General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Microsoft-Update and activation problem with SSL Decryption

Hello there, Here I have deployed a set of secure rules for Office365 follow the official Paloalto guide. Now we encounter problem with office365 when ssl-decryption is enabled. Some users cannot activate office365, please refer the error as below. So is it safe if we make a not-decrypt policy for O365's URL using Minemeld? Thank you for any a...

BKQT6uZ
tienngo by L2 Linker
  • 4116 Views
  • 2 replies
  • 0 Likes

A statement about using Pinterest in a URL category.

Hello! somewhat new to the community, I used to have a login but didn't login forever...Just something that you might want to know if you are ever forced to add pinterest to a custom URL category, you will also need *.pinimg.com in the category to make it work. Here is what I used in the custom URL category:pinterest.com*.pinterest.com*.pinimg.c...

Burnsy30 by L0 Member
  • 3910 Views
  • 1 replies
  • 2 Likes

MFA Authentication

I need to configure MFA for administrator login, we would prefer second authentication through e-mail or any mobile APP token.I am unable to find exact document to configure , could you please help us to configure MFA in our Paloalto device.

Resolved! Panorama - deleting part of a template?

When i import my HA pair of firewalls into Panorama (9.1.3), the resulting template includes values for HA config. I would like to leave HA config up to the gateways themselves and not include it as part of the template. How would i delete that part of the template? If i set values to their defaults, that part of the config still exists in the ...

Troubleshoot/debug scep

Our pki team has setup a scep/ndes server for us to use for new firewall we setup. The error i get in the gui is not saying anything. If I would like to start a debug on the firewall cli for scep. Where do i do that?

hbalzac by L3 Networker
  • 3481 Views
  • 1 replies
  • 0 Likes

Panorama version 9.1.4

Since i can see the stable version mentioned for panorama is 9.1.4,but when i go to support portal under panorama base images to download 9.1.4 i cannot the file...i am looking to install it on vm/esxi. Let me know the stable version from 9.1.x and 9.0.y family according i will install and also chose image for my firewall also

Swetang by L1 Bithead
  • 2279 Views
  • 1 replies
  • 0 Likes

Resolved! Global Protect Client Preferred Release?

We are currently looking at updating our global protect client and would like to get some guidance on what version we should be updating to, ideally a client that may support MacOS Big Sur when it is formally released. With the global protect client is the latest and greatest considered stable for production or is there a preferred release? We a...

why the config logs is not capture?

Hi,We have observed that “activating” a GP client version is not captured under configuration logs. Is this because no commit is required for such an action? Is this expected behaviour? How can we check on the history of such a configuration change? Are the other actions that will also not be captured in configuration lo...

PA 200 Connected to 4G Router

Hi Folks,We currently have a primary direct internet from the ISP to the Palo Alto PA-200 configured with LSVPN .As we plan to have a secondary Internet, we want to connect the Palo Alto PA-200 with 4G Router using LSVPN as well. The problem is the public IP address is assigned to the 4G router and we'll connect it via LAN With PA-200 as the dia...

4G-PA200.jpg
Adam42 by L1 Bithead
  • 7376 Views
  • 6 replies
  • 0 Likes

OSPF: more detailed logs?

We're still experiencing the occasional OSPF adjacency drop, although it's much improved since our changes over the summer. However, the log entries in the System log is anything but useful: OSPF adjacency with neighbor has gone down. interface ae2.211, neighbor router ID 10.200.11.96, neighbor IP address 10.200.11.96.Is there any way to get mor...

fjwcash by L4 Transporter
  • 17460 Views
  • 5 replies
  • 0 Likes

Monitor Traffic Shows Sess Still Active over Tunnel Even After Int Failed

We're provisioning and testing a dedicate wave circuit and an Internet-IPSEC backup between two PANs. (We are also running IPSEC over the wave circuit). We noticed a phenomena of sorts and was wondering if anyone has experienced this: We purposely failed the upstream PAN's WAVE circuit's ethernet interface to test failover to the internet-IPSEC....

Panorama and User-ID Compatibility (9.0) with NGFW in 8.0

Hello, We are being affected by a bug that disconnect the Virtual-Wire interfaces in the switches. We are in 8.0.8 version and we wanted to upgrade to latest 8.1. We discover recently if we upgrade to 8.1.0 the bug doesn't affect us and the TAC told us to upgrade to 9.0. Anyway, the compatibility for 9.0 version requires also upgrading Panor...

AitorGD by L1 Bithead
  • 2984 Views
  • 1 replies
  • 0 Likes
  • 24393 Posts
  • 123 Subscriptions
Top Solution Authors
Labels