General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2998 Views
  • 0 replies
  • 0 Likes

HTTP2 allowed without strip alpn enable

Dear Team One of my customers wants  HTTP2 benefits with decryption enable.

The customer don't want to enable the strip ALPN because it Downgrades to HTTP1.1 

Can we do decryption with HTTP2 Downgrade with decryption? 

Logged in Admins _cliuser normal?

Hi there,

 

Today I accidentally discovered the user _cliuser in the widget Logged in Admins on the dashboard of our Palo Alto Firewall.

 

After a few seconds it was gone.
Unfortunately, I didn't find anything through the search, and seeing this for the f

...

kenanuenal_0-1633340167871.png

Layer 2 tunnel on a Palo alto

Can you create a layer 2 tunnel on a palo alto 3050? Is a layer 3 tunnel better than a layer 2 tunnel? Is a layer 2 tunnel more of a private or direction connection than a layer 3?

jdprovine by L4 Transporter
  • 7297 Views
  • 3 replies
  • 0 Likes

VLAN Insertion and subinterface - VLAN1

Hi, I'm new to the community and am trying to assist a customer as they work on a PAN and SW integration for an industrial setup. Customer has setup a L2 network between different industrial devices that seat in different VLANs and are all connected

...

Resolved! Delete Vsys

Any advice on deleting a vsys? 7050 OS 9.0.11

 

Simple as selecting vsys under Device Tab and deleting?

 

Thanks

clewis1 by L3 Networker
  • 5919 Views
  • 6 replies
  • 0 Likes

Regarding threat visibility not being shown.

We have deployed Palo Alto in tap mode to get traffic visibility, we have configured PA VM 100 with active trial license,  We have visibility of Traffic logs but the threat logs are not visible. 

In policy configuration for tap mode we also have assig

...

Users and group mapping

Hello everybody!


Sometimes users' group memberships are not recognized by the firewall integrated user id agent. In the useridd.log we see this message:


2019-03-29 10:12:45.317 +0100 Warning: pan_user_group_user_prime_uid_lookup(pan_user_group_multi_at...

Resolved! Policy base routing for internal trafique

 

Hello everyone,

 

I have two ISPs wan1 and wan2, for lan 1 it must go out through wan1 and lan2 through wan2. in the event of a problem with one of the wans, the associated lan will have to exit through the other wan temporarily. To do this, configure

...

Capture.PNG

One IPSec SA Stops Passing Traffic

I have a B2B tunnel with a business partner.  There are 22 proxies, all defined host-to-host.  The VPN peer is a Cisco firewall, I'm not sure of the model.  Phase 2 lifetime is 8 hours.  One particular SA stops sending and receiving traffic at each P

...

pnelson by L2 Linker
  • 4354 Views
  • 3 replies
  • 0 Likes
  • 24286 Posts
  • 122 Subscriptions
Top Solution Authors
Top Liked Authors
Labels