General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4125 Views
  • 0 replies
  • 0 Likes

Frequent DPD flaps between CGW and AWS

Hi, Frequent flaps between CGW and AWS site-to-site VPN occur and DPD down logs have been seen. Does Palo Alto devices not go well with AWS? Has anyone experienced such a problem? Thank you,

nanashi by L0 Member
  • 692 Views
  • 1 replies
  • 0 Likes

Resolved! Trouble with Asterisk

I would have submitted a TAC case, but the customer support portal is broken and you have to have a TAC case to speak to someone on the support number. Anyway, having issues with using the asterisk when creating a URL object. Our task is to block several websites, directing us to use, for example, *.badwebsite.* Please advise.

Replace with advanced License

Hello Threat Prevention LicenseDNS Security License These two licenses are coming up for EoS on June 16, 2025,Is there any problem in replacing the licenses to Advanced, or is there a little work that needs to be done when replacing the licenses? I'm assuming I can move to Advanced without any problems?

n-tomo by L2 Linker
  • 1841 Views
  • 5 replies
  • 0 Likes

Resolved! PANdora's Box

Anyone else seen this article from HackerNews? Palo Alto Firewalls Found Vulnerable to Secure Boot Bypass and Firmware Exploits I'm being told these are all old vulnerabilities and I shouldn't worry my pretty little head about them. We've a couple of new 1410's on order and I'm wondering what, if anything, I need to do to ensure that I really...

Resolved! Ping management interface

Hi Initial configuration is like the below. why we cannot ping 192.168.8.100 ? i would like to allow the firewall to be ping and accessed via https. Maybe it need to add some command . Anyone can provide some suggestion? Thank you admin@PA-VM> configureadmin@PA-VM# delete deviceconfig system type dhcp-clientadmin@PA-VM #set deviceconfig sys...

Resolved! VLAN Interface is missing configuration options

PA440 Software 11.1.6 when configuring a VLAN interface for ipv6 / static ip, there are no options available like router advertisement or dns support here is the same configuration menu for an ethernet interface is this intended? and if yes, how to set "Managed Configuration" or "Other Configuration" bit fields in router advertiseme...

robertro_1-1737816317136.png
robertro_0-1737816272871.png
robertro by L0 Member
  • 1493 Views
  • 2 replies
  • 0 Likes

Resolved! dns-signature cloud service unavailable

Hello, everyone, we have had this message in the system log for two or three days, is there currently a problem with the Palo Alto Cloud? Does anyone else have this message too? Thank you.

kenanuenal_0-1664544750819.png

VPN Tunnel Flapping

Hello all, We are detecting problems with a VPN Tunnel using IKEv2. The tunnel is a L2L tunnel agains a third party vendor (Sonic Wall) the tunnel works fine on all the aspects, but sometimes the tunnel falls down and we do not why exactly. When the tunnel falls it takes onlpy a few seconds to up the tunnel again. The error that I saw on the log...

AitorGD by L1 Bithead
  • 10015 Views
  • 3 replies
  • 0 Likes

Can i configure ethernet interface for HA "Data-Link"

Hello we have HA "Data-Link" is configured at HSCI port, can i configure Ethernet interface to be a backup for this HA or convert it from HSCI ti Ethernet interface. as i need to connect it through layer-2 port. Appreciate your help Thanks

mmarie by L1 Bithead
  • 790 Views
  • 1 replies
  • 0 Likes

Resolved! Routing to/from the Management Interface

I have two new PA-455-5G firewalls running 11.2.3. These have 8 ethernet interfaces, two management ports, and two console ports. I have configured the management ports as 10.0.0.1 & .2 respectively on FW1& 2. These will be in A/P HA, so I want to be able to manage the firewalls individually via these management ports. I do NOT want to u...

R.Rehart by L0 Member
  • 2143 Views
  • 2 replies
  • 0 Likes

Resolved! HA traffic "HSCI" over Switch

Hi Can i use cisco switch as layer 2 between two PA-3410 for HA ports "HSCI" . as i need to connect the HA ports between two building using the dark fiber. Appreciate your support Thanks

mmarie by L1 Bithead
  • 1961 Views
  • 3 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Liked Authors
Labels