General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4231 Views
  • 0 replies
  • 0 Likes

RDP slow vía Globalprotect

Good morning, thank you very much for your support. I have the following problem. I have a PA-220 equipment, connected to the Internet via a 200mb symmetrical Adsl link. Scenario: PanOS 10.0.6Globalprotect clients 5.2.7 ( win 10 ) PA-220 ---NAT1:1---Router/modem-adsl---dynamic public IP---fqdn DynDNS. I have configured global protect for rdp con...

Metgatz by L4 Transporter
  • 4791 Views
  • 2 replies
  • 0 Likes

Not able to upload the file by google drive

hey team one of my customers has an issue with the firewall that the users are not able to upload files on google drive after adding allow the URL and application type in the security rule we added google base google drive docs to google uploading. another application is wetransfer uploading file properly and there is a log also in data filterin...

SIP Register Message Brute Force Attack

Can anyone suggest why this alerts keep triggering on regular basis. Internal connection - destination port is 5060. Observed multiple SYN/FIN connection. SIP Register Request Attempt(33592)SIP clients typically use TCP or UDP on port numbers 5060 or 5061 for SIP traffic to servers and other endpoints. Port 5060 is commonly used for non-encrypte...

PA500 upgrade to PA460

Hi Team, I need to upgrade my PA500 to new box PA460. PANOS software matrix says there is no way you can upgrade PA500 to any version newer than 8.1 nor you can downgrade PA460 to anything older than 10.1 which makes the process a bit tricky for me. The question is what's the best way to migrate my configuration? Is the config different between ...

Retention showing 0 days for hourly , daily and weekly summary logs

At A location PA VM500 firewall summary logs not showing for traffic , threat and URL logs. Retention period is showing for 0 days.We haven't made any changes in log quota. Same setting is there at B location vm500 firewall and in that firewall retention period is more than 100 days. Both VM firewall have same capacity disk, but no summary log...

Deepak25 by L3 Networker
  • 2041 Views
  • 1 replies
  • 0 Likes

Palo Alto interface does not ping after a certain period of time

We are running NMS.However, the operation method does not work internally and goes out to the VPN public IP.trust -> untrust -> isp(internet outside) -> VPN untrustCommunication is done in the same way as above. In NMS, the status of VPN untrust is monitored by ICMP.However, after 30 minutes, the VPN untrust interface suddenly stops pin...

Way to fix a half activated VM-Series?

Fresh install of a VM-Series, 9.0.11. I didn't manually allocate RAM, so it was running with 5.6G when I activated - get the message, increase RAM then activate again. Shutdown, increase RAM to 10GB. Boot - firewall is now in a weird state where all the licenses are present except capacity, and it shows serial number as unknown.Should I start ...

S2S VPN Phase1 down

We have deployed PA-VM in Azure. We are setting up S2S VPN with Cisco Router. PA-VM is the initiator.All the P1 and P2 param are matching but Status for both are showing red.System logs show: 'IKE phase-1 negotiation is failed. Couldn\'t find configuration for IKE phase-1 request for peer IP 64.39.99.153[500].' I do NOT have any 64.x.x.x IP conf...

Sys Log.PNG

BGP filter route only for /32 prefix

Hi Experts, My question is, my Cisco switches advertise host routes to FW from many VLANs/VRFs together with other network routes, we want the firewall Not to accept the any routes with subnet mask /32 but accept anything else, can you help to see if the firewall can do this kind of route mapping? Which can be easily achieved in Cisco router by ...

rahul.k by L0 Member
  • 5140 Views
  • 1 replies
  • 0 Likes

Agentless User-ID agent permissions

We are attempting to use the agentless User-ID setup with the understanding that the service account needed to be a member of the following AD groups: Distributed COM Users, Event Log Readers, and Server Operators. However, after reading the following Palo Alto documentation on how to create the service account it seems that there is some confli...

Dynamic Address Group with Azure monitoring

https://docs.paloaltonetworks.com/vm-series/9-1/vm-series-deployment/set-up-the-vm-series-firewall-on-azure/vm-monitoring-on-azure/set-up-vm-monitoring-on-azure.html In the end article tells to create DAG but how do I add VM's automatically to this group. Is there a wildcard that i can use like 'azure.vm-name.*'. I tried but its not working. Al...

raji_toor by L4 Transporter
  • 5232 Views
  • 2 replies
  • 0 Likes

System log message Clearing snmpd.log due to log overflow

I am wondering why I see the log 'Clearing snmpd.log due to log overflow' on several of my firewalls. Out of the ~20 firewalls I manage 2 or 3 firewalls log this message on occasion. The other firewalls never log this message. I am trying to understand why this occurs on just a few firewalls. Should I be concerned about the message? What do I lo...

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels