General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

User-ID Agent, uninstall slows down network logons

Hello, I am not a Network Engineer but am trying to assist the folks running the network at my company. I am in charge of Active Directory. The Network Engineers recently uninstalled the Palo Alto User-ID from two of my Domain Controllers. Since then, we have seen network slow downs randomly, for certain Netlogon connections between Domain Contr...

Resolved! BGP wildcard filtering to prevent /32 regardless of network

Hi Forum Folks, is there a way to filter within PA BGP's all /32 networks ?we have a community based connection to a customer and i want to prevent redistribution of *.*.*.*/31-32 networks As far as i tried, i have to be very specific with such a filter on the PAe.g.10.19.18.0/3010.20.99.0/30I have to create a filter for each of theminstead ofe....

VPN - INTERMITTENT/UNSTABLE VPN CONNECTION

Hi,In my team multiple users upgraded windows 7 to windows 10 after that VPN intermittent issue happened. every 5 seconds VPN(GP Clint) is disconnected. i tried uninstalled GP in mobile and also laptop but still same happened. latency is normal and tracert is completed.. How can resolve this please update. This morning, we had a walk in user tha...

Resolved! When will the GlobalProtect GUI be supported on Ubuntu 20.04

I see on the following documentation page that only the CLI version of GlobalProtect is supported on Ubuntu 20.04, not the GUI version. Does anyone know when the GUI version wil be supported, or where I should look to find this information? Thanks!https://docs.paloaltonetworks.com/compatibility-matrix/globalprotect/where-can-i-install-the-glob...

arderyp by L0 Member
  • 16877 Views
  • 3 replies
  • 0 Likes

Resolved! unable to block exe files after using File blocking Profile

I have followed https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-admin/threat-prevention/set-up-file-blocking and created a file blocking profile to block Downloads of exe format while browsing. But it still does not block the exe downloads on the server i applied the file blocking profile. Please check and suggest the fix.

Palo Alto unable to route traffic into LACP trunked subinterface vlans

Hi,I have an issue with routing traffic over to a new DMZ SW implementation. Hope someone can crack the nut.Issue : Palo Alto unable to route traffic into LACP trunked sub-interface vlans in VRFs1. Each switch VRF is a Zone on the PA.2. All routes defined in respective VRs.3. All VRFs default route is the respective vlan IP tagged at the subinte...

BTC.pa by L0 Member
  • 3333 Views
  • 2 replies
  • 0 Likes

Site to Site IKE Gateway Setup on 5250

Trying to set up ptp vpn between PA200 and corporate 5250. I haven't found a "How to set up if the PA200 is behind home modem" article as of yet. Is it my understanding that when I select the 5250 "Peer IP Address Type" = Dynamic it means that the peer address (home ip) is unknown. The PEER would be the 200 nat'd to the home public ip. ...

vnt90 by L2 Linker
  • 4033 Views
  • 3 replies
  • 0 Likes

SDWAN DIA Path Monitoring

When I have a firewall configured as a SDWAN function with 2 DIA interfaces (2 ADSL) How to check whether links are ready for use? Any options? I tried to configure path monitoring but there are no options for source IP, It's seem SDWAN interface do not support path monitoring

Screen Shot 2563-10-07 at 23.27.00.png

Application ID's

Recently Cisco WebEx deployed a software update and it changed enough so the Palo Alto could NOT recognize the application ID as being webex, causing an impact to our client. So my question is, is there anyway to determine if a software update for any vendor will cause the application ID to NOT recognize the application after the update?

skobel by L0 Member
  • 3707 Views
  • 3 replies
  • 0 Likes

Sporadic Applications Fail to Load - Downloads Sporadically Freeze

For a few weeks now, we have been experiencing sporadic issues with some applications that do not load correctly or at all. We have also had sporadic issues with downloads that freeze and eventually fail. This isn't isolated to a browser issue. We have primarily noticed issues associated with "amazonaws" related IP addresses. On the firewa...

duttonr by L0 Member
  • 2645 Views
  • 1 replies
  • 0 Likes

MineMeld txt from IIS

Hello, I am trying to setup a static list i am updating a txt file hosted in IIS (from output in our IDS service) on IP's I would like to block. I have tried to supply the list directly to EDL list from IIS (created txt via so may ways - including in Linux and transfering file to IIS) but firewall sees the list, and ignores them all. I opened a ...

Next-Generation SD-WAN has been released

Hello everyone, Not sure if you have seen the news, but the new Next-Generation SD-WAN, Prisma SD-WAN (formerly CloudGenix) has just been released. Next-Generation SD-WAN Solution Please be sure to check out my blog here about it: https://live.paloaltonetworks.com/t5/blogs/introducing-next-generation-sd-wan/ba-p/349909 There are lots of ...

ALL LIVEcommunity Graphics (3).png
jdelio by L7 Applicator
  • 3794 Views
  • 2 replies
  • 0 Likes

Where to check to total amount of disk in Panorama

Hello, I need to check to the total amount of disk in Panorama. In where can I check it? It is because if I run the "show system logdb-quota" it give me, just the amount of the log space. I need the total of the system. Regards,

iscott by L2 Linker
  • 15894 Views
  • 2 replies
  • 0 Likes
  • 24393 Posts
  • 123 Subscriptions
Top Solution Authors
Labels