General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 776 Views
  • 0 replies
  • 0 Likes

Resolved! User-ID agent

Hello,

 

I have had the user-id agent setup previously but now either after upgrading to panos 10 or enabling mutli-vsys my option for the agent is now missing from my user identification menu.  Does enabling mulit-vsys break this or maybe the version

...

jmarberg_0-1597926095642.png
jmarberg by L0 Member
  • 4296 Views
  • 2 replies
  • 0 Likes

Resolved! Repurposing log collector

I have a M-500 with two disk pairs in dedicated logger mode that I want to turn into a dedicated manager. I know how to actually change the mode, but can I remove both disk pairs and use them in another logger? I assume the M-500 has internal storage

...

ikev2 with cisco Router using certificate problem

 

after I finished the ikev2 configuration(using Distinguished Name (Subject) from PAN and Cisco Router using identity local dn ), I got this isse:

 

received ID_I (type dn [CN=externalrouter.robinlab.org,unstructuredName=externalrouter.robinlab.org]) d

...

Luping by L0 Member
  • 2335 Views
  • 2 replies
  • 0 Likes

SSL inbound inspection

Hi Team,

I am facing the issue in SSL decryption intermittently. For the transaction website.

 

traffic flow for the SSL inspection is:-

 

Outside user ------> Paloalto--------->Load balancer-------->Application server.

 

In the destination NAT translation,

...

ssl.PNG

PA Firewalls HA Active-Active Routed design with BGP

Hello Everyone,
I'm designing an edge network with Active/Active HA. After reading the PA documentation, I found Active/Active Routed based redundancy design which seems best suited for our environment. However the topology shown in Docs is a square m

...

HA-AA-Routed-based-Redundancy-Square.jpg
HA-AA-Routed-based-Redundancy-Full-Mesh.jpg
yham81 by L0 Member
  • 6018 Views
  • 3 replies
  • 0 Likes

Resolved! Feature Upgrade: load, install, run !?

What does "base image must be loaded" and "you do not have to install or run the base image" mean?

 

See my screeshot below. The base image is there. Do I have to click on "Install"? The message however clearly says I do not need to do so? So what do I

...

ifstciss_0-1597841414632.png
ifstciss by L1 Bithead
  • 7049 Views
  • 6 replies
  • 0 Likes

DNS Query

Can we configure firewall will allow only one response for one dns request packet. Please suggest

 

Not able to Ping

 

 

I have l3 switch , new vlan is created and its default gateway is PA FW..A machine when connected to trust interface eth1/2 is able to access the internet...but when machines are connected to switch with trust IP range,internet is not working.

My ma

...

Swetang by L1 Bithead
  • 2722 Views
  • 2 replies
  • 0 Likes

Regarding Wildfire analysis

Hello Guys,

 

I am preparing for a PCNSA exam and practicing my labs at NDG portal. It is running version 9.0.1. Except for the File from the lab guide the firewall is not sending any other files to Wildfire for analysis. Is their some other things i s

...

twitter not working

Twitter is not working. I create the simple policy but I got this error. aslo create the application override but still I  got same error i  have also change my browser but still same please suggest.

 

 

Joshan_Lakhani_0-1597479738514.png

Resolved! APP-ID Doubt

hello community,

 

I have a question that I have not been able to solve with the study material and it keeps breaking my head.

Here it goes, when I generate an application-based security policy, for example from "trust" 10.xxx to "untrust" any
with app a

...

  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels