General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 777 Views
  • 0 replies
  • 0 Likes

Port to Port latency stats

I am trying to find out what the typical port to port latency is of the 800 and 3200 devices.  I appreciate that this probably changes depending on what inspections are running, and configuration, but I am after a ball park figure for standard L2/L3

...

Rich.H by L2 Linker
  • 1911 Views
  • 1 replies
  • 0 Likes

Resolved! Mobile Hotspot - Can I force SSL?

I'm working using a mobile hotspot (T-Mobile 5G), but I have chronic failures until it finally falls back to SSL.   Then I run fine for many hours until I need to reconnect.   

 

Question:   Can I force it connect in SSL?   

 

I'd be happy to help improv

...

Security Report

I would like to create and export a security report giving me a simple count on the number of times an attack was attempted.
The definition of an "attack" could range anywhere from a network discovery to a tentative of password brute-force, as many ve

...

Question about Global protect Pre-Logon Issue

Hi,

 

I configured GP pre-logon method, But it’s only working in administrator mode even though the user is part of administrator group, it’ not working for normal users.

 

I followed below KB article,

https://knowledgebase.paloaltonetworks.com/KCSArticle

...

GlobalProtect.jpeg

No ICMP hitting Palo Interface but ICMP is allowed

I have a greenfield Palo with a fresh ISP.

Have confirmed from the Palo I can source from my interface and ping outbound to anywhere in the world.

Interface mgmt has been set to allow ICMP, I've left the allowed IP's blank and also set my specific IP,

...

VPN IPSEC secondary peer

Hello,

I have a vpn ipsec in production, now I have to add a secondary remote peer.

It's my first time I have to configure a 2nd peer.

If I understood well I can't simply add a seocndary peer to the VPN but I have to configure a new psec but the differe

...

5450 - Included cards in base bundle

It seems odd that the base bundle (PAN-PA-5450-AC-SYS) includes a NC and not a DPC.     

 

Can someone from Palo, or someone that has received a 5450, confirm that a DPC is *not* included and the base bundle (it will not function on its own)?

PA not responding to any incoming requests

I have a PA-220 (PANOS 9.1.8) running with a dynamic PPoE link to the ISP. I've tried everything! It does not respond to PING, SSH, HTTPS. I removed the firewall security profiles, zone protection, added the management profile. Looking at the pcap, t

...

DJ_Palo by L1 Bithead
  • 2318 Views
  • 2 replies
  • 0 Likes

Resolved! Cdb process not running on PA firewall

Hi Folks,

 

Auto-commit on our passive firewall is failing. When checking the logs we could the see the commit failure reason as below:

 

PA-3220 not started, auto commit failed:

 

Details:
Management server failed to send phase 1 to client cord
Commit faile

...

PAN-OS 10.1.4-h4

Hello all,

We are looking to update PAN-OS to 10.1.4-h4 but wanted to ask if anyone had any issues after upgrading? 

I had 10.1.4 installed but it had bugs and had to roll back so I am a little bit leery to upgrade again.

Thank you,

Tom 

thoffman by L2 Linker
  • 1757 Views
  • 1 replies
  • 0 Likes

Global Protect 6.0 Client Windows Authentication

Since upgrading to the 6.0 client every hour, when the client does its config refresh interval, Windows defaults to the Global Protect password sign in option when unlocking the computers rather than what the users are normally using (PIN, Face, Fing

...

  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels