General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 777 Views
  • 0 replies
  • 0 Likes

External ping to public ip of secondary ISP interface.

I am having issues allowing pings on my secondary ISP interface. I have a dual ISP set up with my main connection a 10gbit connection with ISP1 and a backup 1gbit with ISP2. I am currently using path monitoring for internet failover and I also have a

...

Dyardley by L0 Member
  • 3952 Views
  • 2 replies
  • 0 Likes

Resolved! URL filtering feature in PA 3220

Hi All,

 

I would really appreciate if someone can let me know whether URL filtering feature is enabled by default in PA 3220 or Pan OS 10 or a subscription for URL filtering have to be purchased. Is there any default URL filtering features available i

...

How to shun/block an IP address for a period of time

I've worked with several traditional IPS in the past and there is always a way to create rules that shun or block a source IP address for some period before automatically resetting.  It is especially useful for stopping automated bots that are just p

...

njoyzrd by L1 Bithead
  • 8490 Views
  • 4 replies
  • 1 Likes

PAN-171203 issue and latest 9.0.x releases

Hello everybody,

 

  as all you know, yesterday (or today, in US) were released updates to all PAN-OS versions addressing some issues, but I really have trouble with the PAN-171203 one. As per the PAN-OS 9.0.14-h3 Addressed Issues page (https://docs.pa

...

grenzi by L3 Networker
  • 2717 Views
  • 2 replies
  • 0 Likes

Unable to SSH to Passive firewall, GUI OK

hello everyone,

I lost SSH access to my PA-3020 passive firewall on mgmt. interface.. I can access it via GUI.

for Active Firewall, both SSH and GUI are OK.

I think it happened after I did fixing weak ciphers and keys on mgmt. interface. interface for S

...

zinkt101 by L1 Bithead
  • 6604 Views
  • 2 replies
  • 0 Likes

Resolved! Unable to see groups in group mapping setting in Palo alto

Group with three to 4 user was added in ad with group name (vpn group for laptop) and this group was under OU group id, but in group id i was able to see groups till alphabet N ,so tested creating Group with group name (ATEST users) i was able to see

...

live community_ss_ad.PNG
KashifSh by L1 Bithead
  • 3502 Views
  • 2 replies
  • 0 Likes

Tunnel Monitor with AWS

Hello Everyone

 

Does Tunnel monitor work PA - AWS IPSec ?

I've heard it will not work, only PA - PA Connection

 

I'd appreciate it if you could help me !

Thanks !

Resolved! Issue with Captive Portal

Our domain joined computers are getting prompted to sign into captive portal, however this is a random occurrence as some occasions it wouldn’t and we would be able to connect to the internet. How to stop this issue?

 

Configuring QoS on VLAN interface

Hi guys,

We want to apply QoS on our inside zone for downloads, but it's not hitting the QoS Policy, here's our conifg:

  • For the Inside Zone (users zone) we have an L2 interface eth1/1 and one VLAN interface linked to the subnet.
  • We created a QoS Profile
...

echahine by L2 Linker
  • 4518 Views
  • 4 replies
  • 0 Likes

Destnation NAT by https kindly help

I have one real ip address and I have three web sites. Is it possible to work on them on the same port 443 , and the difference is according to the site address? i asked for NAT Solution in paloalto kindly help

Osamaps by L0 Member
  • 1856 Views
  • 2 replies
  • 0 Likes
  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels