General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Unable to see vCenter Tags or vCenter Custom Attributes on FW or Panorama

I have the Windows User Agent configured with VM Information sources and I'm able see see a lot of information about the VM with the exception of vCenter Custom Tags an vCenter Custom Attributes. I can see annotations no problem, as soon as I change or add notes they appear immediately in both Panorama and the firewall, but what I really need i...

Resolved! VPN Site to site IPSec Tunnel not working

Hello,I've configured a VPN Tunnel from a PA220 to a PA200. They are able to ping each other but I don't see any ESP Packets in Wireshark. What should I do to get the packets to be encapsulated?Many thanks in advanced.

smshafek by L1 Bithead
  • 5987 Views
  • 4 replies
  • 0 Likes

How we can monitor/detect that particular FW stopped sending traffic logs to LogCOllector

Hi Community I'm looking for the possibility to be notified (trap/snmp/Panorama event) in the situation that a particular FW which is assigned to LogCollector for some reason stopped sending traffic to it. Let's assume that if there is a 1h gap I want to be notified.For some reason, I'm not considering implementing Syslog here. When such a situa...

Screenshot_1862.png
S_Owoc by L1 Bithead
  • 4125 Views
  • 4 replies
  • 0 Likes

VPN Drops after 1 minute with the error ike-nego-p2-proxy-id-bad

Hi, I am new to the palo and have run into this problem that I can't figure out. We have a VPN between the Palo and a Meraki. It's usually on permantly but recently it has been having drop outs, sometimes for days. I have realised that if I disable the tunnel and re-enable it, it comes back on but only for a maximum of 1 minute and then I get th...

Palo Alto Routing course

Howdy everyone, I have taught the foundations course...that was pre-covid. Now I am tasked with teaching routing. Which Palo-Alto class would the community recommend from your experiences that I teach? Thanks, JB

DIP NAT on inter vsys traffic

Hello, I have a FW that has many nat rules. And I found a bug, pan-130550:(PA-3200 Series, PA-5220, PA-5250, PA-5260, and PA-7000 Series firewalls) For traffic between virtual systems (inter-vsys traffic), the firewall cannot perform source NAT using dynamic IP (DIP) address translation.Workaround: Use source NAT with Dynamic IP and Port (DIPP)...

yhlee1 by L2 Linker
  • 3280 Views
  • 2 replies
  • 0 Likes

Critical System Log Msg

Hi All, Have you guys seen the below critical msg in the system log? Backtrace execution for the restarted process stopped due to an error accessing memory. Possible memory corruption? P.S: this is the passive firewall when the active FW went down. Many Thanks,

Pras by L4 Transporter
  • 3146 Views
  • 3 replies
  • 0 Likes

Resolved! Paloalto ms-kms application

Dear Team, The description of the ms-kms application is as follows. DescriptionMicrosoft Key Management Service (KMS) activates computers on a local network, eliminating the need for individual computers to connect to Microsoft. To do this, KMS uses a client-server topology. KMS client computers can locate KMS host computers by using Domain Name...

ConnectWise Control connection getting reset

Latest spyware signatures appear to be blocking legitimate connections to ConnectWise control. The 5/2 AppThreat-8564-7375 update categorizes the connection/file (GetSessionDetails) as threat Generic PHP Webshell File Detection.Produces "unknown error" on the ConnectWise portal page.The only way I can get around it is to exclude the connectwise ...

  • 24427 Posts
  • 125 Subscriptions
Top Solution Authors
Top Liked Authors
Labels