General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 203 Views
  • 0 replies
  • 0 Likes

Web Activity Monitoring for BYOD School

Hello All...

 

We are looking for a solution for a medium sized private school (k -12) to track users web activity. We'd want to be able to go back a week or so..nothing crazy. But would love to be able to get a report on a site\url and see what user

...

Bind 2 separate IPSEC tunnels to separate ISPs

I am trying to setup a separate IPSEC tunnel to a new ISP while keeping the rest on the old ISP.  I am doing this as a test.  My issue is lack of connection.  The message I get from the logs is that it try's the connection then I get another saying i

...

VPN Ipsec SitetoSite DynDNS

Good afternoon everyone, a question, is it possible to set up a Site-to-Site VPN between two sites with Dynamica IP, but that have each their FQDN with DynDns services.

Example:

Site 1: FQDN: mysite1.dynalias.net ( DynDNS )
Site 2: FQDN: mysite2.dynalia

...

Metgatz by L4 Transporter
  • 3518 Views
  • 3 replies
  • 0 Likes

Resolved! VPN TWO Interconnected Sites Public IP DHCP ( DynDNS )

Good afternoon, I have some doubts regarding a configuration:

 

Scenario: I have two sites that I have to configure with Site-to-Site VPN. Both sites have dynamic public IPs. In both of them DynDNS services are configured and operating.

 

The sites with

...

None_Ip_Dhcp.JPG
Metgatz by L4 Transporter
  • 3531 Views
  • 3 replies
  • 0 Likes

Resolved! System logs stalling same time every day

On our PA3050 the system logs stall each day at 04:01 and then starts again at 20:00

I have verified this happens in both GUI and CLI

No scheduled jobs correlate with the timing of the logs stopping then starting

I have checked show system logdb-quota a

...

PatScott by L1 Bithead
  • 3447 Views
  • 3 replies
  • 0 Likes

log forwarding to CDL is generating high traffic volume

Dear community!

 

We are sending logs to cortex data lake and we noticed high traffic volume for the sessions concerning log forwarding, with peaks up to 200GB of data sent. 

 

Do you know if this volume of traffic can be normal?

Also, is there any docume

...

Carracido by L3 Networker
  • 3439 Views
  • 5 replies
  • 0 Likes

VPN Site-to-Site FQDN peer ( Dyndns )

VPN Site-to-Site FQDN peer ( Dyndns )

 

Good afternoon, I am trying to set up a site to Site VPN using as PEER FQDN  myvpnsite2.dynalias.net ( DynDNS ).

Should I also use the Local and Peer identification parameters and settings or it is not necessary?

A

...

FQDN_Dyndns.JPG
Metgatz by L4 Transporter
  • 3343 Views
  • 2 replies
  • 0 Likes

SIP Traffic - End Reason Resources Unavailable

We seem to have a lot of SIP traffic that is reporting a Session End Reason of "resources-unavailable".  This traffic is hitting rules that don't even match.  Please refer to attached screen capture. What could be the reason?
 
Thanks for your assistan
...

VPN Site-to-Site and Global Protect - DynDNS IP WAN DHCP

Hello, good afternoon everyone, I hope you are very well.

I have a couple of questions, I hope you can clarify and help me.

 

1.- Is it feasible to create a Site-to-Site tunnel between two sites with DYNAMIC IP ? Example using DYNDNS, in both sites, is

...

Metgatz by L4 Transporter
  • 2583 Views
  • 4 replies
  • 0 Likes

Resolved! MGMT interface ip address

Hello, 

 

is that possible to use for the MGMT interface IP address from a VLAN that configured in one of the data plane interfaces?

 

For example:

Eth1/1.100: IP 192.168.1.1/24

 

Mgmt interface IP: 192.168.1.254/24

DG: 192.168.1.1

 

Thanks,

hasansh by L0 Member
  • 2346 Views
  • 1 replies
  • 0 Likes

DynDNS Certificate

Good afternoon, I am trying to configure DynDNS on the Palo Alto machine.

In the steps it talks about using a certification profile, and in the Palo Alto instructions, it talks about importing the SSL certificate from the DDNS provider. My question is

...

Metgatz by L4 Transporter
  • 3684 Views
  • 1 replies
  • 0 Likes

Redundancy VPN between two sites with two ISP

HELLO ALL

We have two PA devices.(850 and 500).They are located in different sites.Both firewalls have two connections to Internet via 2 different ISPs

We want to make Site to Site VPN between these sites.But make it redundant.Two VPN connections betwe

...

Radmin_85 by L4 Transporter
  • 5530 Views
  • 5 replies
  • 0 Likes
  • 23773 Posts
  • 110 Subscriptions
Labels