General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4223 Views
  • 0 replies
  • 0 Likes

Resolved! Palo Alto BGP with AWS Transit Gateway.

Team,We have a BGP neighbor on our Palo Alto with a Transit Gateway in the AWS. This BGP is formed from our Site A to the AWS TGW. Now, we want to form another BGP from our Site B to the AWS TGW. Site A should be preferred always and we know we can do that using the AS-path-prepends.However, one additional requirement is that both the sites sho...

nson2139 by L3 Networker
  • 3951 Views
  • 1 replies
  • 0 Likes

Unable to open Scheduled report received on mail

We are not able to open daily scheduled report which is receving on mail.For some day report is opening successfully, but for another report is unable to open. The issue is occuring intermittently.The pdf reader is unable to open file showing unsupported file format or file is showing corrupted. Please find firewall and PANOS detailsVM-300PANOS ...

Issue accesing RDP - losing connectivity

Hi, I have a strange issue. Im connected using GlobalProtect. For example, i have a ping working to 10.0.8.137. I also open a rdp to the same IP and i start losing the ping. Its like i lose privileges when i open RDP. It occurs for the rest of IPs not only where i open RDP. Here the logs:

Monitor.JPG
BigPalo by L4 Transporter
  • 3367 Views
  • 3 replies
  • 0 Likes

Commit Error

We're getting the following commit error on our PA-820 device:Error: Number of addresses, dynamic groups, external-ip-lists, external-predefined-ip-lists and predefined ip-block-lists (2547) exceeds platform capacity (2500)

Ayesha by L0 Member
  • 4033 Views
  • 2 replies
  • 0 Likes

Viewing Unused Address Objects

Hello fellow engineers! I'm in the process of a firewall audit in my environment and I've got a lot of address objects configured. I'd like to trim the list down and get rid of addresses that are no longer valid (as in haven't been used in over a year). Is something like this possible? I saw this link about a Perl Script, but it doesn't seem pr...

Resolved! Tech Support file guide

Hi All, Does PAN offer a basic guide to troubleshooting using the tech support file e.g. which logs show what information etc?

Ben-Price by L4 Transporter
  • 16758 Views
  • 6 replies
  • 0 Likes

Resolved! Several Terminal Servers User-ID

Hi,We are implementing User ID.We have around 5 machines where we have Windows based user id agents installed and running smoothly.Now we have around 150 terminal servers - including windows server editions, jumphosts etc. - where multiple users can login at the same time. So: 1) Do we have to deploy TS Agent for user identification on all these...

Resolved! security rule placement

Hi All, I have an outbound web-browsing rule, rule criteria is source zone (trust) destination zone (untrust) , application (web-browsing, ssl), service (tcp-80, tcp-443) If you are going to create more application specific rules, does it makes more sense to put those rules AFTER the outbound web-browsing rule. For instance, say you're going to...

ce1028 by L4 Transporter
  • 9168 Views
  • 6 replies
  • 0 Likes

Zabbix Monitoring PA-7050 via SNMP v3

Hello.I have a couple of PA-7050 firewalls that I monitor from Solarwinds Orion via snmp v3. However, when I try to monitor those same devices via Zabbix (SNMP v3), I am unable to get an SNMP response via the Zabbix application. SNMPwalk works fine from the command line on the zabbix server. TCPdumps indicate that communication may be mixing...

torr06 by L1 Bithead
  • 9620 Views
  • 3 replies
  • 0 Likes

Resolved! DNS Proxy/Security

I was curious to know if anyone was pointing their domain controllers to the firewall for DNS security/proxy? Mine currently use the ISP, but the clients use the firewalls as a proxy and then just rule just forward internal domains to the DC. Seems like I should be doing the same on the domain controllers themselves?

bschaper by L2 Linker
  • 9997 Views
  • 5 replies
  • 0 Likes
  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels