General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4119 Views
  • 0 replies
  • 0 Likes

Resolved! USer-ID enable?

Hi team, Can someone expertise tell me that where we enable user-id?Is it on Panorama or on Gateway and help me to understand ow it's work?

AmitPA by L0 Member
  • 2469 Views
  • 1 replies
  • 0 Likes

Redis - Package Upgrade Issues

I've been trying to upgrade my Ubuntu instance for the past few months, but keep having to install all package updates manually as redis-server and redis-tools fail as it can't overwrite the minemeld redis config. After updating the packages, we are unable to login to minemeld as nginx throws a 502 error. Is anyone else having this issue? If so,...

Resolved! Guide to updating an HA Pair

While learning more about Palo Alto firewalls, I put together a guide on how to update a pair of firewalls in HA.Hope it's useful, and I hope you like it! https://youtu.be/tPkMxJXIW7s

Luke_R by L2 Linker
  • 3767 Views
  • 2 replies
  • 0 Likes

panorama disk-space

We see"Show system search-engine-quota" displays 480491MB of space, accounting for 66% of the document, and the detailed information(total size) displayed under search engine also does not reach 480491MB. Can you explain it? Thank youThe following is a screenshot of show system search engine quota.

search-engine.png
DISK-SPACE.png
Eccomtac by L0 Member
  • 2618 Views
  • 1 replies
  • 0 Likes

After upgradae of pan os 8. 1. 14h2 auth profile changes auto

the PAN-OS has upgraded from 8. 1. 9h4 to 8. 1. 14h2.The issue has been reported that users are able to connect the VPN via Global protect with their AD logins, but unable to access few web-based applications.The logs are not received by the firewall in the traffic monitor, At the same time packet capture was done and counters from the firewall ...

Dynamic Domain List Empty

Created Dynamic Domain list, added single domain x.y.com > added list to antispyware profile > profile is used in policies but still the list shows empty. Also tries y.com still it is empty. Source URL is accessible an there are other IP lists in same location that are working. request system external-list refresh type domain name SINK-Do...

raji_toor_0-1592762122984.png
raji_toor by L4 Transporter
  • 4618 Views
  • 6 replies
  • 0 Likes

Resolved! Layer 3 routing on PA

Guys, facing a small issue hope can resolve togetherI have created a new network on PA as Layer-3(503) and am trying to communicate with my other existing layer-3 network (501):Steps configured are as follows :1) created Layer-3 ae4.503 with IP X.53.1 and existing is ae4.501 with IP X.50.12) Policy from both either network 3) Policy based forwar...

Resolved! Split tunneling for zoom app

Hi, We dont have configured split tunneling for GP. We have 0.0.0.0/0. We would like to do split tunneling only for zoom-base.We tried to configure in GP gateway excluding the zoom ips but its still the zoom traffic reaching the PA, because IPs can change.Whats is the best way to split just for zoom or any app.

BigPalo by L4 Transporter
  • 6526 Views
  • 4 replies
  • 0 Likes

Resolved! Configuring Interface Management Profile and Assign it to Agg Interface

Hi All, I have a customer that looses it's access to the Web GUI of the PAN Firewall except console connection. Aggregate Interface is configured. Can I assign an interface management profile via CLI on the aggregate interfaces? E.g. ae1.100? When i type set network interface aggregate-ethernet and hit the "?" I can't see tha aggregate interface...

Resolved! SSL inbound decryption and Post message in PA PCAPS

We have configured the SSL inbound decryption.When we do the PCAPS on the PA we do not see POST message on the re and tx pcaps. Need to know is this default behaviour?On traffic logs we see decryption flag as checked.Also from CLI i verify that PA is decrypting the traffic.

MP18 by Cyber Elite
  • 3849 Views
  • 4 replies
  • 0 Likes

Resolved! Panorama suggested version

Hi Team, we have firewall running version 9.0.6,9.0.4 and 9.0.7, well in this case what could be the suggested version of panorama?i have heard , panorama should run with same or later version firewall OS, Is it talking about the major version like 7.x,8.x or 9.xor talking about minor release?

Resolved! All the traps agents are disconnected

Hi Community, All the agents in my traps setup on ver 4.2.5 shown as disconnected. As the issue looks like ESM server related, i have followed the document https://docs.paloaltonetworks.com/traps/4-2/traps-endpoint-security-manager-admin/troubleshooting/troubleshoot-esm-console-issues/why-do-all-endpoints-appear-as-disconnected-in-the-esm-consol...

  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels