General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

Application Override Video & Voice

We have Palo Alto firewalls, version 8.1.x. We heavily use Webex (application and physical boards), Jabber, and MS Teams both in the Corporate office and by GlobalProtect VPN users. I'm considering using Application Override for many of these Voice and Video applications, especially I see a large amount of cisco-spark-audio-video App-ID traffic ...

How to physical link down when rollback

Hi, I am using the 5.x version of paloalto.HA is Actvie(FW1) - Passive(FW2) configuration and use link group.For example, failover occurs when the wan link goes down. (FW2 / Actvie)When the wan link is up rollback.(FW1/ Actvie) At that time, the entire physical link down fw2 was about 1 minute.I was using it this way.but I am working on changin...

Upgrade Palo Alto via Panorama

Hello, We have 100 Palo altos firewall that we would like to upgrade via Panorama to 9.0.7, I am trying to create a group based on the prisority of upgrade to push the device>deployment >software package. Is there a way from Panorama 9.0.7 to create a groups a populate the firewall we want to upgrade? instead of selecting each one individu...

Hani2903 by L0 Member
  • 2686 Views
  • 2 replies
  • 0 Likes

Paloalto home lab

Hi community,I want to create Palo alto home lab i have PA installed to VMware workstation on laptop. now I want to connect one interface of Palo alto to wifi and one interface to my local laptop on which Palo alto image is running so I can filter Traffic going towards internet.

Refund request for VM-Series Next-Generation Firewall Bundle 1 (sold by Palo Alto Networks Inc.)

I have used VM-Series Next-Generation Firewall Bundle 1 (sold by Palo Alto Networks Inc.) in AWS for learning purpose . But its charged me $320 that I can't afford. amount automatically deducted. I contacted with AWS and they waived off their billing part. But, they suggested to get in touch with Palo Alto so that PA can approve and send the for...

PMANDAL by L0 Member
  • 2522 Views
  • 2 replies
  • 0 Likes

Resolved! AAA Server Limit

Hi all, Do we have a similar limitation with Palo Alto Networks? If so, where can I find this information? Increased limits for AAA server groups and servers per group.9.13(1)You can configure more AAA server groups. In single context mode, you can configure 200 AAA server groups (the former limit was 100). In multiple context mode, you can conf...

Resolved! Using LDAP groups with GlobalProtect

What's the magic incantation needed to use LDAP groups in the GlobalProtect Portal user/group list? Instead of listing all umpteen dozen individual users. I have a working GP Portal and multiple Gateway setup, using LDAP for authentication. I have a working Group Mapping setup using groups from LDAP. I can use "show user group list" and see al...

fjwcash by L4 Transporter
  • 8914 Views
  • 4 replies
  • 0 Likes

Virtual wire with Vlan trunking and vlan mapping

Hi all, I currently have a palo alto that is connected to my switches.The palo alto is configured as a virtual wire, and the WAN side of the palo alto is connected to VLAN 10, the LAN side is connected to VLAN11This allows me to quickly move customers in that VLAN in front of or behind the firewall by just changing their access port on the switc...

Panorama/GP questions

- Being in different versions of Panorama (9.0.4) and PaloAlto (8.1.13), is it possible to deploy GlobalProtect clients? It does not work and I wanted to confirm this information- Is it possible to publish the linux version in the global protect portal? In the panorama these versions appear but not in the nodes?

BigPalo by L4 Transporter
  • 3494 Views
  • 4 replies
  • 0 Likes

GlobalProtect Windows Client Persistent Breaks

Hi!We have on ongoing issue with Windows users trying to use the Globalprotect client (up to 5.0.3 now) resulting in up to 30% of the clients persistently breaking with a driver issue[0] which has gone on long enough that we're considering using another VPN gateway. Yes it's been raised (nearly a year ago now).Some questions :-a) Are others seei...

Does changing GlobalProtect VPN to Always On require reinstalling?

I have about a hundred users remote but they don't always need to VPN. However depending on how long WFH goes, I may need them to VPN for things like WSUS windows updates.Rather than assume everyone will follow instructions to connect to VPN (I still will), is there a way to force their connection to always connect, even if our current setup req...

Change Global Protect Config when users are connected

Hi Guys, We have global protect deployed. Portal and Gateway are the same firewall. Now if I do any changes on the Gateway, are those changes immediately effective for the connected users as well?Is there any "profile" that is being pushed to clients/GP agent and if yes, when is it pushed? Are the changes immediately synced? Thanks!

Globalprotect: gateways or satellites?

I'd like to setup a GP environment with a single portal, but two different locations (gateways?) where clients can connect. The documentation talks of gateways and satellites. I'm uncertain of the differences and when you would choose one or the other.Can someone clarify? Thanks.

Global Protect fails after some time

GlobalProtect fails mid way after connecting, remote sessions are opened and then suddenly everything stops working. On checking route table though it seems routes get removed. We have tried installing latest version global protect version 5.0 or 5.1. Host system is Windows 10 Home edition

raji_toor by L4 Transporter
  • 2462 Views
  • 1 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels