General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2059 Views
  • 0 replies
  • 0 Likes

Not able to access an website via Palo Alto firewall

Hi Folks,

 

We are recently receiving multiple cases where the devices behind the PA firewall is not able to access certain websites.

 

In an recent case we had seen for two devices (Device A and Device B in different VLAN's ) located behind Palo Alto fi

...

tamilvanan_0-1640963144717.jpeg
tamilvanan_1-1640963230501.jpeg

Resolved! Hit count cannot increase after NAT

Hi U-turn nat is configured for trust user to ping server located at DMZ. After the user ping the server from trust zone to dmz zone, the security policy count increases, but nat policy count does not increase. Is this normal? if not, why it happen?

...

DavidyPalo_0-1640898101134.png
DavidyPalo_1-1640898440563.png

Communication between 2 network segment

Hello,

I have a PA-220 firewall. There is a normal switch connected on ethernet 1/4. The switch is connected to the equipments of 2 network segments, 10.1.240. * and 192.168.5. * . 

These equipments need to communication now. But I can't change their I

...

1.png
2.png
3.png

WAF Firewall

Hi Comunity,

 

Does paloalto has a waf (Web app firewall) solution?

 

Many thanks.

Resolved! PAN OS upgrade from 8.1.15 to 9.1.12-h3

Hi, 

My client is planning to upgrade their Panorama and PA5220 (x4) current PAN OS v8.1.15 to 9.1.12-h3.

Panorama > PA5220 x2 (HA) 

                  > PA5220 x2 (HA)

 

Just want a second opinion of below upgrade path is correct or not, and other pre-cau

...

Global Protect is constantly causing network errors.

Since November I have been experiencing issues with Global Protect VPN not connecting properly.  Global Protect either causes a slow down in my internet or my local internet to go out with a bunch of "DNS error" or "Network Change" error or "Network

...

Include or Exclude Subnetworks for User Mapping

I would like to know when to use Include or Exclude Subnetworks for User Mapping. in other words I would like to know whether it is used when we use agentless user id or external user id agent or in both cases?

 

 

 

 

 

 

 

perumalj by L2 Linker
  • 1961 Views
  • 1 replies
  • 0 Likes

Resolved! Viewing BGP traffic logs

We have BGP setup between our core switches and out Palo Alto FWs but I never see any traffic logs for port 179 or application BGP on the Palo Altos.

 

How do I go about seeing this traffic ?

iqbal786 by L0 Member
  • 12803 Views
  • 2 replies
  • 0 Likes

Sort feature would be helpful

I'm fairly new to Palo Alto gear and wanted to submit a suggestion about adding a sort capability to the information presented in the various tabs/pages. Just a few examples on the benefits of being able to sort: Trying to find that one rule where yo

...

HTTP brute force alerts to gameplayapi.intel.com

I have started noticing PaloAlto firewall generating a lot of HTTP brute force alerts with the URL gameplayapi.intel.com/api/games/getagsgames2/ . Do any of you aware of what this could be? I couldn't find anything malicious related to this but I'm s

...

Resolved! GlobalProtect - failed to allow *.google.com through the VPN

hello everyone

 

Merry Xmas,

 

Our SSLVPN has tunnel split enabled, but I want to allow all my traffic or the *.google.com through the VPN, so I tried:

1. added 0.0.0.0/0 to here, does not work.

2. added *.google.com to here, does not work.

 

Can please some

...

DongQu_0-1640352331374.png
DongQu_1-1640352422177.png
DongQu by L2 Linker
  • 6996 Views
  • 8 replies
  • 0 Likes
  • 24230 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels