General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2527 Views
  • 0 replies
  • 0 Likes

Unable to clear Apps seen from local firewall

Hello,

Has anyone seen the following issue? 

Panorama manages a security policy for a remote PA, if you try clear the app seen counter on the remote PA using this KB https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/app-id/security-policy-rule-

...

sami-su by L1 Bithead
  • 10371 Views
  • 9 replies
  • 0 Likes

Threat log URL column is blank..

Hi Team,

In monitor >> threat>> 

we are getting URL column as blank.

We can see source address and destination address.

Can we get URL also in the logs for any actions of vulnerability protection?

 

Thanking You in advance!!

 

Palo-Alto FW 9.0.4 Hardening Steps

Hello Guys, 

 

Joined the community recently...!! Hope all you are good in health and doing great..!!

 

Here...I am looking for a recommended and basic hardening steps (not a complete book) along with commands line for GUI steps/process for Palo-Alto fir

...

Jimmy20 by L2 Linker
  • 7130 Views
  • 1 replies
  • 0 Likes

Block Page not always displayed

Hi,

 

I have the problem that for some URLs I get a block Page and for other URLs I get the "Error secure connection failed" Message.

Both responses have the same session end reason: decrypt-cert-validation.

As this happens regarding SSL connections I us

...

97% speed decrease on SMB traffic (PANOS 8.1)

We're currently having some issues with ms-ds-smb (both v2 and v3) traffic on our PA-3020's (active/passive pair), where we are seeing a 97% speed decrease measured against direct traffic.

 

In order to determine the source of the issue, I have tried t

...

arvesynd by L3 Networker
  • 24634 Views
  • 7 replies
  • 1 Likes

VLAN entry

Hi

 

I have a network with IP addresses in the range of 192.168.100 and 192.168.130 on two singular network cards on the same machine on the local network. Port 4 on the firewall is plugged into another device with the .130 range IP.   Port 1 on the fi

...

Resolved! HA Status Options UnKnown or Down

I have a pair of Palo-220's that I've pushed my templates to from Panorama and now the HA options on both devices are in an UnKnown or Down state. These templates have been pushed out to multiple other pairs I have setup alos but this pair is only on

...

thambright_0-1590770397016.png

Resolved! Issues with https://urlfiltering.paloaltonetworks.com/

Hello Everyone,

 

I am trying to recategorize a website using https://urlfiltering.paloaltonetworks.com/

 

I selected the correct category in my opinion, gave a quick explanation in the comment and then got the following error message after some processi

...

Query on DH group for IPSEC VPN

We are having issue in building an IPSEC tunnel on a Palo firewall. Using ver 9.1.2.
 
Getting below error
 
'IKE phase-1 negotiation is failed. Couldn't find configuration for IKE phase-1 request for peer IP...
 
The peer IP type is Dynamic with no proxy
...

NSX-T east-west traffic integration sizing question.

Hi,

I have a question about using palo alto for east west traffic inspection in an NSX-T environment. 

There are 2 deployment models in a service cluster and per host model.

 

https://docs.paloaltonetworks.com/vm-series/9-1/vm-series-deployment/set-up-th

...

GOMEZZZ by L2 Linker
  • 2906 Views
  • 1 replies
  • 0 Likes

Palo Alto hardware without license limits

Yes, I already know without license i don't get the following but i want know about like VPN, firewall rules and etc.. limits

1. Security profiles (Anti-Virus, Anti-Spyware, URL Filtering, Wildfire) will not work

2. Clientless GlobalProtect, HIP will n

...

Custom BlackList

I have a custom blacklist and when i try to import text files with URL it fail

anybody know what problem is can be?

 

 

  • 24271 Posts
  • 119 Subscriptions
Top Solution Authors
Top Liked Authors
Labels