General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4114 Views
  • 0 replies
  • 0 Likes

Not able to upgrade MacOS

Not able to upgrade macOS. We are trying to upgrade macOS from Catalina to Bigsur. Whenever we try to upgrade it from the app store or download the dmg and install, the installer fails.But when it is connected to a different network, it goes through without any problem. I wonder if there is something in firewall that needs to be allowed. Please ...

Akhil_B by L2 Linker
  • 2831 Views
  • 2 replies
  • 0 Likes

Network Interface configuration into V-Sys Environment

Hi,can anybody help me for below queries:How to make a shared (sub-interface) into multi V-sys environmentHow to create VLAN interface (L2/L3) on specific V-sys.Is there any concept of virtual-switch concept in V-sys environment?How to make a inter V-sys communication.

vijKumar by L0 Member
  • 1938 Views
  • 1 replies
  • 0 Likes

Easy way to deal with Google SMTP (1e100.net)?

Anybody found an easy way to deal with allowing SMTP traffic to Google but nowhere else. The problem here is 1e100.net IP space is all over the place (since it's Google's world wide distrubted cloud) and FQDN address object type, when it even works [bugs all over the place with that code], doesn't allow wildcares.Really need a day to say someth...

PeterT by L2 Linker
  • 17660 Views
  • 10 replies
  • 0 Likes

One of interface is down in vm

Hi, Palo Alto firewall is VM in ESXi. In the ESXi, I can see the firewall interface e1/1 , e1/2 and e1/3 are up. but I do not know why we can see the firewall e1/3 is down. Anyone can advise this? Please see the below. Thank you

PAFrank_0-1633882439084.png
PAFrank by L2 Linker
  • 4994 Views
  • 3 replies
  • 0 Likes

NOT ABLE TO ACCESS PUBLICY NATED IPS VIA GP IN FULL TUNNEL

Hi Guys, We are not able to access nated ips from GP full tunnel scenario. We have 50+ hosted servers publicly and we have GP in full tunnel mode. All the nated servers are accessible without any issue but when we connected to GP in full tunnel we are not able access it. need you suggestion on this to achieve it

saifulla by L0 Member
  • 1956 Views
  • 1 replies
  • 0 Likes

multiple MAC address on switch port connected to the PAN firewall

Dear Community, We have a few Palo Alto firewalls in several locations where we are seeing a weird behavior.The firewalls are connected directly to switches and in some ports of the switch we see two learned MAC addresses: one 001b17-XXXXXX belonging to the FW´s interface but also another one 34e5ec-XXXXXX for which we cannot find explanation. B...

Carracido by L4 Transporter
  • 2902 Views
  • 1 replies
  • 0 Likes

error: Threat database handler failed.

the error above pops up when i try to commit changes... i guess my policy changes not are done ? And how to solve this error ? Unfortunately i have an old version running, upgrade is due next month. Currently running 7.1.24-h1

Emails sending from PA are not working

Currently we are facing an issue with Emails which are not sent from palo alto firewall.We have created a setting to send mail with reports but we are getting below error listed. Connection to smtp.google.com 465 failed. Failure when receiving data from the peer Please share any document related to this error and a recommendation for this.Cheers.

temperature rise after upgrade

hi, We have found that after upgrading from version 9.0.12 to 9.1.11 the average temperature of the computer has increased.Before, all parameters were usually below 40 degrees Celsius. Kind regards

BigPalo_0-1633964610929.png
BigPalo by L4 Transporter
  • 1983 Views
  • 1 replies
  • 0 Likes

SAML authentication to paloalto support portal and other products like XDR.

Is it possible to integrate own SSO using SAML to get access to support.paloaltonetworks.com and other products like XDR? Is there any feature request portal in case this integration isn't yet possible? I noticed that currently to secure such sensitive portals for paloalto products only 2FA (using either email or OTP eg. google authenticator) is...

Regarding Bootstrap issue

Hi Team, We are facing issue with bellow error while starting the firewall up.Also sometimes the firewall is not coming up so we need to reset the firewall and have to upload the configuration files to bring the production up.Please provide a solution to the below error from the system log. [critical hw bootstrap-image-error 0 No bootstrap media...

Resolved! Configuring tunnel ike-gateway with API

I am at my wits end with this. Can anybody tell me what I am doing wrong here? I'm trying to make a script that will use the API to stand up L2L VPN tunnels, and there is something in this request that is making the firewall puke (error 18 "Malformed Request"). The API calls:making the gateway, this works just fine:curl --globoff -X GET "https:...

SDWAN traffic - where does it go, can I show?

A few days ago on one of our Palo Alto firewalls the primary (MPLS) line was down (not the provider router, somewhere between there was a broken cable) and traffic was routed over backup (Internet). Because provider router was up, the interface on Palo Alto was up, so this was no indication for traffic routing over backup.I only could see this i...

ChrisCon by L2 Linker
  • 2493 Views
  • 1 replies
  • 0 Likes

Resolved! Allow web-browsing but not for users?

Hello everyone, First post so please be gentle. I need to have a security rule to allow the Bitdefender application on my servers. Part of the Bitdefender application requires explicit web-browsing. That is obviously easy enough to do. My problem is that I don't want users to then be able to browse the web from those servers but because I have e...

  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels