General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 3623 Views
  • 0 replies
  • 0 Likes

DAG and Panorama

When looking at Dynamic Address Groups along with Panorama, it almost looks like this can't be done unless you are using NSX.  I setup the VM Source on one of my firewalls and I can do a DAG, but it doesn't transfer back to Panorama inorder to use it

...

gzygadlo by L1 Bithead
  • 3161 Views
  • 1 replies
  • 0 Likes

Block Brute Force RDP attempts

I have a Palo Alto 820 up and running, and one of its roles is to publish an terminal server (on its default port3389, the Terminal Server have an 2 factor authentication mechanism.)

 

I see lots of connections, and i would like to block this brute for

...

Sjoerd by L2 Linker
  • 13478 Views
  • 7 replies
  • 0 Likes

Zone Protection - Reconnaissance

Hi,

 

Are there any best practice settings for the reconnaissance portion of the zone protection profile.

 

I see the default has the below.  Is it recommended to leave as defaults or does someone have a better recommendation?

 

TCP Port scan 100 events wi

...

MikeC by L3 Networker
  • 4242 Views
  • 3 replies
  • 0 Likes

Resolved! GlobalProtect Gateway is not licensed

Hi,

 

I'm working on home lab and tried to configure clienetless global protect eveything went well expect when i authentate the user i got this message " GlobalProtect Gateway is not licensed. Contact system administrator. ", however during my reading

...

aymenata by L0 Member
  • 7727 Views
  • 3 replies
  • 0 Likes

Can't connect firewall to network

I'm trying to setup a PA-220 for the first time. I'm able to access the fw via the web interface when I directly connect my laptop to the mgmt port. 

 

I'm stuck on Step 11 (https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/getting-started/inte

...

c_n0te by L0 Member
  • 2702 Views
  • 1 replies
  • 0 Likes

Unable to disconnect Global Protect in Linux machine

Hi Team,

 

I have configured GP using "On demand" method when I tried to disconnect GP by ran the command (

user@linuxhost:~$globalprotect disconnect ) getting below error,
 
sweekrit@sweekrit-HP-240-G6-Notebook-PC:~$ globalprotect show --error
Unable to e
...

GP disconnect error.PNG
GP odemand method.PNG

Resolved! Names instead for IP address on routing table

Hi there,

 

We have a PA with two Virtual Routers, Internal VR and DMZ-Internet VR. When I type show routing fib virtual-router "Internal VR" for example the forwarding table shows a name for next hop and interface, see the output below:

 

show routing f

...

  • 24317 Posts
  • 122 Subscriptions
Labels