General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1909 Views
  • 0 replies
  • 0 Likes

Bandwidth limitation per policy

Hello All,

 

I have filled the local database with users because we do not have an Active Directory, i create a captive portal to enforce the users to do authentication. in the polices i have grouped the users depends on what they should go through net

...

diferente Version PAN 3220

Hi
The new PA3220 device (FW2) has PANOS version 9 installed, but the firewall (FW1) that is operative is on PANOS 8.1.3.
What are the steps to update the FW1 to the actual version of PANOS?

Global Protect Authentication Profile

Hi

 

I have setup Global protect and I want to use it with LDAP Authentication profile. It works fine however when in the auth profile I add a specific AD group so only users in the group allow to connect to VPN it doesn't work. Even sometime with spec

...

umar00o by L2 Linker
  • 2529 Views
  • 2 replies
  • 0 Likes

Resolved! Azure Active Directory IP ranges

Hi all, 

 

I'm trying to use Minemeld to create an EDL that includes only the IP address ranges used by Azure AD.

I've tried a few things, but can't seem to get it to work.

 

My current setup is as follows

 

Miner = cloudIPsWithServiceTags

Processor

...

dpurton by L0 Member
  • 13143 Views
  • 4 replies
  • 0 Likes

Wildfire Public Cloud - email

We’ve recently upgraded our PAN from 8.0.4 to the latest version (8.1.13) successfully.

 

Now the issue is that we’ve been getting an email stating that “registering Wildfire Public Cloud has been successfully” every 20 minutes.

 

Is there a way to make

...

SD-WAN - routing with variables

Anyone been trying to setup SD-WAN routing with template variables? Surely that page in admin guide is completely wrong? Variables should be of type IP address. 

santonic by L6 Presenter
  • 3884 Views
  • 2 replies
  • 0 Likes

Resolved! Download the licenses to PA 3220

What options are there to download the license on a PA3220 replacement of a failed  PA 3220 , which cannot connect to the internet, please inform me how to do it thanks

Resolved! Palo Alto Traps Support for SQ1 processor

An error while installing the Palo Alto Traps. The error This installation package is not supported by this processor type, contact your product vendor.

 

As per Palo alto Traps, Agent will support Intel and AMD processor only and I have Processor Micr

...

Resolved! Deny rules with service application-default

It is not clearly described in documentation and I could not find a complete topic related to it. How does application:any, service:application-default behaves when apply to a “Deny” rule?

 

Presumably it will block the application if application is de

...

batd2 by L4 Transporter
  • 6965 Views
  • 3 replies
  • 0 Likes

Resolved! Syslog Custom Log Format

If I use a custom log format for syslog does the new custom format replace the existing default format?

 

So if I want syslog to send before-change-detail and after-change-detail do I have to add every default field to the new custom format so I get de

...

Direct Sinkhole traffic to a specific IP on 80/443

Hi Guys,

 

Is it possible to direct inbound sinkhole traffic to a custom IP on ports 80/443?

I am trying to see if I am able to redirect traffic hitting our "geolocation block" rule and redirect it to a block page.

 

Thanks.

NevinN by L0 Member
  • 2113 Views
  • 1 replies
  • 0 Likes

IPsec VPN throughput on 3220

Hi Everyone, 

 

As per PA-3220 datasheet IPsec throughput can be 2.5Gps.

https://www.paloguard.com.au/datasheets/pa-3200-series.pdf

 

The palo in my environment got  1 Gig interface (internet facing) and multiple ipsec tunnels are configured to communicat

...

how to create virtual system in gns3

Hello Experts,

I am new to palo alto. I have installed palo alto (8.0.0) in gns3 but there is no option of creating virtual system. May i know how to create ? Also could you please let me know from where can i learn palo alto. Is there any document/we

...

  • 24257 Posts
  • 117 Subscriptions
Top Liked Authors
Labels