General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Upgrade to 11.1 from 10.1.11-h5

Hello PaloAlto users!

 

I have to upgrade my PA-820 from 10.1.11-h5 to 11.1 due new features needed. I have purchased my Palo Alto from ebay and is not licensed.

 

I have downloaded the image 11.1 but it´s necesary to update the content version to ac

...

Jlsierra_0-1709672963590.png
Jlsierra_1-1709673065218.png
Jlsierra_2-1709673116881.png
Jlsierra by L1 Bithead
  • 944 Views
  • 2 replies
  • 0 Likes

Resolved! LACP What is the interface color when a specific port is down?

Dear Team,

 

LACP is set as shown below.

AE group: ae2
Members:          Bndl Rx state       Mux state  Sel state
  ethernet1/13    yes  Current        Tx_Rx      Selected
  ethernet1/14    yes  Current        Tx_Rx      Selected
  ethernet1/15    no   D

...

KyungjunCHOE_2-1709533638410.png

Authentication error

users in one the gateway facing the error `please click the button below to relaunch authentication` while try to connect VPN .

How to filter routes being exported to BGP neighbor?

We are currently redistributing all OSPF routes to our BGP neighbor without any filtering.  We wish to exclude certain prefixes from BGP advertisement. I need an assistance in configuring the filter for this purpose. 

 

Q1. Is it going to be working

...

JasonKu_0-1709226190520.png
JasonKu_2-1709226301733.png
JasonKu_3-1709226491336.png
Jason.Ku by L0 Member
  • 713 Views
  • 1 replies
  • 0 Likes

Palo alto GP with azure SAML

Hi, I was reading about the integration of Palo Alto GP with Azure SAML authentication.

My globalprotect is using port 4433 to access instead of the default 443.

Hence, I'm wondering what to configure for the identifier, a reply URL, and a sign-on UR

...

Kevin-Ng by L1 Bithead
  • 621 Views
  • 1 replies
  • 0 Likes

Commit Fail Phase1 sslvpn

hey

 

i am gtting commit fail on phase1 abort, and it looks like the SSL VPN proccess how can i troubleshoot it ? 

 

show management-clients

Client PRI State Progress
-------------------------------------------------------------------------
routed 30 P1-abo

...

minow by L4 Transporter
  • 11985 Views
  • 11 replies
  • 0 Likes

Resolved! Questions about EDL

Hello,

I have a firewall rule on the Internet Firewall list this

 

Source: Palo Alto Networks - High risk IP addresses - Palo Alto Networks - Known malicious IP addresses

Destination Any

Service Any

Action: drop

 

So if an ip inside the two EDL try t

...

Resolved! Panorama warning messages for EDLs with no certificate

I have several EDLs that were intentional configured to not use a certificate profile.

 

Is there a work around to hide the Panorama warning messages stating "External Dynamic List <edl> is configured with no certificate profile. Please select a cert

...

L2 trunks between 3 Cisco switches

THis was working in vwire just fine with two vwires.
1/1 to 1/3 vwire 1
1/5 to 1/6 vwire 2

Now we want to go to Layer 2, here is the configuration. I am only adding L2 sub interfaces to the firewall. 
1st trunk:
--CISCO SW1 TRUNKED INTERFACE ALLOWING ONL

...

tshooter by L2 Linker
  • 506 Views
  • 1 replies
  • 0 Likes

Resolved! Cortex XDR Agent DownGrade

hi Community,

Is there any way to downgrade the Cortex Agent from 8.3 to 8.2 via Console and as we cannot turn off Auto Upgrade isn't autoupgrade conflict with Downgrade 

 

Yayati by L0 Member
  • 997 Views
  • 1 replies
  • 0 Likes
  • 23725 Posts
  • 104 Subscriptions
Top Liked Authors
Labels