General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4208 Views
  • 0 replies
  • 0 Likes

Resolved! Questions about PAN-303959

Attention: Global TPM team, Hi, I have some question about PAN-303959.----Traffic that is incorrectly identified as unknown-tcp/unknown-udp eventually drops due to an App-ID resource limitation issue.----https://docs.paloaltonetworks.com/pan-os/11-2/pan-os-release-notes/pan-os-11-2-9-known-and-addressed-issues/pan-os-11-2-9-known-issues Q1...

MasaW by L2 Linker
  • 3803 Views
  • 2 replies
  • 2 Likes

Resolved! Change Geolocation IP Address

Hi When going to threatvault -> IP Feed our customer noticed his IP is wrongfully shown as US. How and where would one request to update the feed? Thanks,

ShaiW by L4 Transporter
  • 760 Views
  • 3 replies
  • 0 Likes

SAML authentication with cookies won´t work

Dear community, In our globalprotect setup, we have client certificate authentication in the portal (transparent for user) and SAML authentication in the gatewayWe have enabled cookies in the gateway, so after first SAML authentication, the firewall won´t intitiate authentication again wile cookie lifetime is available.We have disabled single ...

Carracido by L4 Transporter
  • 909 Views
  • 3 replies
  • 0 Likes

Resolved! GP with saml authentication always redirects to idp

Hi community! In our globalprotect configuration, with SAML authentication and cookies in both portal and gateway, we observe that the firewall will redirect to the idp always, regardless of using cookies for authentication. We can see in the GP logs the cookies are being used but in the auth.log we see the redirection from firewall to idp. Th...

Carracido by L4 Transporter
  • 609 Views
  • 1 replies
  • 1 Likes

Existing traffic stops suddenly, and changing of interface MTU resolved it.

Hi Community, I have query related to the current issue. I need to dig it more and want to know about the behavior of issue.Issue: one of the public website is stopped working suddenly, and user unable to access the site.Behavior is previously it was working and the same MTU value, but its stopped.I got to know with the counter below client hell...

Account Permisison

Team,After logging in I am unable to access the following areas, please see the attach image: -Costumer support -Knowledge Base Could some please provide guidance on how to solve this issue? Thank you in advance.

Cloud NGFW: Mandatory Panorama Upgrade to 11.2.7-h4 or higher for managing Cloud NGFW Firewalls.

Mandatory Panorama Upgrade to 11.2.7-h4 or higher for managing Cloud NGFW Firewalls Symptom Panorama may see issues managing Cloud NGFW for AWS and Azure Firewall Resources if not upgraded to version 11.2.7-h4 or later by April 07, 2026. For Cloud NGFW for AWS, Panorama Managed Firewall Resources may see issues if Panorama AWS Plugin is not u...

EDL Capacity Reached but Lists Show Empty / Default Entry (0.0.0.0/32) – Panorama Multi-VSYS Setup Post:

Hi Everyone, I am currently facing an issue with External Dynamic Lists (EDLs) in a Panorama-managed multi-vsys firewall setup and would appreciate your guidance. Scenario: EDLs are configured on Panorama and pushed to a multi-vsys managed firewall. The EDL source URLs are reachable, and the .txt files contain valid IP entries. The EDLs are cor...

A.AlHafi by L1 Bithead
  • 676 Views
  • 1 replies
  • 0 Likes

Global Protect application blank screen

Hello Members, Can anyone help me to solve the global protect blank screen issue on my PC, as for others it normally works fine. I am using Windows 11 and I have already removed and re-installed the GP App but still it shows a blank screen and I am not getting the login page to enter credentials and login to the GP VPN. Thanks in advance.

SamiPTfA by L1 Bithead
  • 51043 Views
  • 31 replies
  • 0 Likes

Internal error during selective push config generation

We are currently seeing the following message when issuing a commit & push from Panorama 'Internal error during selective push config generation'. Panorama has recently been upgraded to 11.2.11. Another LiveCommunity post describes a similar error message appearing in 10.2 but it is not quite the same. - https://live.paloaltonetworks.co...

LastPushDetails.png

PA1420 HA Mode stucks in Initial (HA Initializing) mode for too long

HI All, We have an Active Passive PA-1420 which is connected together via H1-A and H1-B together. But when we restart the nodes or either of the nodes, the Passive PA stucks in Initial (HA Initializing) mode for too long. The last time i checked We restarted the devices at 12:25:00 and I last time checked 1:00:00 it was still in the same m...

Anydesk issue.

Hi everyone!I have some issues with anydesk application. It has ssl issue because of decryption, I think.I've added *.anydesk.com ind 'SSL decryption exclusion', but it didn't worked.Maybe some of you have faced such kind of issue?Thanks in advance!

anydesk.jpg

Resolved! Foward Trust Cert and MacBook Pro

I have a problem with my PAN generated FTC when used by MacBook Pro. My PANOS is 11.2.10-h3 and the test MBP is Sonoma 14.8.4. The FTC is loaded on the System Key Chain and is set to "Always Trust". The x509 basic constraints CA is TRUE as inspected on the MBP. Yet when I browse a site with a decryption policy, the resulting cert from the FT...

  • 24352 Posts
  • 124 Subscriptions
Top Liked Authors
Labels