General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Prelogon Global protect in 9.0

Hi Team

 

Im trying to configure Global protect prelogon for some users.

 

I have configured everything, here the challenging part is configuring machine certificate for authenticating users. I have create Self signed root ca in firewall and created clie

...

Asymmetric Routing and TCP Syn Check

Hello All,

 

I have a scenario where I will be having two ISP's (ISP-A and ISP-B) connected to the PA Firewalls via eth1/1 and eth1/2 interfaces. Both these Interfaces will be in the same untrust-zone. ISP-A will be the primary one and ISP-B the backup

...

Anjush by L0 Member
  • 3990 Views
  • 2 replies
  • 0 Likes

Global Protect and google play traffic from mobile

Hi all ,

 

I am running PAN OS 8.0.19 and GP 4.1.12 and users cannot access google play store while they are connected to the VPN from androids  .

 

I have tried with spli tunneling including 63 subnets from google and I have tried full tunnel defining i

...

Resolved! SSL Exclude Option Missing in 8.1

Hi Community,

 

I noticed, that in 8.1.x (7,8,9, 9h4) the "SSL Exclude Option" in Device > Certificate  Management > Certificates is missing.

The PAN-OS 8.1 guide mentions this option on page 198, and you can see it in a screenshot in this KB point 7:

ht

...

Chacko42 by L4 Transporter
  • 4268 Views
  • 2 replies
  • 0 Likes

Resolved! LSVPN Satellite Deny specific subnet to Publish to gateway

In LSVPN VPN setup how can we deny specific subnet to not advertise to gateway.

 

I have selected Publish all static and connected routes and I want to deny some of static routes of them , how can we do that ?

 

I know we can disable public option manual

...

Multicast with Chromecasts confusion

Background:

 

I have a trust zone on ethernet1/2 192..168.1.0/24 and an iot zone on ehternet1/4 10.10.10.0/24 and I want to be able to cast things from endpoints (mobile phones and laptops) to the chromecasts on the iot zone.

 

It seems like multicas

...

multicast1.jpg
multicast2.jpg
secpol.jpg
hshawn by L4 Transporter
  • 7571 Views
  • 2 replies
  • 0 Likes

Resolved! Ubuntu

Hello, can anyone tell me what version of Ubuntu I should use for MineMeld ?

Error when attemtping to delete node

I setup a couple nodes for miner, aggregator and output for Azure IPs to test.  Now I want to delete some.  When I try to Click "X" to delete any of the nodes, I get red error popup in corner that states "Error deleting node:  Timeout".

 

I removed t

...

Config Files Backup

Hi.

I have PA850. According to this link (https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm7yCAC) I configured backup with local Superuser account. Everything is OK. But then I created new Admin Role named backupadmin and ne

...

1.JPG
2.JPG
3.JPG
4.JPG
Outlaw by L0 Member
  • 2478 Views
  • 1 replies
  • 0 Likes

High memory usage on Palo Alto

I have an issue with a Panorama VM indicating high memory usage.


Using the following resources: 


top - 10:59:58 up 82 days, 1:07, 1 user, load average: 4.22, 3.89, 3.87
Tasks: 156 total, 1 running, 152 sleeping, 0 stopped, 3 zombie
Cpu(s): 39.2%us, 1.8%s

...

Resolved! Data Center Firewall - Monolithic vs Virtualized

This is purely theoretical and does not represent a real network.

You can think of this as on prem or public cloud:-

 

Monolithic

This design utilizes 3 physical firewalls that are embedded in a data center fabric
• Perimeter
• B2B
• DC
The main focus of my

...

DC Firewall - monolithic.jpg
DC Firewall - virtualization.jpg
DC Firewall - virtualization.jpg
mcronin by L0 Member
  • 2147 Views
  • 1 replies
  • 0 Likes
  • 24203 Posts
  • 100 Subscriptions
Top Liked Authors
Labels