General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

delete ikemgr.log without impacting existing VPN tunnels

This file is getting too big for me and it takes forever to search for things in that file.  I would like to purge/delete this file WITHOUT impacting existing VPN tunnels.  I want to be able to debug VPN tunnels later on as well.

 

1- delete debug-log

...

dtran by L4 Transporter
  • 3520 Views
  • 4 replies
  • 0 Likes

Resolved! Routing problem

I am configuring a new AP-850. MGT port works fine and I can access the Internet. Now, I configure ethernet1/1 to access the Internet. 

I also configure the routing. But can't ping 8.8.8.8. Do I miss something or how do I troubleshoot it?

 

 

 

 

pa-5.JPG
pa-6.JPG
boblin by L2 Linker
  • 4588 Views
  • 7 replies
  • 0 Likes

Resolved! Add production firewall to panorama

Hi All,

We are using PAN Firewalls on 9.1.5

We have 2 HA pairs both in production with around 100 policies on each and Global Protect on 1 pair.

 

We have purchased Panorama VM and want to add the firewalls to Panorama. 

Now I did find some previous artic

...

VPN Problem - Ping from Loss

Good afternoon;

 

Currently I have a PA-820 device which is updated to the latest version 9.1.1 of PanOS.

 

Every time I am connecting to the VPN, the ping is lost after a few minutes.

 

I'm checking and the VPN is still connected, even if I connect to a r

...

04-01--2021_17-01-57.png
04-01--2021_16-57-55.png
04-01--2021_17-06-09.png

Resolved! Change management ip of cluster nodes.

Hello,

 

We have 3200 series HA cluster .

 

The requirement is to change the ip addrrss of management interface of both the nodes.

( Note we are not changing the ip address of panorama )

 

All the required rules and routes are in place .

Can we change the ip

...

Problem accessing internet when install globalprotect Mac

Hi.

I've updated my macbook to MacOS Big Sur. After that, I had internet issues. So, I uninstalled the globalprotect and the internet returned normally.

Now, I installed globalprotect again and my internet is not working again. This problem occurred wh

...

Condina by L0 Member
  • 2088 Views
  • 1 replies
  • 0 Likes

Migrating from 5060 to 5220

Hi,

  We are planning to migrate from 5060 to 5220 both should be in PAN-OS 8.0.7 releases.

As per article at https://live.paloaltonetworks.com/t5/Management-Articles/Hardware-Migration-from-PA2000-to-PA3000-or-PA5000/tac-p/156354#M4307 taking device s

...

IKEv2 - Unexpected ipsec key delete event

Hi All,

 

I'm a medior network engineer who just got into a new position where I deal with PA FWs. I face the following issue now:

 

There is an IPSEC site-to-site VPN between my PA-850 (ver. 9.1.3) and a remote FW (I'm not sure about the remote device t

...

olloczky by L1 Bithead
  • 4106 Views
  • 2 replies
  • 0 Likes

Resolved! Don't see HA1 and HA2 ports

I am following this article "How to Configure High Availability on PAN-OS" to configure HA on our new PA-850. I don't see HA1 and HA2 ports. Or where I can configure HA interface?

 

 

 

ha1.jpg
boblin by L2 Linker
  • 5001 Views
  • 6 replies
  • 0 Likes

Kafka is using port tcp 9093 for private communication

I see Kafka streaming is  using port 9093 but in the PA 5220 does not identify it as kafka (unknown TCP). the app-id DB is showing kafka with tcp port 9092. is there a way for PA to append it to kafka app ID ? I already added as a custom app but i th

...

Panorama backup query

Hi Team

 

Currently we have two Palo Alto Firewall & one "Panorama" but we are getting only Panorama backup. we want to confirmation whether Panorama  having only panorama devices backup( Excluding Palo alto Firewall ) or its having including Palo alto

...

Resolved! Remove devices form the customer portal

Hi there,

 

We have several older model devices that we no longer use in production so I wanted to remove them from the customer portal. I don't see an obvious way to do this so I wanted to put the question out there. How do I/ can I even, remove devic

...

Jamesy by L2 Linker
  • 5248 Views
  • 3 replies
  • 0 Likes
  • 24011 Posts
  • 102 Subscriptions
Top Liked Authors
Labels