General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Disabling bad checksum on Firewalls

Hi All, We have received an request to disable the drop of packets due to bad checksum. I had the following questions on this: Q1: Can i see in the traffic logs if any connections are dropped due to bad checksum. Q2: This can be done by entering the following command through CLI set session strict-checksum no Is this correct? Will it h...

Resolved! SPARE device usage

Dear PANw,We (as a distributor) have a case where one of our Partners want to purchase SPARE units to cover their multiple client RMA cases (not just one, since OSS devices are registered to one particular customer and stays at their premises, this is not an option ). This partner doesn't have international ASC certificate and this requirement i...

Upgrade path to 11.2.5 from 11.0.0 on a PA-410

Hi there, Can you tell me what would be the recommended Upgrade path to 11.2.5 from 11.0.0 on an HA Firewall Pair PA-410, please? FW firmware Current ver.: 11.0.01. PAN-OS 11.1.02. PAN-OS 11.2.03. PAN-OS 11.2.5 In PAN-OS 11.0, you can now skip up to three software versions when upgrading or downgrading standalone devices or Panorama managed devi...

A.Otsu by L0 Member
  • 3793 Views
  • 5 replies
  • 0 Likes

Problems for deactivate cyserver Cortex XDR

Hi team Is there any way to disable this service? Even if I run the commands cytool protect disable or cytool runtime stop, it won't let me disable it, I get the message Access is denied. Regards

Alpalo_0-1743697113968.png
Alpalo by L4 Transporter
  • 1398 Views
  • 1 replies
  • 0 Likes

SAML - Integration - Globalprotect Azure-AD-EntraID  - Policy Based Groups Azure-AD for GP Zone

SAML - Integration - Globalprotect Azure-AD-EntraID - Policy Based Groups Azure-AD for GP Hello Live community, how's it going? I hope it's going well. I have a question, today we have via GP the integration with Azure-AD Entra ID, via SAML, where everything works correctly. At the level of what is the assignment of groups, we already ass...

Metgatz by L4 Transporter
  • 1261 Views
  • 1 replies
  • 0 Likes

Resolved! Configure second ISP with failover and aggregation

Hi all, I'm newbie on Palo Alto systems an i have a question bout a configuration point. I have a PA-220 with one Internet connection (100 mbps). I have a second Internet connection from the same ISP (with the same bandwith => 100 mbps). Now, I need to : Aggregate this two links in one logical link ;Use failover system if one of this two link...

feelgood by L2 Linker
  • 18619 Views
  • 6 replies
  • 0 Likes

Trying to uninstall Cortex XDR without password

Hello everyone, I am a former employee of the french company Inetum, which uses Cortex XDR software. My former employer asked me to install it on my personal computer, which I used to work at this company.Having left the company, I no longer have any contact with my former employer's IT support, and I'm trying to uninstall Cortex XDR from my hom...

nikopik by L0 Member
  • 2804 Views
  • 1 replies
  • 0 Likes

Resolved! Static Bi-directional Source NAT not working on incoming traffic

I've users on subnet A that needs to communicate to a service over a vpn on subnet B.This subnet B already knows a subnet A, and therefore we're doing a source NAT for subnet A to C.A server in subnet B needs to print to a printer in subnet A, thus we made the NAT bi-directional.However when trying to print from B to C, traffic gets dropped at t...

CHKlomp by L2 Linker
  • 13004 Views
  • 6 replies
  • 0 Likes

Low quality video on Webex direct call

Hello, it is a few months that we have an issue on Webex call beetween two users (not on Webex meetings). Basically after a while the video call quality starts to decrease during a direct call on Webex beetween two users. We already disabled SIP ALG without experiencing any quality improvement on video calls. By configuring monitoring on ...

AndreaB by L1 Bithead
  • 2040 Views
  • 3 replies
  • 0 Likes

Unable to Change GUI Management Port on PAN-OS 11.1.6

Hi team, I'm trying to change the default HTTPS GUI port (443) to a custom port (e.g. 8443) on firewalls running PAN-OS 11.1.6. I'm accessing via the management interface, but I don't see the option in the GUI (Device > Setup > Management) or in CLI (set deviceconfig system web-server-port seems unavailable). Just want to confirm: 1. Has...

Kevin-Ng by L2 Linker
  • 1471 Views
  • 1 replies
  • 0 Likes

Resolved! Can I use HA function on palo alto vm-series with out any license?

Dear all: My company wants to try update their palo alto NGFW. Before they do it, they need me try it on a test device that they can know the operate procedure and check there is no risk , so I download the software of palo alto FW, and I install it into vmvare. For keep the network structure similar to the business network, I need to c...

  • 24413 Posts
  • 125 Subscriptions
Top Solution Authors
Labels