General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4119 Views
  • 0 replies
  • 0 Likes

Resolved! CLI command for Palo Alto to set a DHCP Reservation for the management port? Anyone?

Anyone know the command for this? Also we made the mistake of setting our Palo Alto to an IP address that is already taken so when we tried to access the GUI via the web we realized the mistake..... So how do we change the IP address to something else? Do we need to reset our Palo Alto? Or is there a PuTTY CLI command that we can easily change t...

stoyota by L1 Bithead
  • 17914 Views
  • 10 replies
  • 0 Likes

i don't connect to vpn PANGP

::edited by @reaper :: I don't connect to vpn MY LOG (T7692) 10/01/19 16:24:03:969 Debug(4273): DLSA, encounter an route defined in config, do not remove it(T7692) 10/01/19 16:24:03:969 Debug(4263): DLSA, check our route (des=10.1.77.82, mask=255.255.255.255)(T7692) 10/01/19 16:24:03:969 Debug(4273): DLSA, encounter an route defined in c...

Panorama VM OS Disk size modified

Today whilst we were investigating the process of upgrading the disk size for our Panorama Legacy Mode VM we have accidentally re-configured the disk size from 81gb (as per the template import original size) to 150gb. This was of course different to the process as outlined by Palo Alto documentation. Within VMWARE VCSA we are unable to change th...

Question about VMI and error found

Hi everybody! I have a question about this mistake obtained in a PA, I have 1 device 850 but i tried to implement a user-mapping.But the issue is the PA lose connection of my servers (I have 5 servers LDAP) Lose connection random of my servers, I have tried to follow the next Kbs but i still have the issue https://knowledgebase.paloaltonetworks....

Resolved! Minemeld - excluding entries from URL list

Hello, I have setup IPv4 and URL lists for O365 using minemeld for whitelisting. I have noticed that the office365.onenote prototype in minemeld includes www.youtube.com in the url list. How would I go about removing that entry and a few others from the generated list? Thanks,Dan.

Does Palo alto on L2 deployments forward BPDU On RSTP?

I have a PA-850 deployed as layer 2, on this palo i have 3 switches connected trunking 4 same vlans( 30,31,50,51) for each port to the switch, switches are from different vendors so I using 802.1w, RSTP as loop prevention, I know that on PSVT+ of cisco palo alto forwards the BPDU, but using RSTP Im seeing on each switch that is not receiving...

Eddgar0 by L0 Member
  • 4810 Views
  • 1 replies
  • 0 Likes

DHCP Issue

We have 2 VLANS that terminate on a PA-3020 firewall. One VLAN (100) uses DHCP relay and works without any issues. The DHCP relay exists on the firewall for VLAN 100, but this relays to an internal DHCP server on our network. The other VLAN (200) uses the PA-3020 as a DHCP server, but this is not working. The DHCP server for VLAN 200 is hosted...

Resolved! Global Protect client certificate auth Current User Vs Local Computer Store

Having some trouble with a generalized single certificate (wanting to use as part of user/pass authentication) across multiple machines. Wanting to require this certificate be on a machine and the user enter their user/pass combination for authentication to portal/gateway (not user/machine specific cert). Not doing prelogon at this point. ...

Sec101 by L4 Transporter
  • 25215 Views
  • 25 replies
  • 0 Likes

The real meaning of "Config>Revert Changes"

Hi team, While reviewing the EDU 210 book v8.0 page 21 we can read: Revert Changes : revert changes to previous saved configuration However from the help icon in the firewall dashboard, Reverting changes restores the settings to the values of the running configuration. I performed some tests and came to the conclusion that the Revert Changes a...

Microsoft Azure Datacenter IP Ranges

Hi Luigi, One of my customers needs to allow traffic to Microsoft Azure Datacenter IP Ranges for Microsoft Power Bi. Any plans to add a miner for it? The URL source is http://www.microsoft.com/EN-US/DOWNLOAD/confirmation.aspx?id=41653 The file is in XML format I tried to create a new prototype but I couldn't find an XML class. Are you planning...

msabena by L1 Bithead
  • 28123 Views
  • 14 replies
  • 0 Likes

WhatsApp and Minemeld

Hello, It seems that Facebook allows again customer to easily access network requirement for WhatsApp (https://developers.facebook.com/docs/whatsapp/guides/network-requirements/) such as Ports, Protocols and IP Addresses. The IP Addresses are stored in a ZIP file behind an URL. I'm not an expert nor a beginner to develop a miner to exploit t...

Management of a multi-VSYS firewall from Panorama

Hello friends, I have been tasked to deploy a multi-VSYS PA and to manage it from Panorama, honestly this is the first time that I do this so I'm reaching out to you in order to guide me in the most siple way to achieve this. The way I'm planning this is: 1. Enable multi-VSYS funcionality (I guess that by default VSYS1 should be created automati...

Resolved! Minemeld Regex Syntax Issue

Hi Everyone, I am having issues setting up a prototype within Minemeld to pull correctly pull values from an external XML URL feed. The issue is with the indicator regex The data is provided in XML like this: <uri>https://example.com</uri><type>combo</type><pubDate>Wed, Nov 14 2019 03:30:03 UTC</pubDate>&l...

  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels