General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4167 Views
  • 0 replies
  • 0 Likes

Resolved! Download the licenses to PA 3220

What options are there to download the license on a PA3220 replacement of a failed PA 3220 , which cannot connect to the internet, please inform me how to do it thanks

Resolved! Palo Alto Traps Support for SQ1 processor

An error while installing the Palo Alto Traps. The error This installation package is not supported by this processor type, contact your product vendor. As per Palo alto Traps, Agent will support Intel and AMD processor only and I have Processor Microsoft SQ1 @3. 0 GHz, 3.0 GHz How I can install Traps on Mircosoft processor or any other alternat...

Resolved! Deny rules with service application-default

It is not clearly described in documentation and I could not find a complete topic related to it. How does application:any, service:application-default behaves when apply to a “Deny” rule? Presumably it will block the application if application is detected on a default port, but normally deny rules do not have recognised application, because of ...

batd2 by L4 Transporter
  • 7536 Views
  • 3 replies
  • 0 Likes

Resolved! Syslog Custom Log Format

If I use a custom log format for syslog does the new custom format replace the existing default format? So if I want syslog to send before-change-detail and after-change-detail do I have to add every default field to the new custom format so I get default+custom?

IPsec VPN throughput on 3220

Hi Everyone, As per PA-3220 datasheet IPsec throughput can be 2.5Gps.https://www.paloguard.com.au/datasheets/pa-3200-series.pdf The palo in my environment got 1 Gig interface (internet facing) and multiple ipsec tunnels are configured to communicate to different cloud providers without any rate limiting....so question is how to figure out what...

how to create virtual system in gns3

Hello Experts,I am new to palo alto. I have installed palo alto (8.0.0) in gns3 but there is no option of creating virtual system. May i know how to create ? Also could you please let me know from where can i learn palo alto. Is there any document/website ? ThanksNitesh

Resolved! Query on how to to use filtering or search scope

We are using PA-850. We are constantly getting alert: Error for user group count exceeds 1000 threshold. We understand the error is due to hardware limitation of the PA model and it is restricted to 1,000 AD groups. We would like to know how to use filtering or search scope so the Palo Alto device is no looking at the entire AD.

URL filtering does not work with Firefox

I am applying URL Filtering but I notice that with chronium type browsers it applies the blocking, making tests I see that the filters are not being applied when you surf with Firefox.You can even enter XXX pages.What's wrong?I am bringing user groups from AD.

VPN Palo Alto<->Cisco router issue

Hi, We have a VPN between PA and cisco router. THE VPN is UP but we are having a strange behaviour with Phase1 lifetime.WHen the lifetime phase1 expired (24hour), the phase1 goes down in CISCO side, and we need to renegotiate pahse1 in order to get up again. These are the events: 2020-03-02 12:05:13 [INFO]: ====&gt; PHASE-1 SA LIFETIME EXPIRED &...

BigPalo by L4 Transporter
  • 2328 Views
  • 1 replies
  • 0 Likes

Resolved! Minimum supported GlobalProtect version and compatibility

Greetings all, This morning I moved our GlobalProtect from a 4.0.x release to 5.0.7. We're planning on a maintenance tonight to upgrade our firewalls to 9.0.6 and I noticed that there is a minimum supported GlobalProtect version of 4.1 for the 9.0 platform. If I upgrade the firewalls tonight and there are users who still have the older 4.0.x Glo...

jsalmans by L4 Transporter
  • 3582 Views
  • 1 replies
  • 0 Likes

XFF Value 1.1.1.1 when "Strip X-Forwarded-For Header" enabled

Hello, Looking for some help if possible? Trying to set up XFF (PA-3250, 8.1.12), I have tried to set it up following this tutorial:https://live.paloaltonetworks.com/t5/General-Topics/Configuring-XFF-logging-without-a-URL-Filtering-License/td-p/239987 The only part I have not configured is pushing the URL logs to the syslog server.The problem is...

  • 24343 Posts
  • 124 Subscriptions
Top Liked Authors
Labels