General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4452 Views
  • 0 replies
  • 0 Likes

captive portal questions

hello,i need to authenticate users who are using workstations which are not in my windows domain.captive portal with local users is working. but if i create users in my windows domain and try to authenticate them with an ldap profile, it's not working.captive portal authenticate them (command "show user ip-user-mapping all" shows my users) but r...

reachability issue to PA FW interface vlan

there is high-available Paloalto fw PAN-OS 9.0.3-h3 connected to the same switch witch aggregate ethernet interface. interface VLANs created and on the firewall with ip address 10.1.1.1/24 to work as GW for some servers and other interface VLAN as GW for users with ip address 10.1.2.1/24. all thing was working fine and a change was required to m...

Resolved! Where does User Credential Detection search?

I have just turned this on and it's coming up with some really useful (and quite scary) alerts but in a few cases, the URL it is flagging up is pretty innocuous and doesn't include anything resembling the user name or password, so what is it matching on? Is it possibly searching cookie content as well? In an example I have followed up, the URL ...

djr by L4 Transporter
  • 4274 Views
  • 2 replies
  • 0 Likes

Resolved! Virtual System Resource allocation

Hi Team, We would like to know how can we allocate the CPU resources for Virtual system (Vsys) on a Firewall. Please share your thoughts !! Awaiting for a response. Thanks in advance !! Best Regards,Sahul Hameed

SahulH by L3 Networker
  • 8247 Views
  • 4 replies
  • 0 Likes

Failover Behaviors

Hi All, Setup: Active-PassivePath Monitoring: enabled, but not configured(nothing under that Path group)Version: 7.1.14 Would an Active firewall change its state to non-functional if both of its HA2/HA-Backup goes down? Related Logs:2019/12/04 09:41:04 critical ha ha2-lin 0 All HA2 links down2019/12/04 09:41:04 high ha session 0 HA Group 1: Ign...

Application Dependency Warnings after 8.1.12 upgrade

Hi all, I just upgraded all the firewalls from 8.1.7 to 8.1.12 to patch some vulnerabilities. After the upgrade, I am suddenly getting a bunch of application dependency warnings which I commit the configuration from Panorama. The configuration hasn't changed. The warnings are legit - but they weren't displayed before. Does anyone know why t...

TruStar IT-ISAC prototype?

Hi, I was wondering if any has been working on a Prototype to integrate IT-ISAC feed from TruStar (https://info.trustar.co/it-isac). As far as I now, this is a traditional TAXII server, not aware if they have an API too. I'll try to get more detailed information on how exactly works in the meantime. EDIT: They seem to support both: STIX ...

MarcelST by L3 Networker
  • 10793 Views
  • 8 replies
  • 0 Likes

Dynamic Updates and Device Registration Failing in GCP. HELP!!!

Ok Gurus, (including @BPry ) I got a need for some help and visibility on this one... please... My FWs are virtualized within a open source (KVM) environment, that was placed into GCP back in June 2019. Somewhere along this week, when I first noticed that I am not getting my Dynamic Updates, cannot retrieve license keys from license server, no...

SteveCantwell_1-1581260677752.png

Log Forwarding to Panorama is not happening from PANW firewall

show logging-status in firewalls -----------------------------------------------------------------------------------------------------------------------------Type Last Log Created Last Log Fwded Last Seq Num Fwded Last Seq Num Acked Total Logs Fwded-------------------------------------------------------------------------------------------------...

Empty "File URL" in "Data filtering"

Hi,I applied the default "basic file blocking" profile to the policy that allows users to access the Internet.In the "Data Filtering" monitor I can see few files being blocked (EXE files for example), but I can't see the full URL of that file (the "File URL" column is all blank). The goal is to understand if the root URL can be white-listed. Cou...

AMoretti by L1 Bithead
  • 4688 Views
  • 4 replies
  • 0 Likes

Resolved! "Error: Failed to connect to User-ID-Agent at x port 5007

we got this email aler from firewall that user id agent failed to connect to x on port 5007when i log on firewall i see user id agent is connected. We are running version 8.0.9 on PA 5050. how can i know the reason for disconnection on the firewall?

MP18 by Cyber Elite
  • 8968 Views
  • 4 replies
  • 0 Likes
  • 24376 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels