Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 217 Views
  • 0 replies
  • 0 Likes

Changing the IP Address of Panorama

Hi Gang,

 

We need to change the management IP address of Panorama due to a complete change in our network. It runs in, Panorama mode, and manages several firewall pairs (which forward their logs to Panorama).

 

My questions is:

  1. Is it as easy as changing
...

Log Collector Status

Hello -

From local firewall Device > Management > Logging and Reporting Settings > Log Collector Status > Show Status it says that there is an error for Device Connectivity

 

All of my logging is working just fine though.  Is this just a bug?

From comman

...

DC.PNG

Scheduled Log Export based on custom queries

Is there any option to schedule custom traffic reports based on custom queries and to get it exported automatically .?

Currently, we are exporting the traffic logs manually from  Monitor > Logs >Traffic and pasting the queries ( some of the sample que

...

Resolved! 10.1.4 HA config sync problems with certificates

I don't know if this is a 10.1.4 bug or by design but I have a pair of PA460's in HA with config sync enabled.

 

1. Firewall won't sync a certificate with a private key to the other firewall.  It syncs the root CA only.

2. I can't sync any SSL/TLS servi

...

Global connection issues with Wildfire EU Cloud?

Somebody else has same issue with Wildfire EU Cloud?

System Log full of "wildfire-conn-failed" events and in traffic log can see corresponding connection issues with 154.59.126.51, packets received = 0, therefore application "incomplete". Normally it

...

Anon1 by L4 Transporter
  • 5323 Views
  • 9 replies
  • 0 Likes

UID Redistribution SSL Errors

Hoping someone else has run into this.  I have been implementing UID redistribution in our PAN environment.  I've stumbled across a few firewalls that will not establish a connection on port 5007, once the UID service is moved off of the default Mgmt

...

Resolved! Inconsistent policy action on the same traffic flow

Hello,

 

I do have a connection flow for Microsoft Teams direct routing domain sip-all.pstnhub.microsoft.com where I do have a NAT rule and a security rules for bidirectional traffic with the Microsoft domain from our DMZ. The issue is that the firewal

...

bambox by L1 Bithead
  • 2985 Views
  • 3 replies
  • 0 Likes

Inter-working of PBF and DHCP Relay

Hi All,

 

I have a query regarding DHCP Relay working with Policy based forwarding.

 

We have a setup where DHCP relay is configured on firewall and DHCP server is in remote location reached via IPsec tunnel. We have 2 IPsec tunnels configured (tunne

...

Web Application intermittently having a performance issue

From the tcp dump at the server end, I am seeing a lot of traces on TCP Dup ACK, retransmission and out of order being flag out at the pcap file

 

 

 

 

The connection made is via VPN client to the Web Application server. Tried few scenario where we acces

...

afifdin_0-1618935667620.png
afifdin_1-1618935712790.png
afifdin_2-1618935811755.png
afifdin by L0 Member
  • 3785 Views
  • 3 replies
  • 0 Likes

Policy Commit Failed

I am trying to push a template stack to FW, the same one is pushed to a lot other FWs but here i get this error 

 

. In virtual-router vr1, OSPFv2 is not supported on unnumbered interface ethernet1/1 in area 0.0.0.0.
. In virtual-router vr1, OSPFv2 is n

...

Resolved! Error No valid URL filtering license

Hi All,

 

Recently license has been renewed and part of the renewal was change to "Advanced URL Filtering". I got the error whenever commit a change. 

But looking at the licenses section I can see PAN-DB URL Filtering listed as expired. Any step to fix

...

isentric89_0-1645597092589.png
  • 23611 Posts
  • 107 Subscriptions
Labels