General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 239 Views
  • 0 replies
  • 0 Likes

Network Packet Broker

Can network packet broker feature (in PAN-OS 10.1) be used only to mirror some traffic and not expect any return traffic? Like port mirror on switch.

 

santonic by L6 Presenter
  • 3681 Views
  • 4 replies
  • 0 Likes

questions about Palo Alto Networks

questions about palo alto XDR
1.what are the Deployment models in palo alto
2. the Modularity of palo alto
3. Scope of analysis (types of threats) supported by palo alto 
4. Depth of analysis (network layers, application support) supported by palo alto

U-NAT Double NAT - DNAT

Good morning, first of all thank you very much for your support.

I have the following case scenario:

FQDN: Dyndns ( paloalto01xxxalias.dynalias.net )
Modem/router/ADSL dynamic IP Public
Modem/router/ADSL LAN IP 192.160.1.254
Modem/router/ADSL NAT1-1 to Pa

...

Metgatz by L4 Transporter
  • 3741 Views
  • 1 replies
  • 0 Likes

How are unused objects calculated

I couldn't find a definitive answer to a question regarding the discovery of unused address objects found by Expedition.  According to the manuals, unused address objects are those not referenced in a security or nat rule.  However, an address object

...

Import/export settings

Hi everyone there is an export to csv/pdf option for rules/objects. 

 

 

is there an import button ? I would like to export these setting to another firewall surely I don't have to mess around in the CLI for this ? if it can read from the config locatio

...

BPSoftware_1-1628736372029.png

Login issue for TACACS user in Palo Alto NGFW

We are not able to login into Palo Alto via TACACS user.

PA NGFW is asking for reset password before login.

We are not able to reset password.

We have reset password complexity by login with another local user.

We have not assigned any admin roles for TA

...

Resolved! DSL PPoE IPv6

I use a PA-220 with PANOS 10.0.4. At the location the internet provider arrives with DSL (FTTH) where the modem is configured in bridge mode. The only option option available is using PPoE. Provider sends both a IPv4 and IPv6 addresses.

On cheap home

...

fabeele by L1 Bithead
  • 2654 Views
  • 2 replies
  • 0 Likes

Resolved! SNMP monitore system message critical

I would like to know if is possible some OID MIBs palo alto send me a message that have critical, high or medium severity.

Whem i filtering messages in Monitor>system like a "critical" a see some messages like this and I want receive some alert in my

...

felcor by L0 Member
  • 2633 Views
  • 1 replies
  • 0 Likes

Azure VM cannot access the Internet

Hi there,

 

We have deployed Hub and Spoke technology in Azure. All VM traffic is going through the FW. Settings of Spoke VM is same as Hub VM. NSG set to allow all traffic. 

FW is configured with 3 VR static routes (one route to the internet, one from

...

Resolved! Inbound decryption working/not?

2 web servers, inbound decryption for both, one working and other does not and are using same wildcard cert.

Bold are the only differences I see between 2. I don't know why working server without decryption shows the root instead of intermediate SHA2

...

image.png
raji_toor by L4 Transporter
  • 3020 Views
  • 2 replies
  • 0 Likes

Pre-defined reports only useful for Last24 hours?

Hi,

I wanted to use the pre-defined reports for a summary of the last 7 Days (or Last week) but as I see, these pre-defined reports only work for the last 24 hours / last day, even though I send the Email with all pre-defined reports only every sunday

...

  • 23624 Posts
  • 107 Subscriptions
Labels