General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Problems signing in to the support site

I have a PA-220 at home I have a problems signing in to the support site. I get the following message when I want to log in to the support site: An unexpected error has occurred. Please contact support. And of course I can't create a ticket regardin...

Biga01 by L0 Member
  • 1998 Views
  • 1 replies
  • 0 Likes

Resolved! Can "Decryption Mirroring" forward non-encryption traffic?

I am planning to forward all traffic to traffic collection tool.

 

As I know there are "Decryption Mirroring" (https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/decryption/decryption-concepts/decryption-mirroring.html) and it will forward the

...

JoeKwok by L2 Linker
  • 2675 Views
  • 4 replies
  • 0 Likes

Very weird PanOS upgrade issue

We have a pair of active passive firewalls on PanOS 9.0.11. We have attempted to upgrade to 9.1.10 4 times out of which 2 times was with tech support. Upgrade seems to cause issue with some linux servers which are critical to us. As an example we hav

...

raji_toor by L4 Transporter
  • 2128 Views
  • 3 replies
  • 0 Likes

Globalprotect client losing dns intermittently

hello everyone

 

We have a intermittently issue with GlobalProtect client and the local DNS resolution. We have conigured local dns servers on network services and we have established "Resolve All FQDNs Using DNS Servers Assigned by the Tunnel (Windows

...

AOrtiz by L0 Member
  • 1848 Views
  • 1 replies
  • 0 Likes

Inbound traffic to DMZ issue

We have reports of certain users not being able to access our public website but majority of users are able to. The traffic log shows that the application is incomplete. Packet capture reveals the 3-way handshake does not complete and the session tim

...

x by L1 Bithead
  • 5654 Views
  • 5 replies
  • 0 Likes

VPN IPSec Configuration Disappeared from GUI

An issue where I can’t view any configured IPSec Tunnels in GUI,

From CLI, the IPSec tunnels appear normally.

 

Tried failover, restarting management service, even rebooting both Palo Alto units, using different browsers, different computers, and export

...

PA-850 Migration to 10Gb SFP+ Interface

Hi, I have a customer who was a PA-850 firewall. There connection to their LAN is currently using a 1Gb Ethernet port (Port 4). They are in the process of upgrading the network backbone to be 10Gb and wanted to change their connection to the Firewall

...

dvdkevin by L0 Member
  • 3033 Views
  • 2 replies
  • 0 Likes

Resolved! Block Windows 7

I am trying to block Windows 7 clients from accessing the internet.  I have followed the steps here: https://live.paloaltonetworks.com/t5/Configuration-Articles/Custom-vulnerability-signature-for-identifying-Windows-XP/tac-p/72273#M1496

but I am uncle

...

GlobalProtect and "client sleep mode"

Hello,

as described in the "GlobalProtect 1.1.6: Addressed Issues" (issue point 35361) the unnecessarily reconnection after sleep/hibernate mode should be fixed.

We are using the GlobalProtect Version 1.1.7 . The portal configuration are:"On demand" mo

...

Hithead by L4 Transporter
  • 9615 Views
  • 7 replies
  • 0 Likes

Resolved! Custom App for CRL downloads

Hi,

I am trying to create a custom app that will match CRL downloads, to allow them without any questions ask. Shouldn't be too hard : on a previous web security gateway, I would match a pattern like the following: "http://([^/:])*crl.*\.crl"

When tran

...

dennisss by L1 Bithead
  • 19345 Views
  • 20 replies
  • 0 Likes
  • 24007 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Liked Authors
Labels