General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1912 Views
  • 0 replies
  • 0 Likes

Next Gen Firewall Public Wifi Browser Warning Issue

We have a policy for public wifi subnet set to

  • ACTION to NO DECRYPT,
  • Set TYPE=ssl-forward-proxy, 
  • DECRYPTION PROFILE = NONE

 When any public device (i.e laptop) try to open a HTTPS website that prohibited by our organization URL policy.

For example HTTPS’

...

Resolved! User-ID Agents

Hi All,

 

I am migrating Palo Altos to a new Palo Alto. I have a question raised by the end customer. They user User-ID agents currently on their servers. Can they use the same Agents on the new Palo Alto - off the top of my head I am not sure?

 

Given t

...

a.jones by L3 Networker
  • 2396 Views
  • 1 replies
  • 0 Likes

Import/export device state

Upgrading a firewall from a single fw to an HA pair. My plan is to do a device export of the current active firewall then import that device state to the two new firewalls then setup HA. Some of the config pieces are from PANORAMA. Any issues with im

...

NAT configuration for interface Tunnel

Hi All,

 

I'm in the middle of migrating a series of PAs from one customer to another. The newer system is on version 8.1.10, the other is on 8.0.14.

 

I have configured the VPNs each with a seperate tunnel, pretty standard stuff. I am creating some spec

...

a.jones by L3 Networker
  • 8800 Views
  • 3 replies
  • 0 Likes

Halloween Reaper challenge time!

#spooktober is in full swing so it's time to have a little fun.

Like every year i have a little challenge for you, to see who can up with the most original, creative or just fun entry

 

This year we're doing picture captions, aka. memes!

 

All partic

...

reaper by Cyber Elite
  • 2469 Views
  • 1 replies
  • 2 Likes

Alert if same traffic log entry is repeated N times..

We have had an instance of a third party having an issue with their system that generated repeated traffic over and over 17K 5 times a second, constantly.

 

I can match the traffic in the log fairly easily. 

 

How can I set up an alert for that to go to

...

PAN-OS 9.0 Released - Stop and Think

Today Palo Alto Network officially released PAN-OS 9.0 to the general public. Some of you may have read posts recently regarding features that have leaked out from the beta, and if you have any questions those of us that have been participating with

...

BPry by Cyber Elite
  • 20131 Views
  • 30 replies
  • 7 Likes

VPN

Hi.

How to configure VPN that if peer ip and proxy id(remote address) is same.

When try connect address traffic don not flow over vpn. When i write route vpn gets down.

URAN_725 by L1 Bithead
  • 2954 Views
  • 2 replies
  • 0 Likes

DNS rewrite matching wrong NAT rule

Think this needs a case.  Open to any suggested workarounds.

 

Connecting two overlapping networks with NAT.  (why? we have to)

192.168.1.0  (zone1) --  PA --  (zone2)  192.168.1.0

policy routing in place, come in zone1 interface go out zone2 and vice ve

...

Source and destination based on NAT using DHCP

Hi,

 

I am setting up a PAN device. On ethernet1/1 I have it set up to DHCP. I then will have a computer connected to ethernet1/9. I want to set up both source and destination based NAT. From what I understand in order to do this I would need to create

...

golariu by L1 Bithead
  • 2096 Views
  • 1 replies
  • 0 Likes
  • 24193 Posts
  • 117 Subscriptions
Top Liked Authors
Labels