General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2166 Views
  • 0 replies
  • 0 Likes

Resolved! Download the licenses to PA 3220

What options are there to download the license on a PA3220 replacement of a failed  PA 3220 , which cannot connect to the internet, please inform me how to do it thanks

Resolved! Palo Alto Traps Support for SQ1 processor

An error while installing the Palo Alto Traps. The error This installation package is not supported by this processor type, contact your product vendor.

 

As per Palo alto Traps, Agent will support Intel and AMD processor only and I have Processor Micr

...

Resolved! Deny rules with service application-default

It is not clearly described in documentation and I could not find a complete topic related to it. How does application:any, service:application-default behaves when apply to a “Deny” rule?

 

Presumably it will block the application if application is de

...

batd2 by L4 Transporter
  • 7095 Views
  • 3 replies
  • 0 Likes

Resolved! Syslog Custom Log Format

If I use a custom log format for syslog does the new custom format replace the existing default format?

 

So if I want syslog to send before-change-detail and after-change-detail do I have to add every default field to the new custom format so I get de

...

Direct Sinkhole traffic to a specific IP on 80/443

Hi Guys,

 

Is it possible to direct inbound sinkhole traffic to a custom IP on ports 80/443?

I am trying to see if I am able to redirect traffic hitting our "geolocation block" rule and redirect it to a block page.

 

Thanks.

NevinN by L0 Member
  • 2145 Views
  • 1 replies
  • 0 Likes

IPsec VPN throughput on 3220

Hi Everyone, 

 

As per PA-3220 datasheet IPsec throughput can be 2.5Gps.

https://www.paloguard.com.au/datasheets/pa-3200-series.pdf

 

The palo in my environment got  1 Gig interface (internet facing) and multiple ipsec tunnels are configured to communicat

...

how to create virtual system in gns3

Hello Experts,

I am new to palo alto. I have installed palo alto (8.0.0) in gns3 but there is no option of creating virtual system. May i know how to create ? Also could you please let me know from where can i learn palo alto. Is there any document/we

...

Resolved! Query on how to to use filtering or search scope

We are using PA-850.

 

We are constantly getting alert: Error for user group count exceeds 1000 threshold.

 

We understand the error is due to hardware limitation of the PA model and it is restricted to 1,000 AD groups.
 
We would like to know how to use f
...

URL filtering does not work with Firefox

I am applying URL Filtering but I notice that with chronium type browsers it applies the blocking, making tests I see that the filters are not being applied when you surf with Firefox.

You can even enter XXX pages.

What's wrong?

I am bringing user group

...

VPN Palo Alto<->Cisco router issue

Hi,

 

We have a VPN between PA and cisco router. THE VPN is UP but we are having a strange behaviour with Phase1 lifetime.

WHen the lifetime phase1 expired (24hour), the phase1 goes down in CISCO side, and we need to renegotiate pahse1 in order to get u

...

BigPalo by L4 Transporter
  • 2226 Views
  • 1 replies
  • 0 Likes

Resolved! Minimum supported GlobalProtect version and compatibility

Greetings all,

 

This morning I moved our GlobalProtect from a 4.0.x release to 5.0.7. We're planning on a maintenance tonight to upgrade our firewalls to 9.0.6 and I noticed that there is a minimum supported GlobalProtect version of 4.1 for the 9.0 pl

...

jsalmans by L4 Transporter
  • 3395 Views
  • 1 replies
  • 0 Likes
  • 24248 Posts
  • 119 Subscriptions
Top Liked Authors
Labels