General Topics
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics

Discussions

Thank You for Filling Out the LIVEcommunity Experience Survey!

If you've visited LIVEcommunity anytime recently, you've probably seen a pop-up asking for your feedback. We've deployed this survey since April 2020 for new and returning visitors alike as a way to gather feedback from our users. 

 

In the past six

...

survey-livecommunity.png
jforsythe by Community Team Member
  • 485 Views
  • 1 replies
  • 4 Likes

Traffic Logs not showing up on Monitoring Tab

Hi All,

 

Device Type: PA-220

Software Version: 8.0.11-h1

 

Im having an issue with old traffic logs not showing up on the monitoring tab. I can see live logs but if I want to check the logs for the previous day or previous 2 days then nothing shows up. I

...

Error fetching External Dynamic List (EDL)

Hello,

 

When trying to fetch an EDL from a web server configured without support for TLSv1 (only support TLSv1.1 or 1.2) the result is "Server error : URL access error".

 

I don't know if PAN-OS 7.1.18 fetch client for EDL only support TLSv1. Checking c

...

fjmjugr by L1 Bithead
  • 2944 Views
  • 6 replies
  • 0 Likes

Resolved! requesting connection status via code or through CLI

Hey there, I'm designing windows 10 app which needs to connect to a office based database via a remote laptop.

The laptop will have access to the office through the GlobalProtect VPN.

I need a way to query the GlobalProtect windows agent to see if ther

...

BGP Import AS Path regex to accept/remove my own ASN

I have  a standard L3 VPN setup where I have VR on each side acting as the CE (customer edge) device.  CE-PE protocol is BGP on both sides.  So, essentially, i have an eBGP peering in which I have to receive prefixes from the distant end, which of co

...

Asymmetric Routing and TCP syn check (Pulukas Solution)

Hi Everyone,

 

Asymmetric Routing and TCP syn verification is a common issue and there were many articles on how to resolve that, basically

1 - To change routing itself and make sure there are no asymmetric routing in the network - best from PA point of

...

Dimitrus by L0 Member
  • 1027 Views
  • 2 replies
  • 0 Likes

Does Palo Alto (VM) firewall supported in VirtualBox?

Has anyone managed to installed and run Palo Alto (VM) firewall successfully in VirtualBox?

I've been trying to setup my own lab for learning purposes. Basically, this lab contains client, firewall, and server with different network segment.
 
Client --
...

PA-VM 8 v1.jpg
prenatip by L1 Bithead
  • 2596 Views
  • 1 replies
  • 0 Likes

VPN certificate expires

Hey!

My firewall is a PA-3020 with 8.0.7. There is a Global Protect gateway and portal, users can connect via Global Protect.

As portal address in the global protect app, we are using an address that is availabe in public dns.

Additionally, there is a p

...

MPI-AE by L4 Transporter
  • 4941 Views
  • 7 replies
  • 0 Likes

Resolved! Use Domain EDL for purposes other than DNS sinkholing?

 Can you use a domain EDL for other purposes or only for DNS sinkholing?

 

In other words, can you use a domain EDL in any policy rule in the same way an FQDN object can be used?

 

I would expect that you can, but wanted to ask.

RISI by L2 Linker
  • 1642 Views
  • 4 replies
  • 0 Likes

Resolved! IKEV2 Errors in Log

On my PA-500 and PA-820's when I have a IKEV2 tunnel I tend to see this alot.  Both of these are running 8.0.10

 

'IKEv2 SA negotiation is failed. received notify type TS_UNACCEPTABLE

 

Trying to figure out what is causing this.  Anyone have any ideas

gzygadlo by L1 Bithead
  • 22461 Views
  • 1 replies
  • 0 Likes
Top Solution Authors
Top Liked Authors