General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4473 Views
  • 0 replies
  • 0 Likes

Resolved! What OS on windows server can PA support about global protect?

Hello, The below doc describes there are client OS list what PA can support for global protect. https://www.paloaltonetworks.com/documentation/60/globalprotect/global_protect_6-0/globalprotect-overview/what-client-os-versions-are-supported-with-globalprotect.html But there is no information about windows server list. Can Global Protect sup...

Global Protect high CPU usage

Hello to everyone,I'm a radiologist working in Spain. I use Global Protect to access the hospital network from home, since we are working from home in this period to avoid coronavirus exposition.Since I have Global Protect installed in my laptop, it happens often (around 10 times per day or more) that the processPanGpHip.exe start using a lot of...

Daedalus by L1 Bithead
  • 32127 Views
  • 5 replies
  • 0 Likes

On-demand GlobalProtect and Mapped drives

Hello all , Having issues with some users where they have mapped drives but after they connect to global protect they don't work. If they unmap and they map again it works .When doesn't work after connecting to globalprotect if they ping the IP of the server that they have the mapped drive it works but SMB it doesn't . We have on-demand globalp...

Resolved! Duplice Object IDs in Panorama XML

Hi Community, We went from 9.1 to 10.0 on Panorama and recently did an Expedition merge (latest version) with an ASA.Since then, a few objects which are unreferenced in global-find, are unable to be deleted.When checking panorama running config, I noticed, that a group-name is duplicate in the shared section, with different object ID's:Manually ...

Chacko42_0-1616764126647.png
Chacko42 by L4 Transporter
  • 2802 Views
  • 1 replies
  • 0 Likes

Resolved! Monthly PDF Report

We are trying to get a report of threats and export as PDF. I used “Managed PDF summary reports” but it is allowing only to pull per day. I used custom reports and I can pull reports for 30 days, but it is much like raw data. We need something like below to present to customer. Please help.

SUMMARY.png

Resolved! Defining metrics for routes learned through BGP

Hi All, We have four tunnels(tunnel 1, tunnel 2, tunnel 3 and tunnel 4) configured to reach the AWS Network through BGP on an single default virtual router on the firewall and all the tunnels are up. There are three ISP in total connected to the default router and Balanced round robin method is enabled on the firewall to pass the traffic. The Tu...

Capture traffic as is on the wire?

On a Palo Alto is there a way to take a packet capture on a specified interface and simply see everything as is on the wire? For example on a Check Point I can do a tcp dump on a specified interface and the interface is basically put into promiscuous mode and I see traffic after firewall, after NAT, etc. On my Palo's it seems I have to pick a s...

Palo alto XML API not working

The firewall internal interface used to have GP portal configured and then removed, we found the XML API does not work on the standard port 443. In web browser an API call returns the 404 error. Pcap shows that the firewall does not reply to the call. We need this for Clearpass integration, and when testing with a different port (with NAT) it wo...

GP LOGIN/LOGOUT POPUP BOX

Dear team, How to enable the popup message when the users are login in and login out in Global protect. for example, users are connected in the GP at the same time VPN is down so users need to get a pop-up box like you are not in the GP or logout.

Global Protect user private IP shows 0.0.0.0

Hi team, One of my customer experiencing a weird issue in global protect. When Client joins the GP he get a private IP 172.16.100.230 and i can see that system logs and also in his GP Agent. When he initiates traffic i can able to see that private iP in traffic log as well but issue is when i go to see the current users in GP Gateway >Remote ...

Resolved! GlobalProtect Agent Updates?

Most of the discussions I've heard, talk about managing your deployment with something other than the firewall (so thousands of users aren't hitting the firewall during an update). I have questions in two areas: 1-How do you handle updates when getting pushed from a centralized manager to windows clients (assuming your clients are internal only...

Sec101 by L4 Transporter
  • 14294 Views
  • 6 replies
  • 1 Likes

Gp 2fa

Hi Team, We have 2FA auth method using Radius Server for GP VPN users login.After LDAP password authentication users receives SMS Token and when user entering the token the GP VPN again prompts for the token.So eventually user receiving another SMS Token and when entering second token user getting authentication failed message on GP client. For ...

Many-to-Many NAT (Both Direction)

Hi Everyone, I am struggling to solve a problem NAT issue and need some help. I need to configure May-to-Many NAT on Palo Alto Firewall between two data centers. I have three /25 IPv4 subnets which needs to be mapped to three /25 subnets (subnet to subnet basis if not one to one IP basis) and three IPv6 /40 subnets needs same treatment. Traffi...

rthakker by L1 Bithead
  • 8705 Views
  • 8 replies
  • 0 Likes
  • 24380 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels