General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 219 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 898 Views
  • 0 replies
  • 0 Likes

Global Protect HIP check issues

Have had an open case with support since August 2019 with HIP checks setup for Global Protect.  There are options to allow HIP checks for a large number of different AV vendors and their products.  The issue we have come across is that we have define

...

mattwech by L0 Member
  • 3558 Views
  • 2 replies
  • 0 Likes

VPN between Palo Alto and Check Point firewall

Hello,

I am trying to establish a successful VPN connection between my Palo Alto firewall and a Check Point firewall. The VPN tunnel on the Palo Alto side shows all green for phase 1 and 2, however on the Check Point side I keep getting a failure per

...

HA clarification with a single ISP

Hi Gang,

 

Excuse me for my ignorance. We had firewalls Palo literally thrown at us, and instantaneously put into production (not great!). 

 

I have a pair of Palo's in HA Active/Passive with preemptive enabled on active/primary. These are in turn, patch

...

Bootstrap debugs / logs

Hi,

 

I was wondering when I went through the bootstrap documentation, it mentions that it should display logs of the bootstrap even if successful but in either case, nothing appears on the console, not even a single word about bootstrap... where shoul

...

CLIq by L3 Networker
  • 5352 Views
  • 5 replies
  • 0 Likes

*Urgent* Global Protect Crypto

I have one more query, If I change week encryption to strong encryption in tunnel traffics like Global Protect, IP sec tunnels, will it get affect the clients ??

Of course We have to check the peer side before we change the encryption methods & algori

...

IPSec tunnels - Active/Passive OR Active/Active

Hello Folks,

I'm planning on getting two new Palo Alto firewalls for setting up IPSec tunnels. I think the first tunnel will be a primary tunnel and the second tunnel will be back up. I'm tempted to set up my new firewalls as active/passive HA, to mak

...

Jedi_D by L2 Linker
  • 8292 Views
  • 3 replies
  • 0 Likes

Blacklisting Workstations?

Sorry if this is a dumb question, I'm still a bit new to PA.

 

I've recently had a case where a few workstations cannot access anything beyond the local network. A trace shows that they can reach their default GW, but not the next hop, which is the PA.

...

Luke_R by L2 Linker
  • 3497 Views
  • 4 replies
  • 0 Likes

ntlm exited 4 times must be manually recovered

In our system log of the PAN5250 with PAN OS 8.0.15 i see the following critical message : ntlm exited 4 times must be manually recovered. Does anyone has the same issue or knows how to handle this. I can't find how to manually recover this and where

...

ManuDC by L0 Member
  • 4624 Views
  • 1 replies
  • 1 Likes

TLS syslog to a cloud based SIEM

Running software version  8.1.10 on this PA firewall.


I have the TLS syslog server profile setup in Configuration type logs and that works (getting config logs).
Then I setup this log forwarder profile that has both TLS syslog and UDP syslog server pro

...

ryupapa by L1 Bithead
  • 2931 Views
  • 3 replies
  • 0 Likes

Resolved! Antivirus Profile and Default Actions

I've been looking at our PA, and I've found that it's detecting viruses being delivered in SMTP traffic. The PA is alerting, but taking no further action.

 

Looking at this guide here, I understand that Palo Alto have this set based on the best recomme

...

Luke_R by L2 Linker
  • 2938 Views
  • 2 replies
  • 0 Likes

Resolved! Cannot apply advanced filters for O365 API feeds

I'm trying to filter out unneeded/unnecessary indicators from our O365 feed, but no matter where I apply the filters I am still receiving all of the indicators.

 

For example, I would like to filter on only indicators available over Express Route, an

...

benime by L1 Bithead
  • 12214 Views
  • 6 replies
  • 0 Likes
  • 24016 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels