have in place going to our ISP. So within Panorama this HA pair is in 2 device Groups. Which is making me second guess what th...

service custom interface as a DHCP

Hello guys. The MGMT IP is the default https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000PP9uCAGhttps://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Clp3CAC I set the same settings after looking at the data, but there is no communication with the NMS server.

01.PNG
02.PNG
01.PNG
02.PNG
qmso475 by L3 Networker
  • 1947 Views
  • 2 replies
  • 0 Likes

Scheduled Configuration export From Panorama To SFTP server

Hi Team, I have configured Scheduled Configuration export to linux SFTP server, it doesn't work. Hence I'm using default sftp port 22. But in configuration I could only saw the option that can export only using FTP or SCP. I've tried using winSCP its working. But when I tried using cli command to export the "configuration.xml" file from panorama...

Sethupathi_0-1587543496868.png

Resolved! URL Filtering - Max URL Entries

Is there a limit to the number of URL entries allowed or is it only limited by hardware resources? We are a school district, so the number of whitelisted/blacklisted URLs is substantial - probably near 1000. We are currently running PANOS 10.2 on a 5250. Thanks.

Knowledge sharing: Palo Alto Free Workshops, Trainings and Trials and possible PCNSA/PCNSE training

As part of my "Knowledge sharing" series I decided to share to everyone interested in learning more about Palo Alto the following links. 1. The Palo Alto Demo Center, where there are workshops, demos, trials (You have 30 day trial on the Palo Alto NGFW with a virtual machine or the XSOAR product): https://www.paloaltonetworks.com/demos ...

Resolved! about Password complexity configuration

Hello, I configured required password change period and post login count in password complexity on my firewall. If admin login in post login count stage after required password change period expire How can admin recognize expiration of his account password? Thanks. Best regards.

hbshin by L2 Linker
  • 3899 Views
  • 2 replies
  • 0 Likes

SSL Connect Error on SMTPS Settings

We have problem with SMTPS configuration on Palo alto Firewall so we have the SMTPS Certificate and already inject to the firewall Our users says that the certificate is the certificate CA and when we test the email connection, the firewall shows error 'SSL Connect Error', we try on port 465 and using TLS 1.2 We have another brand network devi...

Resolved! PA-3410 : STP Block cannot be created

Hello all, We have a PA-3050 configured with V-wire and are operating as STP Block on the uplink of Backbone_B. We are going to replace PA-3050 with a new construction firewall, PA-3410. STP block is not generated in the in-house LAB before deployment, and disconnect occurs during communication.Has anyone experienced this before?   Thanks,

스크린샷 2022-09-26 오전 10.20.49.png

Related to Paloalto VM instance type change

Dear Team, I have a question while testing. If I'm wrong, anyone please feel free to leave a comment. 1. Check if an issue occurs in the service traffic processing part when changing the instance type> Since there is no change in the settings, traffic processing is normal, but the throughput changes depending on the instance.> ex) m5...

Resolved! PA-3410 Spanning tree cannot be generated

Hello all,We have a PA-3050 configured with V-wire and are operating as STP Block on the uplink of Backbone_B. We are going to replace PA-3050 with new construction equipment, PA-3410. STP blocks are not generated in the in-house LAB before deployment, and disconnect occurs during communication.  In conclusion, the issue has been resolved. 

1....

스크린샷 2022-09-26 오후 1.17.26.png

WSL and SSL decryption

Hi guys. We have a number of developers that use Windows Subsystem for Linux (WSL) on their Windows clients, and there are a lot of URLs and services that will not work when we decrypt the traffic. Managing a decryption exclude list for them would be a major pain, so I am thinking of ways to fix this. Is there any way to separate WSL sessions fr...

MD-OTL by L0 Member
  • 4163 Views
  • 2 replies
  • 0 Likes

PA-5250 Migration to Virtual Appliance and EoL Status

Hello I'm interested in the Palo Alto virtual or VM-series appliance that would be broadly equivalent to the PA-5250. I realise the product selection is best made based on requirements such as sessions security rules, dynamic ip addresses, security zones, ipsec vpn tunnels but that information is not available just yet. What I can say is tha...

Redman by L1 Bithead
  • 3685 Views
  • 2 replies
  • 0 Likes
  • 24412 Posts
  • 125 Subscriptions
Top Solution Authors
Labels