General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4455 Views
  • 0 replies
  • 0 Likes

GlobalProtect Authentication failed Error code -1 after PAN-OS update

We are on PAN-OS 8.0.6 and have GlobalProtect and SAML w/ Okta setup. It has worked fine as far as I can recall. However when we went to upgrade to 8.0.19 and any later version (after trying that one first), our VPN stopped working. The client would just loop through Okta sending MFA prompts.On the web client, we got this error: "Authenticat...

2019-08-24_20-40-33.png

i could noti nstall the image,

i need help for the upgrade. I have down the image. but when i try to upgrade, i did not find any device or panorama to be select I only have small window for the upgrade i need help now

Weiweili by L0 Member
  • 690 Views
  • 1 replies
  • 0 Likes

removing a Palo alto from my portal

Hi everyone, I had a polo alto firewall that I sold on ebay as I no longer needed it, it's out of licence/ support. How can I remove it from my portal? Would that impact the ability of the person who bought it from me to use it at all? Thank you

nevolex by L3 Networker
  • 774 Views
  • 1 replies
  • 0 Likes

Resolved! PANOS 8.0.4 warning ipv6 not enabled on tunnel interface

Hello All,I just upgraded to 8.0.4 and now when I commit the tunnel interface associated with my external GP gateway gives a warning that "ipv6 is not enabled on the tunnel interface tunnel.1. IPv6 address will be ignored!"Did something change in the gateway configuration. I've gone over and over a few times and am not finding a reference to I...

dan731028 by L3 Networker
  • 20961 Views
  • 15 replies
  • 0 Likes

Resolved! maximum number of bgp routes for VM-series

Hello Community, I found that the BGP forwarding table size entries for VM-Series FW (VM-100 to VM-300) ranges between 100 to 5000. Does it mean that if the number of advertised BGP routes received by the FW exceeds the forwarding table capacity this can lead to issues?

M.Fassel by L0 Member
  • 1657 Views
  • 2 replies
  • 0 Likes

Cisco Webex Calling - One way calling

Does anyone utilize Cisco Webex Calling with a Palo Alto firewall? We run Webex calling and ever since we switched to the palo alto, calls sometimes will only go in one direction (you can hear them, they cant hear you) or no way (either sides cant hear eachother). I reverted back to PAN-OS 9.1.1 hoping that would resolve the issue but the issue ...

matlat by L0 Member
  • 4186 Views
  • 3 replies
  • 0 Likes

Issue with user detection on terminal server

Hello everyone, We're having an issue with our terminal server agent software on multiple terminal servers running Windows Server 2019. The problem lies in recognizing users who are logged on to these servers. The TS Agent sees the users on the Terminal Server Agent Monitor tab, but they do not appear in the traffic log in the Firewall Sourc...

Terminal Server doesn't work with Microsoft applications

Hi guys,We faced an issue where users' traffic related to office applications from a system, on which Terminal Server is installed, gets dropped by the firewall due to the unknown source user. We are using Terminal Server Agent as the means of user identifications. Web browsing and traffic related to other applications pass through the firewall ...

AWS Tunnels Down when We make a Failover

Hello everyone, I have observed that when a failover occurs on an active/passive cluster the IPSEC tunnels to AWS all go down and take a time to recover. I have verified that the traffic goes down and does not communicate for a time of about 5-10 minutes.Has anyone else seen this problem and do you know how I can fix it?I would also like to comm...

Alpalo by L4 Transporter
  • 13613 Views
  • 13 replies
  • 0 Likes

Resolved! Flexible vCPU VM Firewall interfaces are down

Hi, I have a problem with bringing up interfaces on a VM firewall running with this configuration: vm-license: VM-SERIES-2 vm-cap-tier: T1-5GB vm-cpu-count: 2 vm-memory: 5061728 vm-mode: VMware ESXi sw-version: 11.1.4-h13 show interface hardware total configured hardware interfaces: 2 name id speed/duplex/state ...

Static Routing across Site to Site VPN with many remote subnets

Relatively new to Palo and I feel like I've spent hours searching with no answers so, if this is a completely basic topic, please feel free to point it out. I'm migrating a dozen or so firewalls from FortiGates to Palo PA-445 (using Panorama). My company uses a lot of site to site VPN's and many of those VPN's have dozens of remote subnets ...

Resolved! Management and Dataplane on Vsys

Hello Everyone, I have a question. When using virtual systems, how are the management and dataplanes split? Is the management plane shared between VSYS and Dataplane separated? Or are both the same for all VSYSs?

Punite by L1 Bithead
  • 1475 Views
  • 2 replies
  • 0 Likes

Qs about bidirectional NAT offerings

I am looking for a router/firewall with the following specs: at least 10 1Gb ports supporting bidirectional NAT compact Can someone point me to PA products which would meet these very loose specs? Not sure if every PA device supports it.

  • 24376 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels