General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PAN-PA-5220 Purchase

Dear All, I am planning to purchase PA firewall 5220 for our Datacentre. and came across below modelI am not mistaken then I need to purchase PAN-PA-5220-DC i(f DC power supply) and PAN-PA-5220-AC ( If AC power supply) However I am clueless for what purpose I need to purchase below modesl? PAN-PA-5220-DC-OSSPAN-PA-5220-AC-OSSPalo Alto Networks P...

IPSec Tunnel fails after 1 packet

Hi Guys, We have a number of Palo Alto firewalls at our satellite sites configured in a Mesh VPN. Site A, Site B, and Site C (Internal) all work successfully.Site C DMZ can establish a tunnel to all the other sites, however as soon as the VPN is used, it immediately stops working. Site C Internal and Site C DMZ are different Virtual Routers runn...

Basic Setup.png

Log Forwarding - multiple instances of same catgory?

In Log Forwarding Profile I have URL Filtering/All Logs going to a log collection server. But for URLs of a phishing category I want those to be emailed. I tried to do this by creating a second profile match list profile URL Filtering/phishing. But it doesn't seem to be working. Any advice on how to have some go to email while most go to log se...

Admin credentials were not changing

HiWe have 2 PA-850They are working in HA modeWhen i got the handover they gave the admin credentialsThe secondary was always activeWhen i tried to login to the passive one the admin password did't workAt the end i logged in with the initial password created on first deployment 2 years agoAnd it was not changing from Web or CLIThe issue fixed aft...

Ask Your Questions Now! Cyber Elite Ask Me Anything (AMA) Event

Ask your questions now through June 30 as the LIVEcommunity Cyber Elite Experts will be available in a Q&A session for an opportunity to learn, join in, ask questions, and meet our experts! The Ask Me Anything (AMA) Event will be an opportunity to ask our Cyber Elite Experts questions about a range of technologies, solutions, and how they ca...

jennaqualls by Community Team Member
  • 2306 Views
  • 1 replies
  • 0 Likes

Questions) Missing Panorama Log

When creating the Security Policy Rule, 'Log at Session Start/End' was all selected as Actions. After this, when I check the log in Panorama, only the End Log is visible and the Start Log is not visible.Also, sometimes this logs are not visible. In Panorama, there are cases where the log cannot be seen or some logs (Session Start) are not vis...

Policy Actions.png
future by L0 Member
  • 4216 Views
  • 3 replies
  • 0 Likes

SAML Jumpcloud HA Implementation

Hi, i follow the docs here LIVEcommunity - PAN-OS SAML SSO with JumpCloud and Mobile Push MFA - LIVEcommunity - 493684 (paloaltonetworks.com)it works well with one firewall. When it used to HA active Passive Environtment, it wont work on the passive, the config sync from the active, but the configuration from Jumpcloud only setup for 1 IP Only. ...

URL Filtering Wildard - ? in URL

I have inbound decryption set up for a server and we want to restrict what URLs users can get to. The website admin tells me that ALL links to the site will contain something similar to the following: https://my.web.server/xxx/yyy/zzz/TEXT_SOMETHING.LIKE_THIS.GBL When I go to the site and click on the test links, I notice that it adds a ? after...

RCurrie by L0 Member
  • 3654 Views
  • 2 replies
  • 0 Likes

Session end reason=resources-unavailable, version 8.1.15.h3

In the traffic log we have found some entries with a session end reason=resources-unavailable, version 8.1.15.h3, however PAN-189468 is not affecting our version only affects version: 9.1.0-9.1.1310.0-10.0.1010.1.0-10.1.4 adm_(active)> debug dataplane pool statistics | match "Regex Results"[12] Regex Results (11640): 8187/8192 0x800000046790...

Alpalo by L4 Transporter
  • 3536 Views
  • 1 replies
  • 0 Likes

Client certificate for syslog is failing

Im trying to setup a syslog forward from a loggcollector with tls, i get this error in the syslog log on the collector. Certificate subject does not match configured hostname; hostname='scrubbed', certificate='blah.blah.com'However the certificate has the correct hostname as a san name (aswell as blah.blah.com), however it has lots of san names...

hbalzac by L3 Networker
  • 3971 Views
  • 1 replies
  • 0 Likes

Technical Specs of M-200

Hi Guys,Anybody here what is the default RAM and CPU number of a M-200 Panorama server? I've checked the guides and data sheet but I can only see the VM version.Thanks in advance.

Nikko by L1 Bithead
  • 6410 Views
  • 5 replies
  • 0 Likes

Palo Alto CloudGenix Support

This is terrible!! The second time, in the last week, I'm in need of urgent assistance (the whole office is down) and I'm unable to get anyone's phone quickly enough! First time I was waiting for 2 hrs. on the phone before finally, I got someone to help. When is this going to be addressed? Right now I'm in the same situation and need help qu...

Resolved! Interface states in PAN

Hi Team ,I have query regarding below . Physical interface is showing down but subinterface is showing up. ideally subinterface should also be showing down. ?

DeepakVerma_0-1656413018591.png
  • 24443 Posts
  • 125 Subscriptions
Labels