General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4222 Views
  • 0 replies
  • 0 Likes

Resolved! Palo Alto Support Sofware Download older versions

Hello,We have received Palo Alto 3220 firewall with version 9.0.4 factory and we would to upgrade the firewall offline. The firewall will be deployed offline.As per upgrade path, the Palo Alto will be upgraded to 9.1 . However on the support page>software upgrade, we have only the latest 10.1.0 or 10.0.0. Can you please guide where to downloa...

Capture-1.PNG

How to verify Palo Alto License?

Hi, how to verify palo alto license? for new device, do we need to manually add activate code for threat license? I connect the firewall to internet, and click " retrieve the license key" . Is it enough for licensing ? I saw the message "No valid threat license", does it mean we didn't buy the threat license" .Please advise, thanks in advance.

Resolved! PANORAMA RMA

Hi team, We are facing questions about how to proceed with the RMA process of PANORAMA. Is not a RMA because is a virtual device but, do you hace any guide o procedures about how to proceed after deploy the new machine? How are the process to add the devices manageds from the old one Panorama? We have only have a old backup from PANORAMA, so we ...

tl20874 by L1 Bithead
  • 5277 Views
  • 3 replies
  • 0 Likes

PANOS 10.01 PA220 Sloooooow

Hello Experts, any notice the above, since deploying 10 and 10.1 I have noticed a significant slowing of the PA220 is this now expected behaviour or a bug. Its kinda made it really difficult to work on a 220 now. Darren

BizBo by L2 Linker
  • 3259 Views
  • 2 replies
  • 0 Likes

Minemeld Vulnerabilities

After downloading and building minemeld from https://github.com/PaloAltoNetworks/minemeld-docker ... Our https://anchore.com/ scanning engine has detected several vulnerabilities... Amongst other obvious concerns such as; 1. Why is it build with python2.7? 2. Why are Palo Alto still developing with this after Jan 2020 https://pythonclock.o...

Enable FTP and FTPS for Active/Passive?

Hello Folks, We have a CrushFTP server installed on a server behind our PA 3020 PANOS: 7.1.14, SSL decrypt not enabled.Security Rule: NAT Rule: Trying to figure out why Active and Passive with FTP over TLS (SSL) will not retrieve the directory listing and will not complete connection. Works fine with just FTP (insecure). Do I need to add SSL to...

FTP_rule.jpg
FTP_NAT_rule.jpg
Active_FTP.jpg
Active_FTPS.jpg
OMatlock by L4 Transporter
  • 19425 Views
  • 5 replies
  • 2 Likes

forbidden

Hi,site says forbidden while browsing the site , when I bypass there is no issue .2)When I am uploading files to web site it fails , when by pass it works Any hint to the root cause of the problem Thanks

simsim by L4 Transporter
  • 2155 Views
  • 1 replies
  • 0 Likes

Couldn't access link "www.santander.com.ar" from global protect VPN

Hi Experts, Users couldn't access the link "www.santander.com.ar" from global protect VPN, this is a normal bank related link so everyone can access though outside network, In our office structure Trust-VPN & Trust-Internal both sources zone are allowed to access "www.santander.com.ar" with general policies. As per policy Trust-Internal use...

Resolved! VPN Proxies

I have a VPN tunnel which is up and running. In the tunnel, I have 2 proxyID's which have the same local address but different remote addresses.I can only get 1 proxyid to connect. As an example, I current have proxyID1 connected and I can ping the other side. In the cli, if I type test vpn ipsec-sa tunnel tunnel-name-proxyID2. It does not co...

Resolved! DNS Security service

Hi All.Can any body know if the DNS Security Services have possible to enable and subscribe on Virtual Wire deployment?Thaks

Rojaba by L0 Member
  • 2466 Views
  • 1 replies
  • 0 Likes

IPSec Tunnels BGP Fluctuation Frequently

Hi All, We have 04 IPSec VPN tunnels created on our PA FW with Public Cloud configured with BGP. (All these 04 Tunnels are created over single Internet link). All 04 peering IP of public cloud belongs to same region. Pl note that these tunnels are in pair i.e. 02 tunnels are configured Active-Active (BGP) and redundant to each other to achieve ...

Jimmy20 by L2 Linker
  • 2436 Views
  • 1 replies
  • 0 Likes

iOS Global Protect Always-On VPN ?

We have: MDM: FilewaveiOS: 12+GP: 5+ When an iPad is rebooted, GP doesn't auto reconnect & must manually be opened/connected again. Any ideas how to get it to actually always auto reconnect? We really only care about the user identification being automatic.

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels