General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 3236 Views
  • 0 replies
  • 0 Likes

SIP Register Message Brute Force Attack

Can anyone suggest why this alerts keep triggering on regular basis. Internal connection - destination port is 5060. Observed multiple SYN/FIN connection.

 

SIP Register Request Attempt(33592)

SIP clients typically use TCP or UDP on port numbers 5060 or

...

PA500 upgrade to PA460

Hi Team,

 

I need to upgrade my PA500 to new box PA460. PANOS software matrix says there is no way you can upgrade PA500 to any version newer than 8.1 nor you can downgrade PA460 to anything older than 10.1 which makes the process a bit tricky for me.

 

...

Way to fix a half activated VM-Series?

Fresh install of a VM-Series, 9.0.11.  I didn't manually allocate RAM, so it was running with 5.6G when I activated - get the message, increase RAM then activate again.  Shutdown, increase RAM to 10GB. Boot - firewall is now in a weird state where al

...

S2S VPN Phase1 down

We have deployed PA-VM in Azure. We are setting up S2S VPN with Cisco Router. PA-VM is the initiator.

All the P1 and P2 param are matching but Status for both are showing red.

System logs show:

 'IKE phase-1 negotiation is failed. Couldn\'t find configu

...

Sys Log.PNG

BGP filter route only for /32 prefix

Hi Experts,

 

My question is, my Cisco switches advertise host routes to FW from many VLANs/VRFs together with other network routes, we want the firewall Not to accept the any routes with subnet mask /32 but accept anything else, can you help to see if

...

rahul.k by L0 Member
  • 4843 Views
  • 1 replies
  • 0 Likes

Agentless User-ID agent permissions

We are attempting to use the agentless User-ID setup with the understanding that the service account needed to be a member of the following AD groups: Distributed COM Users, Event Log Readers, and Server Operators. However, after reading the followin

...

Dynamic Address Group with Azure monitoring

https://docs.paloaltonetworks.com/vm-series/9-1/vm-series-deployment/set-up-the-vm-series-firewall-on-azure/vm-monitoring-on-azure/set-up-vm-monitoring-on-azure.html

 

In the end article tells to create DAG but how do I add VM's automatically to this g

...

raji_toor by L4 Transporter
  • 4947 Views
  • 2 replies
  • 0 Likes

SNMP and Netflow

PAN 9.1.8 has SNMP V3 configured base on

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClHOCA0

with Netflow on AE5.30, ae5.50, and ae5.60 of the 5260 base on 

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/monitor

...

arhong by L1 Bithead
  • 4285 Views
  • 5 replies
  • 0 Likes

Content filtering for MAC OSx

I am trying to finalize my content filtering for our PA 820 rollout. I have the user-ID, group mapping and content filtering rules (By group) working just fine for my windows PC's. Where I am stuck is trying to figure it out for all of our MAC OSx us

...

RussMc by L1 Bithead
  • 2866 Views
  • 2 replies
  • 0 Likes

Resolved! PA Packet Capture Data Storage Location (CLI)

I’m trying to figure out how to view the data location of an in progress packet capture in the CLI. I’m aware of the current packet size in the GUI, but I would like to see where the data is logged in the CLI along with the current available storage

...

IsaiahF by L1 Bithead
  • 4044 Views
  • 2 replies
  • 0 Likes
  • 24293 Posts
  • 122 Subscriptions
Labels