General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 660 Views
  • 0 replies
  • 0 Likes

Hey there

Hey there,

Today I joined the community to enhance my Palo Alto and Security Leanings..

 

Thanks guys in advance. Hoping for great learnings and knowledge sharing!!

Query on Syslog filter builder

Hi Folks,

 

We had configured to forward the system logs for severity of informational, medium, high and critical using filter builder. But we are receiving logs only for informational on our QRadar Syslog.

 

What is the supported format for System log f

...

tamilvanan_0-1646669140328.png

Global Protect MTU setting overwritten

Trying to set MTU for my GlobalProtect client.
I've found some information about this in Palo Alto docs.
I could not set it with netsh, I think it is because of GPO.
But I could set it with the PowerShell command: SET-NetIPInterface -InterfaceIndex 3 -N

...

ChrisCon by L2 Linker
  • 3238 Views
  • 2 replies
  • 0 Likes

User-ID limitations for distribution

Hi folks !

 

Would like your advice on a specific issue about user-id limitations : 

One of our customer is using one central firewall to redistribute user-id mapping to more than 100 devices, and has issues about user-id process crashing on the central

...

HA to standalone best practise

Hello,

 

Good day, I have found many articles related to configuring standalone to HA. However, I don't find related articles for HA to standalone.

 

Is there any good reference guide for changing role from HA (active-active or active-passive) to standal

...

CPS for Flood Protection

For the Flood Protection calculations:  Alarm, Activate, and Maximum - the documentation states to use the baseline thresholds (average) for the zone.  I have used the OIDs to do this, however, why would I be using the TOTAL ZONE baseline and not jus

...

Resolved! Active-Passive HA failover and Preempt disabled

I have an active passive pair:

 

PAN01- Passive , device priority 50, Preempt- disabled

PAN02- Active, device priority 40, Preempt- disabled

 

Now I wanted to switch the priority i.e. to make PAN01 active and PAN02 passive.

 

I changed the priority on PAN02

...

Resolved! Dual ISP - Will not activate dual default gateway routes

I just installed a firewall for a customer last night and it absolutely refuses to activate the default route for both ISPs in the virtual router.  Only 1 will go active at a time.  The intent is to just use route monitoring and use the primary ISP u

...

traylorm by L1 Bithead
  • 2908 Views
  • 1 replies
  • 0 Likes

Identify the user account while using RDP on desktop

Hi,

This is just an query, so that I can understand this topic better. Bear with me, since I am not a network specialist.

Environment

  • User works remotely on a laptop and uses GlobalProtect VPN client to remote in on a desktop
  • The desktop is located in th
...

Can CFF format remove the double-quote

HI,

 

As PA document, https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/monitoring/use-syslog-for-monitoring/syslog-field-descriptions/escape-sequences.html,

To maintain backward compatibility, the Misc field in threat log is always enclosed in

...

Sam_Pang by L0 Member
  • 1577 Views
  • 0 replies
  • 0 Likes
  • 23954 Posts
  • 113 Subscriptions
Top Liked Authors
Labels