General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4473 Views
  • 0 replies
  • 0 Likes

AD DNS Zone with A Record not resolving through GlobalProtect VPN gw

We are using Active Directory for our internal corp DNS. I am connected to the corp network using GlobalProtect VPN (multi-gateway). I'm able to resolve names in our primary DNS zone across the VPN tunnel. I just added a new zone, which overrides a public zone - database.windows.net. And, I added an A record to it: <myHostName>.databas...

PALO ALTO PA-850

Hi Every one I want to buy Paloalto PA-850 without license service.what features i can avail freely without any license. can any one help me that to list it.will be waiting for your reply.

Resolved! Custom application definition for radius on a different default port

I have a rule that allows the application radius but is isn't matching my radius traffic. The problem is that my radius traffic isn't on a default port udp/1814. With service set to "application-default" the traffic is identified as radius but is denied. Sure I can change the service to "any", but what I would really like to do is define a ne...

Resolved! AWS - Additional logging disk added as legacy disk

Hello, We have deployed a new panorama in aws environnement with version PANOS 9.1.3.The panorama is in panorama mode and recognize all the disks attached to the EC2 instance which is m5.2xlarge.There is 1 root disk for system and two additional disks of 2TB for logs. Panorama> show system disk detailsName : nvme1n1State : PresentSize : 204...

OUAHID by L0 Member
  • 4310 Views
  • 1 replies
  • 0 Likes

Logging Bittorrent File_Names

Probably a bit of weird question this one, but as the Evil Firewall Admin at an academic institution I sometimes get asked weird questions so I thought I'd pass the joy onwards. We have a researcher who is interested in data on piracy, and I thought I'd try to collect some data on bittorrent traffic (which is mostly allowed) including the filena...

ipsec vpn both primary and secondary both firewall tunnels are up

passive firewallActive firewall.===============================================we did failover from secondary firewall to primary.After failover Primary firewall all vpn tunnels came up and On passive firewall tunnel info up.is it normal behavior on passive firewall tunnel info up ?or passive firewall tunnle info and IKe info should down ?active...

Sonu_Singh_1-1593355672750.png
Sonu_Singh_2-1593356090429.png
bit_byte by L2 Linker
  • 3554 Views
  • 2 replies
  • 0 Likes

DNS queries to resolve internal hosts from PA managment IP

Hi Community, I can see my firewall is sending DNS requests ( request for A record) to resolve some of internal hostnames.I dont have GP/detect internal host configuredI dont have FQDN objects with these hostnamesI have exported and checked entire config, the firewall is not having this hostname in the configurationIt is requesting for A record ...

Resolved! Cortex XDR query.

Hello, My query is, does Cortex XDR scan malicious URLs. Please share your valuable Intake on this query. Many thanks in advance.

Forward traffic inspection in Palo alto

Palo Alto and Fortinet are configured as internet edge firewalls.Dual layers FA Internet ---- Palo Alto ------- Fortigate -------- Trust zone. Outbound traffic is SSL inspected by a Fortinet firewall and the firewall acts as a forward proxy. All users are using Fortigate certificates in browser-trusted location. Palo alto is configured before F...

AWS VPN Tunnel and Path Monitoring

I have 2 AWS instances(Prod and Stage) each with redundant VPN tunnels to the same remote end Palo. I setup path monitoring for each so that when one tunnel is down, the route is removed and the backup route is put in the FIB. This only works with our stage instance and not our prod instance. In each case, the tunnel state on the AWS side doe...

eridavis by L1 Bithead
  • 5045 Views
  • 3 replies
  • 0 Likes
  • 24380 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels