General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

how to block malicious Attack on server

Hi All, Good day!I'm trying to block malicious attack on our server but no luck. Please see below attack i encountered on server. I've already create a policy for that attacked. I already set security profile for that specific servers.Also i already install the latest dynamics updates. I hope you can help me on my problem. Thanks in advance. Tha...

jalorente_1-1616210194515.png
jalorente_2-1616210294296.png
jalorente_3-1616210430668.png
jalorente_4-1616210522914.png

Panorama is dropping lot of traffic to syslog splunk

I have a active-standby panorama cluster version 8.1.17 that manages about 40 firewalls. The active-cluster panorama is also a log collector-group.20 firewalls send traffic/threat/URL logs to active panorama and the other 20 firewalls send traffic/threat/URL logs to the standby panorama. From there, I configure panorama to forward these logs t...

dtran by L4 Transporter
  • 8841 Views
  • 9 replies
  • 0 Likes

Facing issue with SSL VPN with Particular ubuntu machine(Linux)

Dear Friends, Hope you are all doing good!!! I am facing issue SSL VPN for particular ubuntu 14.0 user. Here is my findings and observation below:================================ ++ Customer having 4 diff ISP provider++ The user was in full tunnel mode in GP VPN.++ Out of 4 ISP only one ISP ubuntu14 machine getting connected with GP VPN and able...

Resolved! Missing some health status of PA-220 managed devices in Panorama

Hi all, After I uprageded all PA firewall and Panorama to version 9.1.5. My PA-3220 is working properly but not for PA-220. The operation is working fine but health information on Panorama for PA-220 is missing as capture below Infomation like CPS,session, CPU utilization and etc.. are missing but connectivity between PA-220 and Panorama is see...

image.png

GlobalProtect & SCCM

Long story short, we purchased GP and configured rules etc to allow SCCM traffic to and from VPN clients who are users working from Home. We are struggling to release applications or updates to these users and would like to know if anyone has GP with SCCM configured and working? Someone mentioned on a Palo FB forum, that pre-logon should be set...

ColonelHawx_0-1591016150266.png

GlobalProtect MTU Size

Hi All, I have an issue where GlobalProtect VPN clients are enable to establish a VPN tunnel when connected to a certain WiFi network. We have narrowed the issue down to the MTU size. Ther are various GRE tunnels and IPSEC tunnels which have reduced the effective usable MTU size to about 1236. Is there a way to change the MTU size on the Global...

Resolved! M200 log collector Panorama issue

Hi, I'm trying to add a M200 log collector as a Managed Collector to our central Panorama management. When I add by serial number it lists it by its serial number but not other info is pulled in and I can't add it to a collector group etc. It does have the basics configured and I can ping it from Panorama etc. but no joy in terms of central mana...

StuartS by L1 Bithead
  • 2448 Views
  • 1 replies
  • 0 Likes

Resolved! COMPATIBILIDAD DE TRANSCEIVER AVAGO AFBR-709SMZ

Hola,Si alguien puede ayudarme, tengo este modelo de transceiver AVAGO AFBR-709SMZ, y en la documentación me figura que está fuera de AVL y que no está disponible. Sin embargo fueron los que llegaron con los FW's. Aún así, ¿puedo usarlos y no me traería ningún inconveniente en su funcionamiento?. Gracias.!!

GariHiroshi_0-1616073617402.png

PAN-OS SDWAN tunnel failover

Hi All, I have recently setup a SD-WAN between 2 PA firewalls. a default route was created automatically to sdwan.1. Though when one of the interface failed, it is not able to failover to the remaining tunnel which mapped to sdwan.2. May I know if I need to manually create a route for sdwan.2 though I could not find the interface under the sta...

Google-meet troubles

Good morning community,I have problems to configure an access policy from the internal user network to the google-meet video conferencing service, users report that they do not listen to or view the video. When leaving the policy to any destination I see a lot of traffic going through the policy which I am not sure corresponds to google-meet.Cur...

google-meet.png

FQDN exclusion Global Protect enforce connection

Is it possible to FQDN exclude your local domain *.localdomain when enforcing network Global Protect connection? Could this be used as a workaround for not having pre-logon configured? How/why is there not a enforce global protect connection only while "outside" of the network?

Sec101 by L4 Transporter
  • 5627 Views
  • 8 replies
  • 0 Likes

Microsoft Exchange Server 0-Day vulnerabilities - Share your thoughts

Hi all, if you haven't lived under a rock for the past week, I'm sure you've heard about the 0-day MSExchange vulnerabilities. We want to let you know that Palo Alto Networks has you covered and wanted to make sure you have all the information you need. Check out the blog to get more information about these vulnerabilities and how PAN can prot...

kiwi by Community Team Member
  • 8255 Views
  • 4 replies
  • 1 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels