General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 777 Views
  • 0 replies
  • 0 Likes

Resolved! L3 ARP entries

Hello Mr.
            We need to make some mac address in Palo Alto L3 interface.
the question is that , How many manual arp entries can be added per single interface?
and because no document discussing it, I wanted to make sure if this works as an ARP
...

Shadow Rule Warning after upgrade

Hi All, 

 

We have a customer who has upgraded to 9.0 and they get shadow rule warnings since the upgrade.

 

All the shadowing rules are more generic with any/any for source and destination, but with source user restrictions.

The shadowed rules have more

...

Saml IDP certificate.

Hi Team,

 

We need to integrate Saml With Global Protect .We have done the saml configuration in azure perfectly fine.We have exported the metadata file from azure and inported in PA NGFW successfully.We need to achieve through IDP certifcate but the i

...

Global protect client stuck on connecting

Hi All - Global protect client for a few users is stuck on connecting state, is anyone able to help me look into

 


P 865-T24627 Mar 05 07:15:48:180208 Info ( 495): Server is trusted ***.gpcloudservice.com(0.0.0.0)
P 865-T19203 Mar 05 07:15:48:445236 Inf

...

WildFire Analysis Exclusions? smbv3

Seeing a lot of false positives with WildFire for application ms-ds-smbv3, specifically for PE+MSDOCX files. Is there anyway to just exclude ONLY this application from our Wildfire? I'd really hate to have to create a 2nd WildFire Security Profile an

...

pan_rags.png
Rags by L2 Linker
  • 2086 Views
  • 1 replies
  • 0 Likes

NMAP Scan, PA show open ports

Hello experts!

 

When I scan my firewall from the internet no matter what I try I still get this.. 

 

PORT STATE SERVICE REASON
53/tcp open domain syn-ack ttl 64
80/tcp open http syn-ack ttl 64
443/tcp open https syn-ack ttl 64
8080/tcp open http-proxy syn-a
...

BizBo by L2 Linker
  • 6519 Views
  • 4 replies
  • 0 Likes

Generate a Global Protect user report

hi there,

I have seen a few posts on this issue. but for some reason, I was unable to see the steps on how to do it.
I simply want to generate a daily report that will tell me how many users connected through global protect in the workday.
if someone ca

...

Arielpa by L0 Member
  • 1690 Views
  • 1 replies
  • 0 Likes

Resolved! Special NAT configuration. Asking about possibility

I have a working Hub & Spoke VPN network. Computers in Spoke1 can reach the computers in Spoke2 and vice versa. 

For some reason, a particular device in Spoke2 with IP 172.16.200.62 can only be reached by the computers in the same subnet. 

I want to kn

...

HubAndSpoke.jpg
jeremylo by L3 Networker
  • 3227 Views
  • 4 replies
  • 0 Likes

Resolved! GlobalProtect BSOD Windows 8.1

Installed the latest round of Windows (and driver) updates.  1-3 seconds after GlobalProtect connects, I get a BSOD and reboot. I've read through various memory dumps and it's always one of two issues.

pangps.exe -

IRQL_NOT_LESS_OR_EQUAL (a)

An attemp

...

IPSec tunnel between PA-220 and VM300 in Azure

Trying to build a IPSec tunnel between a lab PA220 and a VM300 we have in operation in an Azure environment.  I think I've got all the necessary ingredients covered, and I've checked all the "How To" docs I can find, but still no luck.

 

Are there any

...

GlobalProtect 2FA

Hi,

 

PaloAlto VM-100 8.0.13

 

I've been trying to add 2FA to our GlobalProtect Gateway. I've followed the instructions described here: https://www.paloaltonetworks.com/documentation/80/globalprotect/globalprotect-admin-guide/authentication/set-up-two-fa

...

Static IP for GP User

hey,

 

i have a requirement from a customer for some users to always have the same ip when they connect to the VPN for example if the IP Pool for the GP clients is: 192.168.x.110 where x will be 10-15 depends on which GP GW you are connected to.

 

i have

...

minow by L4 Transporter
  • 10818 Views
  • 7 replies
  • 0 Likes
  • 23986 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels