General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4222 Views
  • 0 replies
  • 0 Likes

Lots of Discards after upgrading to 9.1.14

Dear all !! Facing a big issue after upgraded to 9.1.14. Lots of Discards in legitimate traffic show session id 6088287Session 6088287c2s flow:source: 172.27.107.40 [Aulas_Int]dst: 138.68.127.222proto: 6sport: 59736 dport: 443state: DISCARD type: FLOWsrc user: unknowndst user: unknownoffload: Yes s2c flow:source: 138.68.127.222 [vCMP_AULAS]dst: ...

CAICVSOC by L0 Member
  • 4030 Views
  • 5 replies
  • 0 Likes

Happening tomorrow! Register for ZTNA 2.0: The Next Era of Secure Access Event

Join us for the unveiling of ZTNA 2.0 with Palo Alto Networks Prisma Access, the next era of secure access! Learn directly from industry experts as they share evolving market challenges, strategic best practices and the latest innovations from Prisma Access. You also don’t want to miss our new security capabilities in action. More details and ...

jennaqualls by Community Team Member
  • 2385 Views
  • 1 replies
  • 1 Likes

LDAP configuration - Error: ldap has unexpected text

Dear all, After ldap configuration (ldap server and authentication profile) on my PA-5250 we can't commit changes because we have the following error: shared -> server-profile -> ldap has unexpected text. shared -> server-profile -> ldap is invalid Do you have any idea what can be the issue? Also when I try to delete the ldap ...

Resolved! Sinkhole Exclusion

This host is flagged as suspicious domain and getting resolved to sinkhole.paloaltonetworks.com. This is a legit host name using for Microsoft certificates. Looking for a way to restore correct resolution. C:\>nslookup cdp1.public-trust.comName: sinkhole.paloaltonetworks.comAddress: 72.5.65.111Aliases: cdp1.public-trust.comThanks

Resolved! Command related inquiries(debug device-server dump pan-url-db statistics)

Dear Team, I would like to know what the output value of the command "debug device-server dump pan-url-db statistics" means. I checked the output as below when executing the command in my LAB.If there is any link or explanation that I can refer to in relation to the above command, please advise me. Thanks in advance,Kyungjun,

CHOEKyungJun_0-1655189563771.png

Resolved! Requesting info for PCCET exam please

Hello all I hope all of you are ok.Please can someone tell me how can I book my PCCET exam, I have done the training (PCCET) on BEACON portal, and I would like to know where and how I may book the exam- I will be so grateful for the help Ps: I am new in the cybersecurity field, and I am starting to learn about this wonderful world. any book sugg...

Resolved! IOT SNMP Queries using Xsoar and L3

I see that snmp queries can be used to discover devices for IOT using xsoar engines. I also see that it uses cdp lldp and gathers arp and mac data.https://docs.paloaltonetworks.com/iot/iot-security-integration/network-management/integrate-iot-security-with-network-switches-for-snmp-discoverySpecifically in the documentation:The XSOAR engine als...

Sec101 by L4 Transporter
  • 4257 Views
  • 4 replies
  • 0 Likes

Resolved! Log Forwarding

I have setup Syslog forwarding from multiple firewalls to a log collector, but I cannot see any Syslog traffic in the logs. Does this traffic get logged by the firewall/Panorama, or is it allowed through without needing a firewall policy?

Panorama OS compatibility

Hi Team, I am planning to upgrade Panorama software version from 9.1.13 to 10.1.*. But the i am confused whether the Panorama with OS 10.1.* can manage PA3020 running on PAN OS 9.1.* and PA450 running on PAN OS 10.1. *?

Bijesh by L1 Bithead
  • 3247 Views
  • 2 replies
  • 0 Likes

High loads by scanner

Good afternoon. At 11:57:26 (9:57:26 GMT), there was a log entry which said this company was scanning our VPS. This made it unresponsive with extremely high load for us until I had restarted the HTTPD service. The traffic was also coming from a lot of different IP addresses all by Microsoft. Is this normal? Log entry:198.235.24.150 - - [14/Jun/2...

Resolved! MFA on the Palo Support Portal?

I saw the announcement that they were going to start requiring MFA for logging in on the Palo Alto websites and it mentions a code via email, however, I was already set up to use an authenticator app for this. When I went to log in today, it seems to be ignoring my account settings and doing the email code every time. I tried switching to the ...

jsalmans by L4 Transporter
  • 19295 Views
  • 13 replies
  • 0 Likes

Mapping problem of users (XMLAPI) authenticated in Clearpass

Hi team, The problem detected is that Palo Alto (PAN-OS 9.1.13-h3)computers register too many IPs for each user through XMLAPI (RADIUS-Clearpass origin). Usually a user is not connected to the WiFi network with more than 3 devices (work computer, personal phone and corporate phone), therefore is not associated with more than 3 IPs. In Palo Alto ...

Alpalo by L4 Transporter
  • 3479 Views
  • 2 replies
  • 0 Likes

advanced URL & URL4 license HA configurable check

Dear Team, I understand that the same license set is required to configure HA according to the content below.- The same model- The same PAN-OS version- The same type of interfaces- The same set of licenses Customers want to configure HA while introducing new equipment. However, the existing equipment is using the URL4 license, and the equipment ...

Resolved! SSL Decryption bug in PAN-OS 9.1.14

I recently upgraded from panos 9.1.13-h3 to 9.1.14 then SSL decryption stopped working, in the traffic monitor there wasn't any decryption error but when i excluded a PC the internet workedand it seams other people are also having the same issue (Reddit ), but its not in the known issue list until nowso i had to revert to the previous version an...

LAS by L2 Linker
  • 14637 Views
  • 22 replies
  • 0 Likes
  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels