General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 404 Views
  • 0 replies
  • 2 Likes

Resolved! Trade-in of PaloAlto Policy

My current model of PA will be end-of-support soon.

Thus, anyone could guide me what should we do to replace boxes for the supported model ?

 

Anyone know the policy of trade-in old boxes with supported boxes ?

Thanks in advance.

Vorleak

 

Vorleak by L0 Member
  • 4100 Views
  • 2 replies
  • 0 Likes

PA-3020 SSL Decryption Query

Hi, I have enabled SSL decryption (forward proxy) on our PA-3020 firewall. The certificate is generated from our CSR and is installed on our PA-3020. I have set up a separate forward trust and forward untrust certificate. The forward trust certificat

...

PA Configuration File Format Conversion

My organization creates PA firewall configurations in "set" format as they are easier to read and peer review.  It is very cumbersome to then put this style of configuration into the firewall itself. Is there a program/utility that can convert this t

...

How to get Applications using XML API

I am trying to get a list of applications, or a single application using the XML API. I have tried the following:

 

api/?type=config&action=get&xpath=/config/shared/application

api/?type=config&action=get&xpath=/config/shared/application/entry[@name='ic

...

Resolved! Panorama -Commit

I am new to Panorama.Can someone tell me difference between following  :
Commit -> Pust to Devices
Commit -> Commit and Push.
Is panorama pushes whole running config or just change (e.g add object or policy) ?

Resolved! Minemeld repository - Access denied

Hi,
I'm trying to install minemeld on an ubuntu 14.04 server as outlined here:

https://live.paloaltonetworks.com/t5/MineMeld-Articles/Manually-install-MineMeld-on-Ubuntu-Server-14-04/ta-p/98454

However, the repository seems to be broken. It is returning

...

Management CPU high in 8.1.7 (just upgraded), bug?

Hi,

 

We just upgraded from 8.0.11 to 8.1.7. And in this new version 8.1.7 the CPU MGMT is high (90-100%). I attach the top output:

 

what is "pan_task"? its consuming lot of CPU. Any bug related to this in 8.1.7?

 

show system resources

top - 16:11:02 up 2

...

BigPalo by L4 Transporter
  • 6060 Views
  • 2 replies
  • 0 Likes

How can use loopback for virtual Ip

Hi expert ,

 

I would like to know about that if that possible or not about use loopback interface on palo alto such  as Virtual IP same like VRRP in a scenario don't to downtime  use VIP 

 

Thank you  

IPSEC VPN tunnel monotor showing down

We have configured Tunnel Monitor for IPSEC VPN to monitor IP Peer side server.

 

My query is I dont see ping packet intiated by tunnel interface towards destination IP on firewall logs.

 

Though in show vpn tunnel-flow id I can see monitor packets sent

...

Panorama NAT Translation

I have two datacenters in a region to where multiple offices backhaul to the primary datacenter or may fail over to the secondary datacenter. Both firewall pairs are managed by Panorama. Each datacenter has its on unique external IP range. We break o

...

  • 23695 Posts
  • 110 Subscriptions
Top Solution Authors
Labels