General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Paloalto Firewall breaking pan baidu downloads

I've been trying to download these AUTOCAD designs https://pan.baidu.com/s/1_1nHdx6QG3GNTAdaM1v6hQ?pwd=347t from Baidu Pan but the download stops halfway through and restarts over and over. I can't quite figure out what's the problem. I tried downloading using https://baidu.erranium.com/ and the download went through so it has to be an issue on ...

sandy_22 by L0 Member
  • 1145 Views
  • 1 replies
  • 0 Likes

User-ID - issues with mapping from Juniper Mist wireless

Hello. I have issues with mapping user from Juniper Mist. User-ID is set and working fine when monitoring LAN traffic. But when I want to check wireless users I don't see Source User. From my research I understand I need some type of "bridge" between Juniper Mist and Panorama in form on syslog. Sadly both systems are supported by separate compan...

Palo Alto Firewall breaking File downloads in the middle

I am facing a problem in my Network, when we try to downloads some files the firewall breaks the download in the middle some times it does not allow even 5 mb file .For large files its breaking the session and does not allow to complete the download.All this is happening even when i bypass all policies for test purpose.In the logs i can see tcp-...

Resolved! Panorama commit warning

Hi, Im doing a push from panorama to several fws and i get commit with these wanings: Details: . Performing panorama connectivity check (attempt 1 of 5) . Panorama connectivity check was succesful . Configuration committed successfully . Local configuration size: 38 KB . Predefined configuration size: 20 MB . Merged configuration size(loc...

BigPalo by L4 Transporter
  • 1985 Views
  • 2 replies
  • 0 Likes

SAML Authentication Profile not popuating IdP Server Profiles

I am trying to configure a SAML Authentication Profile but the IdP Server Profile is not populating with my Imported SAML Metdata Identity Provider. When I click import on the page it imports another profile but still does not show up. Any ideas? Not Using Panorama Version 10.2.3

Resolved! FW Ha Cluster disconnected from Panorama

Dear all, i m having an issue with a FW HA Cluster that is continuosly disconnecting from Panorama. I m able to make them connected by issuing a local commit, but after a day less or more, both the FWs are in a Disconnected state again. There is no communication issue beetween FWs and Panorama: show netstat all yes numeric-hosts yes nume...

AndreaB by L1 Bithead
  • 3196 Views
  • 4 replies
  • 1 Likes

Linux/Iphone devices not working splitunneling

Hi, Im seeing traffic logs with linux/Iphone devices going to internet through our tunnel GP, when internet access should be local. Is there any issue with routes GP in linux/apple devices? In windows is working fine

BigPalo by L4 Transporter
  • 947 Views
  • 2 replies
  • 0 Likes

vSYS is expired

Hello, We are running a pair of PA-VM firewalls in HA mode We have noticed that an expired Virtual Systems (VSYS) license is still showing under our licenses, even though we only use the default vsys1 All othere subscribtion are running as usual. except this error which I don't know how to remove it ! or even renew it !! Thank you for ...

Zurattos by L1 Bithead
  • 771 Views
  • 1 replies
  • 0 Likes

Resolved! Confirming Upgrade Path

Hello everyone, I just wanted to clarify/confirm the proper upgrade path to latest preferred 11.0.2-h2. We are currently on version 9.1.12-h3. From what I have gathered, would the below steps be the proper steps and path? 1. Download and install 9.1.16-h3 2. Download 10.0.0 3. Download and install 10.1.10-h2 4. Download 10.2.0 5. Downlo...

Resolved! UserID Agent version compatbility

Hello, I'm currently working through the Certificate Advisory. We currently have firewalls running 10.1.11, user-ID agent is 10.1.1-102. Started an upgraded firewalls to current preferred version of 10.1.13h1. The issue I have is I am simultaneously trying to introduce PA-1410 firewalls into Panorama for management. PA-1410 does not supp...

Issues with Device Telemetry

I have an HA pair (active/passive) of PA3250s (no Panorama) and just recently upgraded to PanOS 10.0.6 from 9.1.9. I configured the device telemetry and downloaded the new certificates for both firewalls. Telemetry is working great on my primary firewall, however, the secondary is failing every time with the error code "CDL Receiver Key Empty". ...

cdlkey.PNG

SNMP (V3) not working on MGMT Interface

PAN-OS: 10.1.6-h6 Issue: SNMP (V3) not working on Management Interface. Description: Customer have configured SNMP monitoring from Logic Monitor and Palo Alto but and its working fine for Dataplane interface but if we change it to management interface its not working and getting the error message as below. Troubleshooting Done: 1. Checked t...

Purushotham_0-1713112831485.png
  • 24411 Posts
  • 125 Subscriptions
Top Solution Authors
Labels