General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.


Ensuring a Safe and Secure Community: How You Can Help


Dear LIVEcommunity Members,


Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun


jforsythe by Community Team Member
  • 0 replies

Resolved! Cannot connect to Globalprotect

Since updating Global Protect client, I can no longer connect to VPN. I can successfully connect to all our other sites.

I’ve tried connecting on the OSX client & Windows Client.


System logs suggest login succeeded.

See screenshot attached of failu



Ipsec tunnel issue

there are two location site a and b in which i created a ipsec tunnel between them its up.

As i ping there LAN IP i am able to ping. there LAN network

Site A LAN network is 192.168.4.x/24 Site B LAN network is 192.168.x.1/24.

I am able to ping both the


Resolved! pandb-database will not install on Pan_OS 9.0.x

I have a couple of firewalls that are running Pan-OS 9.0.3 that I cannot get the pandb-database to install and update. At least I cannot prove that it is downloading and active. Until 9/30/19, the 9.0 docs for this were the same as the 8.1 docs. Acco


Resolved! What Panorama Mode should I be in?

I have two Panorama Servers, let's call them North01Pano and South01Pano.  I also have two Log Collectors, let's call them North02Pano and South02Pano.  Obviously the two LC's are system-mode: Logger.  What is the preferred mode for the 01's and why?

Resolved! Obtaining Commit logs from vm-series

Hi All,


Can someone guide me to where I can obtain an export of all the configuration changes made on the firewall and potentially export this into a csv? 

Mr8023 by L1 Bithead
  • 2 replies

email alert

Is there anyway to have the palo email me when a rule has been enabled for a certain period of time? If not, is there anyway to do it via API?  There has to be a way, yes?

Software failed to fetch the PANOS from server

Hey guys hope you doing well One of my customer have an issue to fetch PANOS version.

PA-220 Current version 10.0.0

The dynamic updates are not up to date as i see the latest  dynamic updates installed on her firewall are month of april 2021.

Also i am


Palo alto application for practice.

Hi guys,

I am studying currently for PCNSE certification.  What palo alto application I should download if I want to practice? I am using an apple computer.  I would appreciated if someone can send me a link about it. Thanks in advance



SSL-decrypt resources needed



We are enabling SSL-decrypt for several categories in our FW. We realised that the CPU and memory increased since this config, but its so far about the maximum in datasheet for PA3050. How can we know the SSL decypt consumes and try to have any r


BigPalo by L4 Transporter
  • 3 replies

An interesting POC using Palos

Just watched an interesting way of hiding C2 traffic which bypasses Palos in the demonstration. Would be good to know if there is solution to capture this.

raji_toor by L4 Transporter
  • 4 replies

Traffic Deny due to DNS?



I was given a chunk of IP addresses and domains/urls to update into an existing blacklist on the firewall.  I go to objects and create ip-netmask for ip addresses and FQDN objects for domains/urls. Some of the domains i received come in the fo


Kenchh by L0 Member
  • 1 replies
  • 23650 Posts
  • 107 Subscriptions
Top Liked Authors