General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1782 Views
  • 0 replies
  • 0 Likes

Global Protect Access routes

Hi,

I have question for access routes. We have configured global protect and advertised only one access route however after connecting to global protect VPN, we can see multiple access routes in client machine. Is there any other criteria for access r

...

gpandya by L1 Bithead
  • 7433 Views
  • 5 replies
  • 0 Likes

IPSEC VPN Phase 2 issue-Peer Checkpoint

I have 15 proxy-ids in the  vpn tunnel whose peer is checkpoint firewall. Just one out of 15 usually remains really busy and lot of traffic get encap/decap on it. Remote users accessing resources within other 14 proxy-ids have absolutely no issues bu

...

Resolved! dedicated log collector setup and licensing

hi,

I am preparing a new environment (my plan is for 2x management only + 2x log collector only) and have no experience with dedicated lot collectors yet. Please help me to clarify few things:
- log collector for sure needs licenses, are they the same

...

PANW-NGFW

Hello,

Does PANW-NGFW support invalid link notification for SFP?

 

 

 

 

 

 

 

 

 

bealefay by L0 Member
  • 2064 Views
  • 1 replies
  • 0 Likes

PANORAMA COMMIT AND PUSH TO FIREWALL FAILS WITH ERROR

For the last few days, we have been trying to import firewalls into Panorama and have not been successful at it.

 

Panorama firmware is 9.0.7

Palo Alto firmware: 8.1.13

 

Description of issue: During the importing process, I was able to extract the config

...

Captive Portal SSO w/ Okta - "User Authenticated"

We've implemented Okta SAML SSO with our layer-3 Captive Portal redirect page for IP-User mapping. The solution works, but users are landing on a "User Authenticated" web page, rather than the website they originally browsed to. Users now have to re-

...

2020-02-19 11_54_24-Program Manager.png

Firewall active sessions age

Does PAN OS has a feature to calculate session age for any active session  ? In particular looking from SOC point of view if they want to monitor long time period active sessions used by attackers to compromise security. 

I am not looking for session

...

PS007 by L2 Linker
  • 5752 Views
  • 6 replies
  • 0 Likes

Resolved! Paloalto NGFW file system integrity check??

hi

this is jo. from S.Korea

 

case(PA-3060 / PAN-OS 8.0.7)
customer want to check
'file system integrity check' when it occur.(monitor->system log)
when the integrity log occur want to send to Syslogserver.

 

test.
I`d reboot Pa-220 and checked system log how

...

HTTP response code logging

So PAN doesn't log HTTP response code, at least I do not seem to find one under URL Filtering logs, and if it doesn't, then how Palo could claim that it is the replacement of proxy?

 

 

rKarki by L1 Bithead
  • 5804 Views
  • 3 replies
  • 0 Likes

Office365 and Exhange Online

We are going to have a hybrid environment and need to allow some O365/Exchange traffic inbound from their cloud. They have a JSON list they publish. Can I use that as an EDL to allow the traffic inbound? Or do I need to filter that through something

...

  • 24244 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels