General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Configure second ISP with failover and aggregation

Hi all, I'm newbie on Palo Alto systems an i have a question bout a configuration point. I have a PA-220 with one Internet connection (100 mbps). I have a second Internet connection from the same ISP (with the same bandwith => 100 mbps). Now, I need to : Aggregate this two links in one logical link ;Use failover system if one of this two link...

feelgood by L2 Linker
  • 18253 Views
  • 6 replies
  • 0 Likes

Trying to uninstall Cortex XDR without password

Hello everyone, I am a former employee of the french company Inetum, which uses Cortex XDR software. My former employer asked me to install it on my personal computer, which I used to work at this company.Having left the company, I no longer have any contact with my former employer's IT support, and I'm trying to uninstall Cortex XDR from my hom...

nikopik by L0 Member
  • 2703 Views
  • 1 replies
  • 0 Likes

Resolved! Static Bi-directional Source NAT not working on incoming traffic

I've users on subnet A that needs to communicate to a service over a vpn on subnet B.This subnet B already knows a subnet A, and therefore we're doing a source NAT for subnet A to C.A server in subnet B needs to print to a printer in subnet A, thus we made the NAT bi-directional.However when trying to print from B to C, traffic gets dropped at t...

CHKlomp by L2 Linker
  • 12822 Views
  • 6 replies
  • 0 Likes

Low quality video on Webex direct call

Hello, it is a few months that we have an issue on Webex call beetween two users (not on Webex meetings). Basically after a while the video call quality starts to decrease during a direct call on Webex beetween two users. We already disabled SIP ALG without experiencing any quality improvement on video calls. By configuring monitoring on ...

AndreaB by L1 Bithead
  • 1950 Views
  • 3 replies
  • 0 Likes

Unable to Change GUI Management Port on PAN-OS 11.1.6

Hi team, I'm trying to change the default HTTPS GUI port (443) to a custom port (e.g. 8443) on firewalls running PAN-OS 11.1.6. I'm accessing via the management interface, but I don't see the option in the GUI (Device > Setup > Management) or in CLI (set deviceconfig system web-server-port seems unavailable). Just want to confirm: 1. Has...

Kevin-Ng by L2 Linker
  • 1374 Views
  • 1 replies
  • 0 Likes

Resolved! Can I use HA function on palo alto vm-series with out any license?

Dear all: My company wants to try update their palo alto NGFW. Before they do it, they need me try it on a test device that they can know the operate procedure and check there is no risk , so I download the software of palo alto FW, and I install it into vmvare. For keep the network structure similar to the business network, I need to c...

unable to add new object address to existing object address group

I created a new object address on my PA-5220 and whenever I edit an existing object address group, I cannot find that new object address in the list. I have committed the change to the firewall and confirmed other users see the object address and have the same issue. I went into the existing object address group and tried to add a new object ...

Jeromy by L0 Member
  • 7421 Views
  • 6 replies
  • 1 Likes

Unable to View URL/Domain in Destination Address

Hi Friends, We have a customer who is only able to see the IP address in the destination field, as hostname resolution is not functioning correctly. However, he would like to view the URL or domain name along with the IP in the destination address. To troubleshoot the issue, I took the following steps: 1. Enabled the "Resolve Hostname" option ...

OSPF with Active/Passive HA

Hi, I came across this design guide and looking at labbing this up for testing, as the design could be a good fit for our production environment, with a few tweaks. In my case, I'll be using OSPF between the firewalls and internal routers A and B. The connections to the edge routers A and B will be the provider routers, so they will be outside ...

OSPF HA.PNG
rchung54 by L2 Linker
  • 12180 Views
  • 8 replies
  • 0 Likes

Clear DF bit for VPN

We have recently migrated our site-to-site VPN so it is now running between a PA-3020 > Cisco ASA 5510. After the migration we discovered that one of our cross-site applications broke and the vendor determined it was because their application communicates in 1472 byte packets with the DF bit set. On our old VPN this was not an issue because...

Service Accounts and GP

Situation is this, a normal user logs into a PC and GP auto connects. User logs out and back in as a service account and GP does not auto login. Any ideas?

  • 24393 Posts
  • 123 Subscriptions
Top Solution Authors
Labels