General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4246 Views
  • 0 replies
  • 0 Likes

RADIUS Authentication Still Prompts for Password Change

I have a stand-alone system which is utilizing two Palo Alto 220 Firewalls. As part of this system, I have RADIUS policies configured on a Windows server to provide domain-admin access to the device. On one PA220 I am able to login with my domain credentials and access the device without issue. On the other PA220 I am able to login with domain c...

TAP Mode

Hi, I want to know if there is a way to forward all switch traffic to single Destination port of Palo alto. So far I can find on switch side you can make a singel port source and destination the PA port. Just want to know if we can monitor all ports on the switch? Thanks

umar00o by L2 Linker
  • 3448 Views
  • 3 replies
  • 0 Likes

Shared Gateway and Panorama

Hello Community,I have Panorama that managed cluster of PA-5000 with some Virtual System, I use one Device Group for one VSYS.Now I need to configure the Shared Gateway.It seems that i can manage the NAT Policy related to the Shared Group only into WebUI of device and not from Panorama.Could you confirm me I cannot managed it via Panorama? Thank...

Run operational command using SSH

I need to automate run particular operational commands , which were not available in the API. I tried running them using SSH to the Panorama CLI, but it fails. Also Paramiko Python script does not seem to work and not sure what are we doing wrong. Can you please share any experience exectuing SSH commands?

batd2 by L4 Transporter
  • 5807 Views
  • 3 replies
  • 0 Likes

Statistics for data transfer on a Palo Alto.

Team,I am looking to gather some reports which will tell me how much traffic has been passed over a specific VPN tunnel on a Palo Alto.Is that possible?The preferred stats are over a month or a 15 day period. If yes, can you guide me on how can I create these reports? Thanks!!!

nson2139 by L3 Networker
  • 3403 Views
  • 1 replies
  • 0 Likes

unable to reach peer end public IP via vpn tunnel

HI Team I have created S2S VPN tunnel between palo alto and cyberoam firewall. Tunnel is up but the traffic is not flow. Under Cyberoam firewall there is one server with public IP 144.21.X.X.From palo alto we need to reach the peer end public IP 144.21.X.X via the vpn tunnel.but whenever I tried to reach the peer end public IP 144.21.X.X its go...

Resolved! Panorama annyoing refreshs

Hi community, I experienced the following behavior with PAN-OS 9.0.4 on Panorama VM:When editing a policy and accepting the change (doesn't matter if policy editor or dragging and drop) it takes a moment, the change to get "active"/written to candidate config - so panorama freezes for a short moment, then you can work again.BUT: I got another re...

Chacko42 by L4 Transporter
  • 4587 Views
  • 2 replies
  • 0 Likes

JawinaBug Command and Control Traffic Detection(85599)

Could you guys please throw some light on "JawinaBug Command and Control Traffic Detection(85599)", there is no information related to could you guys please throw some light on "JawinaBug Command and Control Traffic Detection(85599)", there is no information related to JawinaBug at allWhat triggers this signature, what are the IOCs?, Please help...

Lalitb by L0 Member
  • 2835 Views
  • 2 replies
  • 0 Likes

Identifying iPad App Traffic

Greetings I have a PA-220 Running Version 8.1.9-h4 Current problem is that some teachers use iPads and some of them use an app called SEESAW.The app loads fine on the iPad but seem to be blocked from the cloud resources it should have access to.Using it on Mobile data everything loads fine.Using it through the Firewall I eventually get a message...

an issue occure with asymmetric route

HI; I have PaloAlto FW and I have 3 ISPs and I'm using default route ( statically ) with this value ISP1 distance 5 ( Interface X), ISP2 distance 9 and ISP3 distance 15 ( Interface Y) and I've server with NAT IP using ISP3 subnet.the server is reachable from global internet but the users who are using ISP3 they are unable to reach it after some ...

Block Tubemate app (Youtube Downloader)

Hello guys, Is there any way to block TubeMate application which is used for downloading videos from youtube?It also uses youtube base application. NOTE - I want to keep YouTube open. Please suggest ! Thank you in advance. Mayur Sutare

Resolved! Global protect firewall behavior after reaching max users

Hello Community, Looking for more details on firewall behavior after reaching max-users limit on Global protect. For example, Assume a portal with 4 gateways in different regions. If one of the gateway(Lets assume PA-3020) which has capacity of 1024 concurrent connections, reached its maximum limit. what will happen if user 1025 tries to reach ...

SuryaR by L3 Networker
  • 10316 Views
  • 4 replies
  • 0 Likes

captive portal questions

hello,i need to authenticate users who are using workstations which are not in my windows domain.captive portal with local users is working. but if i create users in my windows domain and try to authenticate them with an ldap profile, it's not working.captive portal authenticate them (command "show user ip-user-mapping all" shows my users) but r...

reachability issue to PA FW interface vlan

there is high-available Paloalto fw PAN-OS 9.0.3-h3 connected to the same switch witch aggregate ethernet interface. interface VLANs created and on the firewall with ip address 10.1.1.1/24 to work as GW for some servers and other interface VLAN as GW for users with ip address 10.1.2.1/24. all thing was working fine and a change was required to m...

  • 24359 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels