Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 218 Views
  • 0 replies
  • 0 Likes

Management Plane high utlization

Hi guys,

 

Im having a query regarding Packet buffer protection where after enabling it i can find that management plane cpu utilization reached from 7 to 80% im not sure what could cause it.

 

So can some one refer me when does management plane reaches

...

Multicast Access to External Stream

Looking for some info on getting multicast working through the Palo Alto. Current working with version 8.11 and previously accessed this iptv stream located externally via a tunnel. Now that hardware has changed, we need to find a way to access this

...

Resolved! Our custom-app has impacted all SSL traffic

Hi Team,

 

We have a client who do not have SSL decryption and has many third-party applications working over SSL on different ports other than 443. 

 

The client has a security requirement that all applications need to be categorized by Palo alto firewa

...

bambox by L1 Bithead
  • 2942 Views
  • 2 replies
  • 0 Likes

userID agent not connecting

5220(9.0.11) firewall connectes normally to local DC running userid agent, but I see this for a remote DC which also has the agent installed. The same remote DC is connected successfully to 850(9.0.11) firewall on remote site.  Not sure what the issu

...

raji_toor by L4 Transporter
  • 2417 Views
  • 1 replies
  • 0 Likes

Config Audit

Hi Everyone - I wanted to pose this question to the folks out there that may be feeling the same as I do about the way the config audit feature works. It is supposed to be a simple way to do a diff on config changes/deletes. I have found that palo se

...

combine more than two port for internet connections

Hi 

I wish to understand how combining  more than two ports for internet connections works. I have configure four ports for internet connections with deferent speed. 

when I perform a seed test. I think, some result base one companying all port seed -

...

ehsunn by L0 Member
  • 2846 Views
  • 3 replies
  • 0 Likes

MineMeld - Memory Leak or Redis needing configured?

Build: Followed the Azure 16.04 LTM instructions

 

Problem: Every 3-4 days after increasing to 4 CPU's and 16 GB Memory the memory seems to creep up to the point of borking the instance.

 

WorkAround: Every 3 days restart the engine.

 

Context: Curre

...

Romans6 by L1 Bithead
  • 3054 Views
  • 2 replies
  • 0 Likes

Resolved! Adding a 2nd ISP

I have been reading up and still trying to wrap my head around the exact setup I need.

 

Current ISP1 - use for all LAN traffic out including IP phones. Use global protect also. Have external DNS setup so remote.mydomain.com goes to this ip address. St

...

Resolved! Active Active HA3 Through EVPN/VXLAN

Have an Active/Active deployment, single firewall at each DC with EVPN/VXLAN through Juniper cores. Can we have the HA-3 link go through the core switches? We are using daa plane interfaces for HA-2, HA-2B, and HA-3. We have the vlans  stretched acro

...

Resolved! L3 ARP entries

Hello Mr.
            We need to make some mac address in Palo Alto L3 interface.
the question is that , How many manual arp entries can be added per single interface?
and because no document discussing it, I wanted to make sure if this works as an ARP
...

Shadow Rule Warning after upgrade

Hi All, 

 

We have a customer who has upgraded to 9.0 and they get shadow rule warnings since the upgrade.

 

All the shadowing rules are more generic with any/any for source and destination, but with source user restrictions.

The shadowed rules have more

...

Saml IDP certificate.

Hi Team,

 

We need to integrate Saml With Global Protect .We have done the saml configuration in azure perfectly fine.We have exported the metadata file from azure and inported in PA NGFW successfully.We need to achieve through IDP certifcate but the i

...

  • 23615 Posts
  • 107 Subscriptions
Labels