General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

Resolved! difference zone between end users and domain controller on Palo alto

Hello all, I have a problem with palo alto PA-850. I configure domain controllers and end users diference zone. example: zone name: Server for domain controllers, and zone: User for end users. I setup policy to allow all traffic from Zone: Server to Zone: User and from User to Server. but end users could not authenticate with domain controllers....

Chivas by L2 Linker
  • 5342 Views
  • 6 replies
  • 0 Likes

Resolved! SSH timeouts across the board or per policy?

Are the application timeouts across the board for something like SSH? Meaning for user SSH connections through the PAN and admin SSH connections to the PAN that application controls the timeouts for both?

drewdown by L4 Transporter
  • 5098 Views
  • 2 replies
  • 0 Likes

Not able to add app;ication in PBF rule

Hey guys my client want some applications traffic to go through ISP2 when I create a PBF rule for that add application I get some specific error.I updated the apps and threat the latest version. PA-220 .PANOS version is 9.1.8

Resolved! Why a forced Target Negate No?

I've had a case open with Palo Alto support for over a month and the person I got says they've not seen this issue before. I doubt we are blazing new trails here and I just don't understand how this can actually be unfamiliar.Our Palo Alto is a recent install of a converted configuration from a different firewall platform. The implementation ven...

BobNida by L0 Member
  • 6438 Views
  • 3 replies
  • 0 Likes

Resolved! Issues with VPN to AWS

Hi I appreciate this is an odd one but I have a little bit of an issue with my home setup, I have a pa-220 behind a sky router, the issue is that if I am coming from the inside network i.e mgmt interface that traverses the inside zone to make it out then I can ping anything I want, however if I am trying to source the ping from the external inte...

Resolved! URL Content Filtering Removal?

One of my sites appears to be blocked by URL content Filtering as a 'Hacking site' I poked around on our end and it seems to have come through a definition update(?) How do I go about getting it removed? Clearly since i'm asking, it isn't a hacking site just a list of mostly freeware. It seemed to happen after I added 'hacker scripts' to my l...

Joe1234 by L0 Member
  • 2769 Views
  • 2 replies
  • 0 Likes

RDP slow vía Globalprotect

Good morning, thank you very much for your support. I have the following problem. I have a PA-220 equipment, connected to the Internet via a 200mb symmetrical Adsl link. Scenario: PanOS 10.0.6Globalprotect clients 5.2.7 ( win 10 ) PA-220 ---NAT1:1---Router/modem-adsl---dynamic public IP---fqdn DynDNS. I have configured global protect for rdp con...

Metgatz by L4 Transporter
  • 4732 Views
  • 2 replies
  • 0 Likes

Not able to upload the file by google drive

hey team one of my customers has an issue with the firewall that the users are not able to upload files on google drive after adding allow the URL and application type in the security rule we added google base google drive docs to google uploading. another application is wetransfer uploading file properly and there is a log also in data filterin...

SIP Register Message Brute Force Attack

Can anyone suggest why this alerts keep triggering on regular basis. Internal connection - destination port is 5060. Observed multiple SYN/FIN connection. SIP Register Request Attempt(33592)SIP clients typically use TCP or UDP on port numbers 5060 or 5061 for SIP traffic to servers and other endpoints. Port 5060 is commonly used for non-encrypte...

PA500 upgrade to PA460

Hi Team, I need to upgrade my PA500 to new box PA460. PANOS software matrix says there is no way you can upgrade PA500 to any version newer than 8.1 nor you can downgrade PA460 to anything older than 10.1 which makes the process a bit tricky for me. The question is what's the best way to migrate my configuration? Is the config different between ...

Retention showing 0 days for hourly , daily and weekly summary logs

At A location PA VM500 firewall summary logs not showing for traffic , threat and URL logs. Retention period is showing for 0 days.We haven't made any changes in log quota. Same setting is there at B location vm500 firewall and in that firewall retention period is more than 100 days. Both VM firewall have same capacity disk, but no summary log...

Deepak25 by L3 Networker
  • 2012 Views
  • 1 replies
  • 0 Likes

Palo Alto interface does not ping after a certain period of time

We are running NMS.However, the operation method does not work internally and goes out to the VPN public IP.trust -> untrust -> isp(internet outside) -> VPN untrustCommunication is done in the same way as above. In NMS, the status of VPN untrust is monitored by ICMP.However, after 30 minutes, the VPN untrust interface suddenly stops pin...

Way to fix a half activated VM-Series?

Fresh install of a VM-Series, 9.0.11. I didn't manually allocate RAM, so it was running with 5.6G when I activated - get the message, increase RAM then activate again. Shutdown, increase RAM to 10GB. Boot - firewall is now in a weird state where all the licenses are present except capacity, and it shows serial number as unknown.Should I start ...

  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels