General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4239 Views
  • 0 replies
  • 0 Likes

SNMP - OID RAM/HD Usage

Hello!!I am using OP Manager to check my Palo Alto 3020 through snmp, but i don´t have the OID to check RAM/HD % usage, i downloaded all MIB from Palo Alto Page and uploaded to OP Manager. I haven´t seen the OID to check that resources. Do you have the OID/MIB?I used the "show system resources" and "show system disk-space" via cli and it worked....

Resolved! Global Protect previous user ??

I personally have logged on and logged off every day, but the previous user report only shows my login as 5 times in last about 2 months.So what is this command actually telling us. I could not find any information on this command show global-protect-gateway previous-user

raji_toor by L4 Transporter
  • 2677 Views
  • 1 replies
  • 0 Likes

Resolved! Migration Issue from PA-3020 (No-HA) to PA-3220 with HA-Active/Active

Hi Brothers, Existing PA-3020 (PAN-OS 7.1.7) and New PA-3220 with HA-Active/Active (PAN-OS 9.1.x) How to Migration the Configuration to new device?1. Just backup the 3020 config and restore the config from PA-3220?2. Any Migration Tools convert?** the Existing Device NOT Accept Firmware Upgrade, Due to the Next Phase the PA-500 not support PAN-O...

Resolved! Wildfire

I was wondering ifsomeone could help with clarifying how the WildFire– Proof Point integration works.A client of ours has Palo Alto NGFW in more geographically distant locations, and they also have Proof Point integrated with Wild Fire.[1] How and with whom does Proof Point communicate and where is his position in the network?[2] In regard to th...

Hammer88 by L1 Bithead
  • 8548 Views
  • 6 replies
  • 0 Likes

AV Profile - Alert action

Hello guys, I have a question about the alert action in the AV profile. - When I configure alert in AV action (threat already known), is traffic allowed or blocked?- When I configure alert on WildFire action, is traffic allowed? or does it depend on the detection I do on the file? I'm a bit confused, as I have traffic being allowed, when Wildfi...

Resolved! Allowing redirects

i have an app that crosses zones to auth then redirects the client to another host/ip. the firewall seems to be dropping the traffic when it is redirected. I am certain there is a solution, i just cannot locate it. any thoughts?thanks

tcsmithh by L1 Bithead
  • 2410 Views
  • 1 replies
  • 0 Likes

Source user Questions

Hello!I am a beginner engineer in Japan.We need to put it in the hundreds of source users policy this time.Is there any other way than to input one by one?

eCloud by L1 Bithead
  • 3160 Views
  • 5 replies
  • 0 Likes

Upgrading from 5060 to 5250

Hello everyone, We have an upcoming project where we need to upgrade our 5060 firewalls to 5250. I was unable to find a document that explains like items to consider to do the migration. This is actually my first project so I am trying to think of maybe a guide or a tutorial that I can start with. The main requirement that I have not been able ...

bambox by L1 Bithead
  • 2619 Views
  • 1 replies
  • 0 Likes

Resolved! Having issues with GoDaddy redirect sites from IP 184.168.131.241

Is anyone having issues behind your Palos accessing any websites the use Godaddy's IP 184.168.131.241 as a redirect? Website example http://www.rootworkers.com/http://sccforme.com We are experiencing incomplete connections. I also have a SonicWall and it is also not letting me access any site that redirects from that IP address.

Resolved! Enforcing Global Protect Connection Issue

Hi All, Has anyone who's implemented the Enforce Global Protect connection option had issues permitting remote support applications? I've tried adding the required wildcarded FQDN's to the Global Protect Portal under App Configurations but no joy yet. Just wondering if anyone else has had a similar issue?

Josh990 by L2 Linker
  • 8314 Views
  • 12 replies
  • 0 Likes

Terminal server user identification

Hello.We have terminal server in which there are many users logged in.But we see them in traffic monitoring only as one Ip address and no separate users.I have installed terminal service agent on terminal server and everything is ok.IT shows connected and green and TS agent define the users.But in firewall i cant see the separate users in monito...

Radmin_85 by L4 Transporter
  • 8219 Views
  • 13 replies
  • 0 Likes

Can you use DHCP reservation information to map USER-ID?

Weird question....but have to ask. Small Office networkNo ADUse PA220 as a DHCP Server for users (even mobile devices).DHCP Reservation Table has all the information that I think USER-ID could use.....is there a way to make this happen? thought about trying to forward a log file out of Management Interface to the Trusted interface.....but just s...

thartman by L0 Member
  • 6426 Views
  • 4 replies
  • 0 Likes

Resolved! SYN ACK RST Loop on inside and SYN ACK only - source port re-use - hung session

I have had this happen twice so far, I am wondering how others have solved for it. Host A -> Palo Alto -> Host B Host A, cycles through its source ports frequently - every couple of minutes.Host B has long or no TCP keep alive timers. Host A:src port X connects to Host B on port 443.Host A has an issue, reboots, lost power, app crashes, e...

  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels