General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4225 Views
  • 0 replies
  • 0 Likes

How do I select an asset when filing a support case?

Hi, Weird question, but I'm trying to make a support case for a firewall, and I'm on Step 4, where it's asking me to "Please select the asset for which you are filing the case." No matter where I click in the table, there doesn't appear to be any way to actually select something. This is both on Firefox and Chrome.Scrolling to the right doesn't ...

Steven16_0-1630423910623.png
Steven16_1-1630423990111.png
Steven16 by L0 Member
  • 2464 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama Issue - cannot edit an interface on a template stack

Hello guys, first of all - I m new and I would like to apologize first of all, if the theat should have been opened wrongly, or my english should be a little bit **bleep** 😉 I cannot open/edit anything in a template stack under template->network->interface Zones and other things in the stack re working fine but if i click on a interface e...

Kai_Ulrich_2-1630591975261.png
Kai_Ulrich_3-1630592073970.png
Kai_Ulrich_1-1630591722430.png
Kai_Ulrich_5-1630592172593.png

Email attachment issue

Hi Team, We have configured Email alert scheduler to get logs daily and monthly. We getting daily logs with attachments and not getting monthly logs and attachments. Sometimes we getting monthly logs email but attachments are not there. PANOS 10.0.5 and tried to restart the mgmt server but the issue is still the same and we observed the firewal...

VishnuPS by L3 Networker
  • 3524 Views
  • 3 replies
  • 0 Likes

Does anyone use HIP check on the local LAN as a NAC solution?

I understand that a HIP check can be used on the local LAN when the GlobalProtect client connects to the internal gateway. How effective is this as a NAC solution for the internal LAN?Without 802.1x authentication, does a machine without GP installed simply bypass the internal gateway (and HIP check)?Thanks

Maxstr by L3 Networker
  • 6108 Views
  • 3 replies
  • 0 Likes

Resolved! Vulnerability protection profile changed his icon

hey guys, i think it might related to configuration issues, but i cant find what went wrong.the vulnerability profile icon looks like this:but in the policies tab, i get this big red exclamation mark: any ideas if something went wrong?pan-os ver is 10.0.1 thanks in advance,Ishai.

1.jpg
2.jpg

HA Clustering session synchronization

Hello!I have some question about session synchronization in HA Clustering (geographic cluster). All firewalls in HA clustering use the first rule for traffic that should not match it, this only happens on geoclustered firewalls. Later, the rules are processed correctly, but the first one is always used, so I see incorrect traffic in the logs.Exa...

Block Access to private Gmail but allow corporate

Hi all.Im looking for a solution to block user access to private gmail accounts but allow a corporate accounts to be used.I'm aware that there is a solution involing proxy server and X-forwarder.Is there any other way to do this without dedicated proxy serever? RegardsLeo

Resolved! IPSec VPN Ingress traffic from two different interfaces not passing traffic.

Hey All, We're having a problem in adding new traffic to an existing VPN Tunnel. We've had a VPN tunnel up for a few years working just fine, but now we are trying to put traffic from a different interface into the Tunnel and the PA is dropping the packets (found them in Traffic Capture). The VPN is out to the Internet on Eth1/1 and the origin...

rswinter by L1 Bithead
  • 5589 Views
  • 3 replies
  • 0 Likes

Authentication of Users through Captive portal query

Hi Team, We had configured captive portal on the firewall recently. In Authentication policy we had selected source users as any and we are using Active Directory for Authentication. Also we had configured agentless user-id mapping on the firewall and server monitoring to fetch details from AD server for User-IP mapping to feed onto the firewall...

Creating subinterfaces on Active Active HA

Hello , I have to create 6 Subinterfaces on A/A cluster So i need 3 IP addresses from each VLAN - 1 for FW1 , 1 for FW2 and 1 as Floating IP My question is , do i have to go to each firewall separately to configure the respective IP ?If yes , what will happen if i do commit the 2nd FW , will it create an issue ? Also ,under HA , in active , ac...

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels