General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Thank You for Filling Out the LIVEcommunity Experience Survey!

If you've visited LIVEcommunity anytime recently, you've probably seen a pop-up asking for your feedback. We've deployed this survey since April 2020 for new and returning visitors alike as a way to gather feedback from our users. 

 

In the past six

...

survey-livecommunity.png
jforsythe by Community Team Member
  • 14503 Views
  • 1 replies
  • 4 Likes

Resolved! Getting Started with Best Practices Templates

Hi 2 all

 

I am trying to create best practice for Vulnerability Protection and Anti-Spyware Profile with extended packet capture as desribed in

https://www.paloaltonetworks.com/documentation/81/best-practices/best-practices-internet-gateway/best-practi

...

aaobuhov by L2 Linker
  • 2036 Views
  • 3 replies
  • 0 Likes

Resolved! /opt/panrepo

Hello,

someone know for What is used this partition? /opt/panrepo

Marivi by L3 Networker
  • 2889 Views
  • 2 replies
  • 0 Likes

Dynamic group from panorama.Vm info source

Hi,

We realised that vcenter fields are not being updated when we create a dynamic address group in panorama. From the fw is working fine and values are refreshed in real time. The method we use to monitor vcenter is VM information source.
So we dont k...

BigPalo by L4 Transporter
  • 636 Views
  • 0 replies
  • 0 Likes

PVLAN with Palo Alto?

I'm looking at doing some re-design for our DC networks and wanted to investigate some further segmentation.  Since we aren't really large enough for NSX or ACI I wanted to look at PVLAN.

 

I've got some Nexus9K switches with Layer 3 licensing in HA an

...

jsalmans by L4 Transporter
  • 2465 Views
  • 5 replies
  • 0 Likes

Resolved! IKE v2 ASA vs. PA

Hi together,

 

at the beginning of this week I ran into the following challenge.

 

I’ve to setup an IKE v2 Tunnel between a Cisco ASA and a PA-850 running on 8.0.12.

During the configuration the Cisco Partner send me the local and remote tunnel pre-shared

...

sstein by L1 Bithead
  • 14321 Views
  • 4 replies
  • 0 Likes

Resolved! PAN-OS 8.1 User-ID problems

Hi there,

I have some problems with a user-id installation on PAN-OS 8.1.4, scenario:

1) Windows AD Domain Forest, with around 6/7 domains

2) I'm only interested in authenticating users from one of the domains in the forest

3) I've correctly connected th

...

Strangeness with EDL - for Office 365

Hi

 

I have minemeld mining O365 address for my PA's.  Moved to the new API as well.

 

I have a hybrid Exchange setup.

I have moved some mailboxes up to the cloud

What I have found recently is mail stops flowing 

 

I have a rule that basically say

 

MS Public

...

Resolved! DNS proxy not accepting tcp connections

Hi

 

so my setup 5220

vlan 20 ... my named dns server 10.43.20.100 and 10.43.20.102 ... dns1 and dns2

on the pa on interface with vlan 20 10.43.20.1 I have configured dns proxy.

 

works well for dns via udp

 

but tcp doesn't work

so 

tcpdump -pni eth0 host 10.

...

Platform target on Expedition?

Is there way to target a PAN hardware platform in an Expedition project before importing the actual hardware?  We may be getting the new hardware in January but may also have a very short window to setup and install.  I had hoped maybe to use Expedit

...

jsalmans by L4 Transporter
  • 469 Views
  • 0 replies
  • 0 Likes

Passive Panorma - Shows Commit failed for few managed devices

 

We have M100 in active and Passive mode.

 

On Active Panorma under managed devices I see commit succeded for all firewalls

 

when i log into passive panorama it shows commit failed for few firewalls - template and shared policy?

 

How can i fix the commit

...

MP18 by Cyber Elite
  • 440 Views
  • 1 replies
  • 0 Likes

Resolved! Email Profile - Choosing Location as Shared or Vsys

I had configured the  Template say Corp

 

Under email profile I have selected the  Location as vsys  shared is not checked in.

 

When i go to log settings  then system   then under email I do not see email profile which i created

 

If i change the email pr

...

MP18 by Cyber Elite
  • 714 Views
  • 2 replies
  • 0 Likes

SAML multiple entities into same idp metadata file

Hello Community,

I'm creating a SAML Identity Provider Profiles in order to use it into a authentication policy, when I'm tring to import the metadata into a PA Appliance with PANOS 8.1 (also tested with 8.0 with same result) it fails with this error:

...

Resolved! DNS Proxy with vwire

Question is it possible to create and use a dns proxy when in vwire mode. I would think that a vlan with an ip would need to be created in Interfaces- Vlan to facilitate this. Thought I would query to see if anyone had tried this. One issue that come

...

Top Solution Authors
Top Liked Authors