General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4254 Views
  • 0 replies
  • 0 Likes

Resolved! SPARE device usage

Dear PANw,We (as a distributor) have a case where one of our Partners want to purchase SPARE units to cover their multiple client RMA cases (not just one, since OSS devices are registered to one particular customer and stays at their premises, this is not an option ). This partner doesn't have international ASC certificate and this requirement i...

Upgrade path to 11.2.5 from 11.0.0 on a PA-410

Hi there, Can you tell me what would be the recommended Upgrade path to 11.2.5 from 11.0.0 on an HA Firewall Pair PA-410, please? FW firmware Current ver.: 11.0.01. PAN-OS 11.1.02. PAN-OS 11.2.03. PAN-OS 11.2.5 In PAN-OS 11.0, you can now skip up to three software versions when upgrading or downgrading standalone devices or Panorama managed devi...

A.Otsu by L0 Member
  • 3294 Views
  • 5 replies
  • 0 Likes

Problems for deactivate cyserver Cortex XDR

Hi team Is there any way to disable this service? Even if I run the commands cytool protect disable or cytool runtime stop, it won't let me disable it, I get the message Access is denied. Regards

Alpalo_0-1743697113968.png
Alpalo by L4 Transporter
  • 1232 Views
  • 1 replies
  • 0 Likes

SAML - Integration - Globalprotect Azure-AD-EntraID  - Policy Based Groups Azure-AD for GP Zone

SAML - Integration - Globalprotect Azure-AD-EntraID - Policy Based Groups Azure-AD for GP Hello Live community, how's it going? I hope it's going well. I have a question, today we have via GP the integration with Azure-AD Entra ID, via SAML, where everything works correctly. At the level of what is the assignment of groups, we already ass...

Metgatz by L4 Transporter
  • 1177 Views
  • 1 replies
  • 0 Likes

Resolved! Configure second ISP with failover and aggregation

Hi all, I'm newbie on Palo Alto systems an i have a question bout a configuration point. I have a PA-220 with one Internet connection (100 mbps). I have a second Internet connection from the same ISP (with the same bandwith => 100 mbps). Now, I need to : Aggregate this two links in one logical link ;Use failover system if one of this two link...

feelgood by L2 Linker
  • 17309 Views
  • 6 replies
  • 0 Likes

Trying to uninstall Cortex XDR without password

Hello everyone, I am a former employee of the french company Inetum, which uses Cortex XDR software. My former employer asked me to install it on my personal computer, which I used to work at this company.Having left the company, I no longer have any contact with my former employer's IT support, and I'm trying to uninstall Cortex XDR from my hom...

nikopik by L0 Member
  • 2457 Views
  • 1 replies
  • 0 Likes

Resolved! Static Bi-directional Source NAT not working on incoming traffic

I've users on subnet A that needs to communicate to a service over a vpn on subnet B.This subnet B already knows a subnet A, and therefore we're doing a source NAT for subnet A to C.A server in subnet B needs to print to a printer in subnet A, thus we made the NAT bi-directional.However when trying to print from B to C, traffic gets dropped at t...

CHKlomp by L2 Linker
  • 12378 Views
  • 6 replies
  • 0 Likes

Low quality video on Webex direct call

Hello, it is a few months that we have an issue on Webex call beetween two users (not on Webex meetings). Basically after a while the video call quality starts to decrease during a direct call on Webex beetween two users. We already disabled SIP ALG without experiencing any quality improvement on video calls. By configuring monitoring on ...

AndreaB by L1 Bithead
  • 1726 Views
  • 3 replies
  • 0 Likes

Unable to Change GUI Management Port on PAN-OS 11.1.6

Hi team, I'm trying to change the default HTTPS GUI port (443) to a custom port (e.g. 8443) on firewalls running PAN-OS 11.1.6. I'm accessing via the management interface, but I don't see the option in the GUI (Device > Setup > Management) or in CLI (set deviceconfig system web-server-port seems unavailable). Just want to confirm: 1. Has...

Kevin-Ng by L2 Linker
  • 1202 Views
  • 1 replies
  • 0 Likes

Resolved! Can I use HA function on palo alto vm-series with out any license?

Dear all: My company wants to try update their palo alto NGFW. Before they do it, they need me try it on a test device that they can know the operate procedure and check there is no risk , so I download the software of palo alto FW, and I install it into vmvare. For keep the network structure similar to the business network, I need to c...

unable to add new object address to existing object address group

I created a new object address on my PA-5220 and whenever I edit an existing object address group, I cannot find that new object address in the list. I have committed the change to the firewall and confirmed other users see the object address and have the same issue. I went into the existing object address group and tried to add a new object ...

Jeromy by L0 Member
  • 7230 Views
  • 6 replies
  • 1 Likes

Unable to View URL/Domain in Destination Address

Hi Friends, We have a customer who is only able to see the IP address in the destination field, as hostname resolution is not functioning correctly. However, he would like to view the URL or domain name along with the IP in the destination address. To troubleshoot the issue, I took the following steps: 1. Enabled the "Resolve Hostname" option ...

  • 24362 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels