General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Error generating a new certificate

Hi, we are trying to generate a new elf-signed certificate in Panorama and we receive this error: Failed to insert certificate into configuration. Failed to find beginning of certificate. Make sure certificate starts with BEGIN CERTIFICATE tag.

 

This

...

cert1.JPG
cert2.JPG
BigPalo by L4 Transporter
  • 13655 Views
  • 15 replies
  • 0 Likes

Child objects or override calue

I have been looking at the best approach to push a rule to multiple sites, but using a different value for the source address object at each site. For example, allow http from the users subnet to the internet, and the users subnet is different for ea

...

Feature Request List

Hi,

 

where can i find the 'feature request' list 

I've got an answer for an opened ticket :

"We verified FR in response to your request. Please find the Request ID below:FR ID: CXDR-I-1843"

 

Arielhz by L0 Member
  • 443 Views
  • 1 replies
  • 0 Likes

2xISPs and 2 VPN tunnels - tunnel failover issue

Hello Team,

 

I am running into an issue with our setup. We have single PA460 box connected to 2 ISPs same time, i.e. Ethernet1/3 is to ISP1 and Ethernet1/4 to ISP2. We are running 2 default routes setup like this with ECMP enabled, so traffic is bee

...

default_routes.jpg

User ID 10.0.0 WITH PAN OS 10.0.0 PROBLEM

Hi all ,

lately i did a palo alto implementation at a customer's site

i installed the user agent 10.0.0-30 for windows server , adjusted the ports on the agent and on palo alto

enabled user id on the internal zone 

in the connected devices tab on user ag

...

AKabary by L2 Linker
  • 3709 Views
  • 7 replies
  • 1 Likes

Where/How to learn PaloAlto Firewall?

Good Morning All,

 

I am new to this site and new to PaloAlto Firewall. I have used many other firewall and looking to get familiar with PaloAlto technology (Firewall/Network), I am wondering  if there is any Online Demo access to PaloAlto networking

...

WizzIT by L0 Member
  • 1076 Views
  • 6 replies
  • 0 Likes

Resolved! GlobalProtect with Vodafone and Telecom

One of our Colleagues isn't able to connect from his home in Germany to our Gateway in Switzerland when using the GlobalProtect Client (V. 5.1.0-75) when using either his Home Internet Connection (via WiFi) nor when using a Mobile Hotspot (Vodafone M

...

Palo Alto LACP to Cisco VSS

Hi All

I have 2 x Palo Alto 3020 FW's. In Active / Standby.

Need to create an Aggregate group and add 2 x GB interfaces to the Aggregate Group. on the inside.

I then connect the 2 GB interfaces from FW01 and 2 GB from FW02 down to a cisco switch in VSS

...

HA2 interface not up using HSCI cable

Hi Good day,


Our client received two Palo Alto units, including an HSCI cable. However, they noticed that the HSCI cable is not functioning. When they connect it to the HSCI port, the LED port does not light up. However, when using a normal SFP with

...

Resolved! Cisco ISE integration for UserID

Greetings all,

 

I'm wondering if anyone else is using Cisco ISE for network access control and has experience integrating it to publish User ID to the Palo Alto firewalls?

 

I saw a support article for it but the regex appears to be out of date.  I foun

...

jsalmans by L4 Transporter
  • 13785 Views
  • 10 replies
  • 0 Likes

Zero Touch Provisioning's (ZTP) big no touch warning

Currently testing out ZTP.  I got the firewall added to Panorama with ZTP and that is all well and good.  On this article though:

 

Register Panorama with the ZTP Service for New Deployments (paloaltonetworks.com)

There is a big warning on Step 8 sayi

...

K_Wirch by L0 Member
  • 525 Views
  • 0 replies
  • 0 Likes

No DNS, cannot ping anything above gateway

I'm trying to set up a PA-820 from scratch, but would like to update and set up rules before placing it on top of our network. Currently it is set up as a DHCP client, parallel to our office router, connected upstream to a Charter AP and modem (for s

...

Altais by L1 Bithead
  • 2678 Views
  • 7 replies
  • 0 Likes
  • 24034 Posts
  • 102 Subscriptions
Top Liked Authors
Labels