Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 217 Views
  • 0 replies
  • 0 Likes

Resolved! QoS - show drops in web view

Hi there,

 

where can I find the packet drops of an interface in the PA web frontend, I wanna monitor the QoS function, without the use of ssh command line tool.

Netzer by L2 Linker
  • 2172 Views
  • 2 replies
  • 0 Likes

URL allow list for some of the subdomains

Hi all

 

I want to limit the user to access the company's sharepoint only, but not other sharepoint from other tenant or even the sharepoint from personal account. Then I found the below KB (section 6) and show how to use allow list in the URL filterin

...

alextsa by L1 Bithead
  • 6520 Views
  • 8 replies
  • 0 Likes

Decryption GitHub not working

Hi

 

We are trying to run a api from passbolt to Github. In this we are doind decryption in PA.  If we add a SSL exception *.github.com is working fine or "no decrypt" policy is working fine.  any idea?

 

Here our health check:

 

passbolt]# su -s /bin/bash

...

BigPalo by L4 Transporter
  • 3399 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama logs per second

Does upgrading the CPU and memory for panorama increase the logs per second that a single virtual panorama in panorama mode can handle?   Link below appears to show that as the case.  I always thought that the limits were around 10k per second regard

...

Sec101 by L4 Transporter
  • 2830 Views
  • 3 replies
  • 0 Likes

Strict IP Address Check after 9.1.12

Customer upgraded to 9.1.12 and after that it was noticed that for some of the zones, traffic was dropped. During debug,it was concluded that reason is Strict IP Address Check in the Zone Protection Profile:

"flow_dos_pf_strictip 1 0 drop flow dos Pac

...

nikoo by L3 Networker
  • 6392 Views
  • 8 replies
  • 1 Likes

Why Did Strict IP Address Check Break this VPN?

We have been working with TAC to find the cause of this issue where FTP client could no longer upload to external companies FTP server over the VPN tunnel.  After many days, we started a packet filter on the Public Internet (WAN) interface, which is

...

ms.jzam by L2 Linker
  • 16394 Views
  • 30 replies
  • 0 Likes

Resolved! refresh external dynamic list real time with cli

Hi,

I need to update in real time the external dynamic list IP. 

Looking for this doc https://docs.paloaltonetworks.com/pan-os/9-0/cli-reference/pan-os-9-0-configure-cli-command-hierarchy.html and cli command "find command keyword",didn't see any comma

...

Resolved! FIPS Failure upon boot

One of devices was not properly shut down due to a power outage in a building.  When the device started back up, it appears that it entered maintenance mode.  The reason is FIPS failure.  I have attempted to reboot the device from maintenance mode an

...

BryanSG by L0 Member
  • 7263 Views
  • 2 replies
  • 0 Likes

Globalprotect 5.2 Cookie Issue

Hello 
We just upgraded our GP from 5.1.7 to 5.2.10

We have a gateway with SAML authentication
We have some connections issue with a message "already logged in" from the Identity Provider

I think this is due to the new feature "Default System Browser for

...

QoS max egress, no effect

Hi there,

 

I'm playing with QoS in our lab. I have a simple setup with two queue, first for SMB traffic, second for RDP traffic.

The max egress value is set, but when I transfer data, then both queues get bandwith values.

 

What I am doing wrong here?

 

 

 

...

PA QoS Monitor.png
PA QoS Profile.png
PA QoS Policies.png
Netzer by L2 Linker
  • 1894 Views
  • 2 replies
  • 0 Likes
  • 23611 Posts
  • 107 Subscriptions
Labels