General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

LIVEcommunity System Update - Delayed

UPDATE 11/8/23 11:43 a.m. EST:

LIVEcommunity’s System Update will be delayed. This means your use of LIVEcommunity will not be impacted this week (11/8-9), and you can proceed with business as usual.

 

Thank you again for your patience and stay tuned

...

jforsythe by Community Team Member
  • 273 Views
  • 0 replies
  • 0 Likes

New Area for Engineering Blogs on LIVEcommunity!

We are excited to announce a new Engineering Blogs section on LIVEcommunity, exclusively curated by Palo Alto Networks engineers!

 

This dedicated area will be home to technical posts about Palo Alto Networks innovations to build scalable and reliabl

...

jennaqualls by Community Team Member
  • 523 Views
  • 0 replies
  • 1 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 1802 Views
  • 2 replies
  • 10 Likes

Resolved! Every few mins in system logs eventid eq ike-nego-p2-succ

 

We have IPSEC tunnel to vendor every few mins in system logs i see

 

eventid eq ike-nego-p2-succ

 

and ( description contains 'IKE phase-2 negotiation is succeeded as initiator, quick mode. Established SA: 193.x.x.x.[500]-174.112.x.x[500] message id:0x8

...

MP18 by Cyber Elite
  • 3517 Views
  • 9 replies
  • 0 Likes

Resolved! Tunnel went down while PA was responder

Seems PA was responder and tunnel went down today at 9.29.22  MST

below are logs

 

 

We were responder so we should know the reason for tunnel going down

 

72%2019-05-10 09:28:16.772 -0600 [PNTF]: { 14: }: notification message 36136:R-U-THERE, doi=1 proto_

...

MP18 by Cyber Elite
  • 4282 Views
  • 7 replies
  • 0 Likes

Resolved! Content / Database Versions Do Not Match

Every week I recieve these emails while the PAN firewalls do their weekly updates, is there a way to not recieve these e-mails, the time stamps are exactly the same from each device, as they are upgrading at the exact same time. Is there a setting in

...

Resolved! How to...(VPN globalprotect)

Hello guys,

 

I'm trying to do something and i'm not really sure if it's possible. Let's get into...

 

I have an url that is for example: "www.myweb.com". Our partner is hosting that web and with his firewall is just allowing us the access through our IP

...

IPsec VPN with AH generates core files

Hi team, 

 

I have two VM-50 v9.01, one in SiteA and another in SiteB. I set up an IPsec tunnel between them with: IKE-v1 : phase1 (aggressive mode)  and phase2 (quick mode) with ESP.  it works fine and I'am able to ping from a vlan in SiteA to another

...

Resolved! cfg export + master key hash

Dear Community,

 

I have found this side note in an article regarding the master key on the firewall.

 

"Without the Master Key, when a configuration is exported from a firewall, the password is hashed and can be copied."

 

Basically its the exact answer o

...

Rboehme by L2 Linker
  • 2615 Views
  • 1 replies
  • 0 Likes

Unable to access the GUI of WF 500

Hi Team

 

In WF 500, we are unable to access via GUI but we have access via CLI (Putty).

 

WF 500 os version is 8.0.6. Please refer the attached error snapshot. 

 

Kindly help us to resolve the issue.

 

Thanks & Regards
Mohammed Ashik

PAN Wildifre 1 GUI Error.jpg

Resolved! Intel MDS Attack

Can anyone help to provide more information if below CVE are impacted in Palo Alto product line?

Intel Microarchitectural Data Sampling Vulnerabilities (Fallout, RIDL, Zombieload) (CVE-2018-12126 , CVE-2018-12127, CVE-2018-12130, CVE-2019-11091)

Collect syslog information

Hi, 

 

We are going to add a new syslog server in PA config. So we would like to do a bit audit about PA supporting syslog sessions.

What si the best way to know:

-Volume of traffic per day for syslog

-Top10 destination syslogs

-.....

 

thanks.

 

BigPalo by L4 Transporter
  • 2461 Views
  • 3 replies
  • 0 Likes

Overlap-Zone difference Vsys

HI Expert ,

 

I would like to know that it can be possible about overlap zone name but difference Vsys such as I would to defind name Zone "Trust" on vsys1 and would to zone name "Trust" on vsys2 as well

 

Please  suggest to me 

 

Thank you 

Resolved! Alert When Accessing Application

Good morning!

 

I'm trying to figure out if it's possible to throw an "alert" log entry when a specific application is accessed. I know it can be done with categories, but I'd like to do the same with specific applications.

 

I can always filter my Traff

...

GCSS-RT by L2 Linker
  • 2408 Views
  • 4 replies
  • 0 Likes
Top Liked Authors