General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 611 Views
  • 0 replies
  • 0 Likes

Resolved! User showing unknow.

Dear Fox,

After 2 minutes not able to access the internal resource through Global protect VPN. While investigation I found the user is showing unknown (>show user ip-user-mapping ip x.x.x.x) Attached screenshots name"User-id-01".

 

using the local authe

...

User-id Connection setting.JPG
User-id-01.JPG
CyberEye by L3 Networker
  • 3483 Views
  • 3 replies
  • 0 Likes

User-ID Policies

Hi,

 

I have a few questions regarding policies using user-id for access.

 

When I select add, to add a source user into a policy I can start typing a name and it will give me a list of users with thoses names to add in, like a prepopulation.

Is there a l

...

LACP port is Flapping

LACP configure between PA and cisco switch 

Active and Active mode and transmission rate: slow

======================================

LACP System log::::LACP interface ethernet1/19 moved out of AE-group ae2. Selection state Unselected(Link down)

 

l2ctrld

...

bit_byte by L2 Linker
  • 5666 Views
  • 1 replies
  • 0 Likes

File Blocking Type.

Hi team,

 

I want to block .pst .dat .csr files.

I know the PA FW works on file types rather than file extension, but i want to know .pst and .dat and .csr are which file types ?

 

 

Resolved! Panorama Integration with Firewalls

Hello team,

 

Can we add multiple firewalls to same device group?

 

We have one requirement where all the security and NAT polices are same for each firewall instance. So we are looking into something where there will be common device group polices, and

...

Vikashh by L2 Linker
  • 3196 Views
  • 1 replies
  • 0 Likes

Resolved! Question about Global Protect and ip pools

Hi

 

Can any one explain the difference between the ip pools

a) Global protect / gateways  ... external gateway / agent / Client ip pool

vs

b) Global protect / gateways  ... external gateway / agent / client setting / ip pool

 

so for

a) I can't reference an

...

Resolved! Transparent IP Mode Splice L3 Subnet possible?

I have a client that is currently using Sonicwall and wants to migrate to Palo Alto.  

Sonicwall supports Transparent IP Mode (Splice L3 Subnet) that basically can bridge the WAN subnet onto the DMZ interface.

Let say for example,

WAN Interface - 100.1

...

Blocking all files upload

Hi, 

 

Anyone has ever figured out how to block any inside hosts to upload any kind of file outside, but still allowing web browsing? The file blocking option support only specific type of files... and the APP-ID database doesn't have any king of basic

...

Fan Alarm

Hello,

 

I have an issue with PA-5220 FAN  the LED indicator is red.

 

 

when I check the system environmental logs below is the result:-

 

 

Do I need to change the FAN or any troubleshooting steps for this?

 

 

 

Jafar_Hussain_0-1586715542848.png
Jafar_Hussain_1-1586715650296.png

Resolved! Showing Active Debugs

Hi All,

 

 

I come from a Cisco background and now getting to play with PAs  I have a few queries around debugging from CLI.

 

Can we debug multiple different protocols at the same time, e.g Phase 1, 2 for VPNs, maybe some ARP resolution at the same time

...

  • 23936 Posts
  • 113 Subscriptions
Top Liked Authors
Labels