General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4105 Views
  • 0 replies
  • 0 Likes

PaloAlto firewall HA upgrade

Hi I am new to Palo Alto firewalls. I need to upgrade the firmware on PA-3220 firewalls in A-P HA . Firewalls doesn't have management ports connected to network and they are remote. It looks like i need management port access of individual firewall to upgrade the firmware. Is it possible to upgrade without management port access? if so, how do y...

thushy by L0 Member
  • 995 Views
  • 3 replies
  • 0 Likes

existing session behavior when routing table changes

Does anybody know if existing sessions can be updated when there is a routing table change, or if there is a way to clear sessions? I'm hoping for something analagous to the Session Rematch feature when policies change. My problem is that I have an existing session that becomes hung when the routing table changes. The routing table updates w...

Resolved! Palo alto weekly update

Hello, We are experiencing an issue with our firewall, as it is no longer downloading its weekly updates as expected. I attempted to manually download and install the update, but encountered a warning message (please find it attached). To clarify, there have been no changes to the configuration on our end. Could you kindly assist us with resolvi...

Need to check comptibility

Hello Team, We have PA-5420 firewall having 10Gig port. but downlink on cisco switch we have 25Gig port. if that is the situation then it will work or not.

jhussain1_0-1740586800075.png

When setting up HA from a stand-alone...how should I configure LAN ports on the switch? What state are links on the passive node?

I have a standalone PA-440 that I am in the process of moving to HA. I have all the wiring done with ISP1 and ISP2 broken out and going to the same ports on each of the 440s. That part all seems fine. I have all the licenses in place and I have green dots and sync across everything in the HA widget on the dashboard. I only have a single switch...

Prove the firewall innocent?

Hello, We have communication from load balancer to 2 servers called S1 and S2. Both S1 and S2 have same Windows Server version and have exact same patch level. Both serve a web-service hosted on their IIS. On Palo firewall, we have App-ID based rule allowing web-browsing as application. Till 2 days ago, both of them were working perfectly. Yeste...

Device and customer codes do not match a Support Account.

Hi, I recently acquired a used Palo Alto firewall and I'm encountering an issue during the registration process. The error message states: 'Device and customer codes do not match a Support Account. Please contact a Super User to send you a registration link for the appropriate Support Account.' However, I don't have access to a Super User sinc...

Eightin by L0 Member
  • 998 Views
  • 1 replies
  • 0 Likes

Resolved! Historical Bandwith/Interface Mbps Usage

Hello I am struggling to get some very basic data from a Palo Alto Firewall or Panorama appliance. All answers seem to point to third party solutions. I would like to get historical bandwidth usage. Pretty much what QoS Statics offers but instead of realtime, I want to be able go back days/weeks. All I am getting is aggregated data by Applic...

palodm by L0 Member
  • 4571 Views
  • 2 replies
  • 0 Likes

Resolved! Device Certificate - Where to find OTP?

Under Device -> Setup -> Management -> Device Certificate, I am unable to fetch the device certificate. A message box says get your one-time-password from the Customer Support Portal and enter it below. I tried my 2-factor OTP that I use to login to the support portal, but that doesn't work. How do I generate the OTP to get the device...

File Bolck in AI Websites.

Dear Experts, Has anyone successfully blocked file uploads on AI websites? We have attempted to restrict file uploads, but it hasn’t worked as expected. Please note that SSL decryption is enabled, but we are still facing issues. If anyone has implemented this successfully, please let us know.

CyberEye by L3 Networker
  • 1130 Views
  • 2 replies
  • 0 Likes

GlobalProtect Pre-Logon Windows 10 Issue

Hello!I am facing a problem with pre-logon on windows 10. I have some windows 10 laptops that works fine but few of them have the problem below.I have import the local machine certificate and change registry entries. If I sign out from windows, I can see the pre logon option and connect to my vpn. But when i restart or shutdown the laptop, when...

dpsarras by L0 Member
  • 23688 Views
  • 6 replies
  • 1 Likes

PA-VM Failing to install dynamic update 8947-9281

Hi All, dynamic update 8947-9281 App and threats downloades but failes to install with the below error. No issues with Antivirus. I have 10.2 software installed Antivirus 5104-5623 installed App and threat 8946-9276 installed Error: failed to handle TDB_UPDATE_BLOCK (Module: device) client device phase 1 failure Failed to commit policy to devi...

M.Tawfik by L0 Member
  • 807 Views
  • 1 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels