General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! multi vsys security policy with ANY zone

I am testing multi vsys configurations in my lab and noticed that I am unable to use a source/destination zone of "any" in the device group security policy associated with vsys2.  The default vsys1 accepts "any" zone.  When I attempt to commit/valida

...

Resolved! SQL Cluster Through PA Firewall

We have Palo Alto firewalls with version 8.0 and need to allow SQL Cluster synchronization from one zone to another. The servers are Windows 2016 with MS SQL 2016. I'm not a SQL expert but tasked with a firewall rule between these clusters. I appreci

...

tacacs

Hi,

 

I am using tac_plus linux server . 

 

user = larry {

        login = PAM

        member = admin

}

 

The above  will support ? .As I know tacacs using pap or chap . In that case If can I use  login = file /etc /password Or PAM in the server side configur

...

simsim by L4 Transporter
  • 2066 Views
  • 0 replies
  • 0 Likes

6.1.3 update issue: Threat database handler failed

Hey all-

I tried updating a test box to 6.1.3 and encountered the error in the title. Per other threads, I tried manually downloading the latest content version and installing but it resulted in an error during install.

Has anyone else encountered thi

...

SDorsey by L4 Transporter
  • 5164 Views
  • 3 replies
  • 0 Likes

Panorama pushed zone not applied to subinterface

Its a new firewall, with 2 interfaces in AE, zone configured and pushed through panorama template.

When configuring L3 sub-interface for this AE interface, i can configure ip, vr but the security zone would not get applied to it.

Both firewall and pano

...

raji_toor by L4 Transporter
  • 11003 Views
  • 6 replies
  • 1 Likes

GlobalProtect RSA Authenticate integration

Has anyone done this?  I tried following this guide (RSA SECURID® ACCESS Implementation Guide Palo Alto Networks Next Gen Firewall 8.0), but it's not very good. 

 

Basically after I enter my username and password for the client I'd like to get a push n

...

Shawverr by L3 Networker
  • 1642 Views
  • 0 replies
  • 0 Likes

Minemeld Crashing

Hello,

 

I'm have recently started to try to utilize a few different feeds and as such have been trying to get Minemeld to process the feeds. I'm using the MISP extensions as well as CIF and TAXII prototypes to pull in these feeds. I noticed though e

...

pwebber by L2 Linker
  • 2204 Views
  • 0 replies
  • 0 Likes

show objects registered-ip all

What does the below mean:

received from user-id agent  #: persistent

 

 

I'm finding that some addresses are registered to a tag that I don't believe I've created, - a "Palo-URL-and not entirely sure where it came from.... however I'm reading that a rest

...

Sec101 by L4 Transporter
  • 2604 Views
  • 2 replies
  • 0 Likes

Group mapping settings not listing AD groups in GUI

Hi, 

 

I am trying to configure user-id based authentication in Palo Alto 5220 (Pan OS 9.0.2). I have integrated Palo Alto with AD using LDAP profile. I am not able to add the AD groups in the "Group Include" list as they are not being listed in the GU

...

MGRashmi by L2 Linker
  • 7994 Views
  • 4 replies
  • 1 Likes

Resolved! SFP Compatibility

Hi everyone, Good day. I have a query regarding the compatibility between a PA-3020 management port (ethernet) connected through an ethernet cable to a Cisco switch with SFP port. A transceiver is in place at the switch end for plugging the ethernet

...

  • 23698 Posts
  • 105 Subscriptions
Top Solution Authors
Top Liked Authors
Labels