General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Site-to-Site VPN use PPPoE

Site-to-Site VPN with PPPoE Good afternoon, please help me to confirm if the following scenarios are compatible or not. - Palo Alto with Interface in DHCP mode ( with private IP - Typical example ADLS modem delivering a Private IP ) establish a site-2-site vpn tunnel with another Palo Alto with Public IP. -Palo Alto with interface in PPPoE mod...

Metgatz by L4 Transporter
  • 3243 Views
  • 1 replies
  • 0 Likes

globalprotect compatibility with F5-Edge client

Dear community! We are having some traffic issues when globalprotect and F5-Edge client run together. When established a VPN with both clients at the same time, there´s some traffic not properly routed through the the GP virtual interface, the same traffic works fine when connected only to globalprotect. Access routes for globalprotect is 0.0.0....

Carracido by L4 Transporter
  • 4320 Views
  • 1 replies
  • 0 Likes

VPN IPSEC PPPoE

Good afternoon, first of all, thank you very much for your support.I have the following scenario, and I ask for your support so you can help me to validate if its configuration is feasible: - Palo Alto ---Interface on Palo Alto WAN type PPPoE ( with Dynamic Public IP ) ----------Generate IPSEC VPN Tunnel------------ with Palo Alto with WAN Inter...

Metgatz by L4 Transporter
  • 3673 Views
  • 1 replies
  • 0 Likes

Resolved! Microsoft Intune Autopilot Problems

We have this Intune process that our team goes through every time a new PC is issued to the user. Essentially this is an autopilot program that after the client is wiped, it starts downloading programs that are pre defined in our Intune configuration package. Once all of these programs are installed the Intune process is completed successfully...

Screenshot 2021-04-20 170028.png
Screenshot 2021-04-20 170202.png
Screenshot 2021-04-20 170340.png
Screenshot 2021-04-20 170447.png
CCullhaj by L1 Bithead
  • 31645 Views
  • 8 replies
  • 2 Likes

Resolved! commit failure and PA admins

Hi Team, user 1 log into firewallDid config changes and hit it commitSay for some reason that commit failed.He did not check commit status and log outAnother user logged in he did his changesAnd when doing commit he selects his userName then will his commit work?

Access Management via GP and Tunnel vpn ipsec

Access Management via GP and Tunnel vpn ipsec Good afternoon, I have a question, please support me. I have the following scenario. Site 1: The main site as a Global Protect VPN concentrator and also as a central point of two IPSEC VPN tunnels.Site 2: Site with Dynamic IP ( PPPoE ) connected by an IPSEC VPN tunnel to the central site. The Palo Al...

Metgatz by L4 Transporter
  • 2789 Views
  • 1 replies
  • 0 Likes

Client Get drop call after they connect access the web based application trough Firewall

Hi Team, One of my clients used some web application call when they are able to log in from home by the general home router (without global protect).When some clients come to the office and into the firewall network LAN When they log in and Connect call to their customer that call is dropping or breaking they are able to listen to the customer c...

PA-3020 interfaces not coming up

I have a PA-3020 that was taken out of production several months ago. When it was removed, everything was working. Since that time, it has been sitting on a shelf. I decided to get it out today, and try to set up a small lab. I consoled in to the device, and performed a factory reset. Next, I connected to the management interface, and went to th...

R2dTOO by L0 Member
  • 4551 Views
  • 2 replies
  • 0 Likes

Authentication Policy other ports confusion

We just started looking into authentication policy and while testing it works for web services but what about any other services rdp/ssh/or anything else. The BPA document says we should set authentication policy to Any, but doing that SSH in our test gets blocked, with a auth-policy-deny, and there are no redirects for SSH. Also if the user in...

raji_toor by L4 Transporter
  • 3935 Views
  • 2 replies
  • 0 Likes

URL Risk Rating Discrepancies

Why the URL category for sync.predictive.com and mail.eventss.com is High Risk in PA firewall but in Test A URL site it is Low Risk?I assume I should follow what is shown on firewall and disregard A Test site for good measure. But what is the cause of the difference?

PA.png
Test A.PNG
RVizcarra by L4 Transporter
  • 1986 Views
  • 1 replies
  • 0 Likes

Netflow is not working

Dear Team, Netflow hasn't been working. When we enable and disable Netflow on an interface our SolarWinds server receives a tiny bit of Netflow traffic but then stops again. Netflow traffic is however leaving the firewall and destines for the SolarWinds server. We have not found any drops in the PCAP. We found some error in the global counters, ...

VishnuPS by L3 Networker
  • 3422 Views
  • 2 replies
  • 0 Likes
  • 24443 Posts
  • 125 Subscriptions
Labels