General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 239 Views
  • 0 replies
  • 0 Likes

TCP fast open and Palo Alto

as far as I could test there is no way to make TCP fast open work through a Palo Alto fw (at least, since  9.1 which seemed to work. It tried 10.2 and 11.2 and all my tests fail there).

Whenever a client sends a SYN packet with data, it is transmitte

...

frigault by L1 Bithead
  • 1798 Views
  • 2 replies
  • 0 Likes

10.0.10 code bug? LDAP auth server is up !!!

Since upgrading to 10.0.10, we've been getting system medium severity messages on our active firewalls that "LDAP auth server xxxx.xxx.xxx is up !!!".  We never receive a down message though.  We're not experiencing any issues with LDAP which makes m

...

jmurphy by L2 Linker
  • 5425 Views
  • 12 replies
  • 1 Likes

SysLog setup not working

Hi,

I am using PA-2050, with PAN OS 4.1.3.

From few days I am trying to configure the syslog to be sent to a central logging system. I followed every possible documentation, but I am not getting any syslogs coming to the syslog server.  I tried on sys

...

GlobalProtect Split DNS configuration

I'm looking to configure split tunneling and DNS in the following way:

 

If the DNS request is from a defined list, send the query to the tunnel DNS servers, if not, send through local adapter DNS. If the resulting reply contains an IP in the defined

...

JoeLane by L0 Member
  • 1093 Views
  • 3 replies
  • 0 Likes

Resolved! Routing logs

Hello...

I have a question regarding default static route logs.

We 2 ISP links configured with path monitoring at default settings (Failure Condition=Any, Preemp HT=2min, PI=3 & PC=5)

As seen in the attached logs, there are alternate path-monitor-fai

...

Need to Export last 90 days logs

Hi Friends,

 

We have a customer who wants to Export Last 90 days traffic logs from the firewall for Audit Purpose.

We have tried to generate them via Custom Managed Reports but no luck and more over we came to know that there is some logs exporting

...

Satyak by L3 Networker
  • 1249 Views
  • 5 replies
  • 0 Likes

Pan-OS end of life list

I am looking to upgrade the software on our firewall to version 10.2.9-h1. I know it has and end of life scheduled for August of 2025. Is that the same end of life from version 10.2.0 through 10.2.9-h1 or does each iteration have its own end of life?

...

SAklil_0-1715727270115.png
S.Aklil by L1 Bithead
  • 1074 Views
  • 2 replies
  • 0 Likes

Resolved! Admin password not changing

Trying to setup a few PA-410 firewalls .  I have one that is not taking the password change, regardless of whether I try from the Web UI or console.  In both they say password changed, but only the default password works.  Anything else I can do? 

Jonesy by L1 Bithead
  • 1180 Views
  • 4 replies
  • 0 Likes

Passive DNS Feature

hi,

 

Please give me suggestion how to apply " Passive DNS Feature " in PAN-OS 10.0.X version because got link in that it is not suggested to apply this feature on PAN os 10.0.x. please find below link and do needful.

https://knowledgebase.paloaltonetwo

...

SurajN by L2 Linker
  • 3475 Views
  • 5 replies
  • 0 Likes

AWS Tunnels Down when We make a Failover

Hello everyone,

 

I have observed that when a failover occurs on an active/passive cluster the IPSEC tunnels to AWS all go down and take a time to recover.

 

I have verified that the traffic goes down and does not communicate for a time of about 5-10 min

...

Alpalo by L4 Transporter
  • 6896 Views
  • 11 replies
  • 0 Likes
  • 23624 Posts
  • 107 Subscriptions
Labels