General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4132 Views
  • 0 replies
  • 0 Likes

Resolved! NTP not in sync

our NTP is not working properly We already manually restarted the NTP process but still problem persists It is coming out as no sync/rejected It's a VM series firewall on Linux System. We found an article online to disable Synchronize guest time with host when it is on VMware ESXihttps://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA1...

Resolved! Frequent "Failed to check Antivirus content upgrade" messages

Hi all, I have been used to getting the occasional "Failed to check Antivirus content upgrade info due to generic communication error" from Panorama or various firewalls. They haven't been a problem. For about a week now, the frequency of these errors has increased and I'm finding that firewalls aren't getting updates. Has anyone else notice ...

Resolved! "Interzone-Default" rule different config on one firewall

Hi all, I just noticed something strange. I have seven firewalls, and one one of them, the default configuration of the "Interzone-default" rule is different. The default Log Setting action for the rule is "Log at Session End," and I had to override the rule to clear this box. On all of my other firewalls, this box is cleared by default. Is ...

Monitoring Minemeld

Hi Is there a way to monitor minemeld, we have two instances that have lots of feeds and it often falls over and I cant log in. The only way to recover is to do a hard reboot via the vmware console. The server is pingable when this happens.

Bleeky by L0 Member
  • 3316 Views
  • 1 replies
  • 0 Likes

Resolved! Is it safe to allow SSH from internet to DMZ?

We have a server in our DMZ that is allowing from the internet the SSH application via our Palo Alto firewall. The server in the DMZ is very well locked down and the application on the server that facilitates the SSH session is a highly rated 3rd party application that allows vendors to connect to servers in your network. I've read and heard how...

roma by L2 Linker
  • 8381 Views
  • 3 replies
  • 0 Likes

Resolved! GlobalProtect and DUO SAML causing multiple login windows

I am having an issue where, when trying to build out DUO SAML 2FA for GlobalProtect, I get multiple login prompt windows for DUO, and none ever authenticate through and allow me to connect. I've gone through the youtube video from DUO on how to set it up, but it still always continues to send multiple DUO saml prompts and I cannot connect. Has a...

PA 7xxx Hardware specs

Good Day, The PA-7000 datasheet states that we could have a total of 17000 security zones and a PA-7000-20GQXM-NPC can have 4000 security zones per card. If we install a total of 6 PA-7000-20GQXM-NPC into a PA7050 chassis would we be able to have 24000 security zones or only 17000 as advertised in the datasheet? If we cannot then please can you ...

Lance by L2 Linker
  • 2456 Views
  • 1 replies
  • 0 Likes

Change hostname panorama

Hello ; One of our customer is having a requirement to change the host name of Panorama ( Standalone) The firewalls are integrated using the IP address of Panorama . Will there be any impact or what are the steps to be performed to change the hostname of Panorama?

PA Migration

Hi ; One of our customer is Migrating all the vlans which are currently on PA 3020 ( Acting as L3) to another firewall in their DC PA 3060 .There are around 15 vlans which are directly connected networks on PA 3020 . So we will be extending those vlans to DC and make the subinterfaces on DC PA 3060 / Shut down the subinterfaces on PA 3020 and m...

Video conf webex

Hello , we have got one issue . While we dial from webex internal to outside webex number : sometimes the webex connection created ; sometimes black screen and sometimes no connection created. Got below error on webex The far end system does not support the requested channel type . The security policy is 10.1.1.1 to any any port The NAT is H...

FTP and rtp-base session end reason resources-unavailable after upgrade PANOS from 8.1.7 to 9.0.5

Hi, We have recently upgraded our 5250 from PANOS 8.1.7 to 9.0.5. And FTP started to have slowed down. After checking traffic log, there were some FTP session ends with resources-unavailable. It's about every 10 sessions will have one with resources-unavailable. Also, there were some rtp-base sessions have the same session end reason. It's impac...

Champion by L0 Member
  • 3112 Views
  • 1 replies
  • 0 Likes

Resolved! PA820 high availability configuration

Hello, I'm needing some clarification on one aspect of deploying a 2nd redundant PA820 in high availability mode. I currently have my 2nd 820 deployed with the management interface configured. My first question is. When setting up my 2nd PA i discovered that I only have 10gb sfp's for interfaces that I'm matching on my current PA. The quest...

danoman2 by L3 Networker
  • 3435 Views
  • 2 replies
  • 0 Likes
  • 24337 Posts
  • 124 Subscriptions
Labels