General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Traffic not in logs but in Packet Capture

I'm having issues with my garage door opener thru my PA 220 FW, v9.1.6, with the latest dynamic updates.

It uses DNS and TCP 8883 to communicate to the MyQ servers. In Monitor>Logs>Traffic, I can see DNS traffic from the opener to 8.8.8.8 with return

...

Not able to access the live community article

I am not able to access the live community article (https://live.paloaltonetworks.com/docs/DOC-2561)

showing the error as access denied,

This is the error which i received (you do not have sufficient privileges for this resource or its parent to perfor

...

GideonKonga_1-1604216498330.png

New stix/taxii miner using cabby

I created a new stix/taxii miner for MineMeld, it can be found on github: https://github.com/mr-torgue/mmcabby.

It was created because I encountered severel problems with the default taxii miner and the ng miner. In general mmcabby is more stable beca

...

folmer by L2 Linker
  • 6134 Views
  • 8 replies
  • 0 Likes

log-card issue after upgrade 9.0.x

Hi,

 

anyone faced an issue when upgrading from 8.1.x to 9.0.x (7050)

after autocommit completed, cannot commit with the following error

 

Commit

Result : failed

Log-card is required but not configured.Please fix and try again.

 

Regards

 

panos by L6 Presenter
  • 2653 Views
  • 1 replies
  • 3 Likes

Dataplane goes restarted

i  have a paloalto 3220 model After plug the new SPF all the interface port goes down as well as dataplane goes restart.

Once i unplug the SFP again dataplane goes restarts

All the interface are goes down

HA Logs:

 

2021-01-27 16:28:07.512 +0500 debug: ha

...

Domain joined PCs and user logoff events?

Hi all,

 

I was reading in some of the documentation for User-ID to see if we can improve our security a bit.  Basically, I'm currently setting User-ID logs to no timeout with the assumption that a new user login will generate a new one and override th

...

jsalmans by L4 Transporter
  • 1765 Views
  • 2 replies
  • 0 Likes

Resolved! Predefined Firewall Report Error - No matching data found

Hello,

 

Has anyone come across problems generating the predefined report with the error " No matching data found" as per the below?

 

 

I have tried rebooting the management server, I have also confirmed that the predefined reports are all enabled I also

...

Sarc845_0-1608287289337.png
Sarc845 by L2 Linker
  • 3950 Views
  • 5 replies
  • 1 Likes

User-Id Mapping / Ignore user list

Hello,

I am running into an issue with Global Protect users due to remoting into other machines with other credentials. I have read extensive articles about the issue and understand that the firewall can only map one user name to an IP. That appears t

...

Zone Protection drops traffic

We have below settings for  our untrust zone protection. We don't see a high CPS rate but we still see packets getting dropped, and has now started effecting us. Any guidance would be helpful.

PANO9.0.11/5250

 

 

 

image.png
image.png
image.png
raji_toor by L4 Transporter
  • 3263 Views
  • 9 replies
  • 0 Likes

Unexpect single port disconnection from PA-220

My client's PA 220 cannot reach to his gateway. However, after he has reboot his PA, the connection is back, but only for few hours long! No matter how I have add the MAC address and troubshoot the problem of the system.  I have checked both port on

...