General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Panorama doesn't load on firefox

Hi All,

 

I have been struggling with this issue for few months now.

The panorama VM site just doesn't load on my system, using firefox browser. It shows blank white page and after few refreshes of the page (and praying - please load this time), it fina

...

Fatema by L2 Linker
  • 3040 Views
  • 6 replies
  • 0 Likes

Resolved! Packet drop in the Firewall

Recently, we did a Migration activity, From the Juniper SRX to Palo Alto.

 

After successful Migration, we can notice that one drop over the PA firewall.

We did troubleshooting from our end and in the global counter can see below error with drops

 

flow_f

...

Zone rename effects on Shared Policies

After a company acquisition we have inherited about 25 firewalls which I have recently migrated to a single Panorama instance, along with shared policies and templates, and in the process of building shared policies for the entire fleet.

 

For the shar

...

IPSEC Tunne with IBM cloud

HI 

 

I have setup a tunnel with IBM cloud and tunnel is UP. However I am unable to ping from both side. 

Routing and security policies are configured correctly, I can see on firewall logs byte sent is there but byte received is zero.

There is no traffic

...

Wildfire File Check

Hey Community,

 

maybe someone can give me a hint or help about the following Topic:

 

Does Wildfire re-checks Files after we have got a verdict ? For example, if a File is uploaded to Wildfire and the verdict is Benign, but after some Time something has

...

Prevent User Traffic from Proton VPN Application

Hi All,

 

Just wondering if anyone has a solution in creating either an application id for proton vpn, and or other methods in preventing users from bypassing the palo firewall.

 

https://protonvpn.com/

 

I have discovered today that this application is no

...

DWilkin by L0 Member
  • 2540 Views
  • 2 replies
  • 0 Likes

URL Filtering Log - MAC Address

Good morning,

 

We are trying to leverage as much functionality from our PA FW right now.  At the moment we are using 3rd party filtering and 3rd party captive portal.   The challenge is always matching the URL filtering logs with the user mac address.

...

btolsta by L0 Member
  • 1690 Views
  • 1 replies
  • 0 Likes

UserID agent - different two major

Hi,

 

Just to confirm. it would be compatible this:

UserIdagent in version 9.0.x

and FWs in version 8.0.13

 

WE need to upgrade FWs to version 9.0.x, and we are thinking to upgrade first UIA, but we are not sure about compatibility in UIA two major higher.

BigPalo by L4 Transporter
  • 1047 Views
  • 1 replies
  • 0 Likes

Upgrade advices compatibility

Hi,

 

I explain my scenario:

 

We need a cluster A/P in 8.0.x. We had issues upgrading when the LACP didnt come up in the passive node jumping to 8.1.10.

So in the last try we realised that jumping to base 8.1.0 the LACP interfaces were up. So we will do

...

BigPalo by L4 Transporter
  • 1813 Views
  • 4 replies
  • 0 Likes

Resolved! security policy application and service\ or service?

Hello,

If I have a policy for example that allows application "web-browsing" and service is "port 500" - does that mean that the rule will allow if the application is either "web browsing" OR "service 500" or the rule will be allowed if the applicatio

...

roma by L2 Linker
  • 1370 Views
  • 1 replies
  • 0 Likes