General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Admin Roles - Read Only

I am trying to create a admin role on the PA device and select things in the webUI to be read only. When I check these items I get enable and disable options but not the read only option icon option? Is there something I am missing here?

Resolved! Getting this from Vendor device eventid eq ike-recv-p1-delete

After Phase 1 success as Responder in PA  I am getting   below event id 

 

( description contains 'IKE protocol notification message received: INITIAL-CONTACT (24578).' )

 

and ( eventid eq ipsec-key-expire )

 

eventid eq ike-recv-p1-delete

description cont

...

MP18 by Cyber Elite
  • 8527 Views
  • 7 replies
  • 0 Likes

Resolved! show vpn ike-sa gateway Corp

when i run above command it says

 

Show IKEv1 IKE SA: Total 6 gateways found. 1 ike sa found.

 

Show IKEv1 phase2 SA: Total 6 gateways found. 65 ike sa found.

 

What does above number tell us ?

MP18 by Cyber Elite
  • 3231 Views
  • 4 replies
  • 0 Likes

Resolved! Every few mins in system logs eventid eq ike-nego-p2-succ

 

We have IPSEC tunnel to vendor every few mins in system logs i see

 

eventid eq ike-nego-p2-succ

 

and ( description contains 'IKE phase-2 negotiation is succeeded as initiator, quick mode. Established SA: 193.x.x.x.[500]-174.112.x.x[500] message id:0x8

...

MP18 by Cyber Elite
  • 4137 Views
  • 9 replies
  • 0 Likes

Resolved! Tunnel went down while PA was responder

Seems PA was responder and tunnel went down today at 9.29.22  MST

below are logs

 

 

We were responder so we should know the reason for tunnel going down

 

72%2019-05-10 09:28:16.772 -0600 [PNTF]: { 14: }: notification message 36136:R-U-THERE, doi=1 proto_

...

MP18 by Cyber Elite
  • 5077 Views
  • 7 replies
  • 0 Likes

Resolved! Content / Database Versions Do Not Match

Every week I recieve these emails while the PAN firewalls do their weekly updates, is there a way to not recieve these e-mails, the time stamps are exactly the same from each device, as they are upgrading at the exact same time. Is there a setting in

...

Resolved! How to...(VPN globalprotect)

Hello guys,

 

I'm trying to do something and i'm not really sure if it's possible. Let's get into...

 

I have an url that is for example: "www.myweb.com". Our partner is hosting that web and with his firewall is just allowing us the access through our IP

...

IPsec VPN with AH generates core files

Hi team, 

 

I have two VM-50 v9.01, one in SiteA and another in SiteB. I set up an IPsec tunnel between them with: IKE-v1 : phase1 (aggressive mode)  and phase2 (quick mode) with ESP.  it works fine and I'am able to ping from a vlan in SiteA to another

...

Resolved! cfg export + master key hash

Dear Community,

 

I have found this side note in an article regarding the master key on the firewall.

 

"Without the Master Key, when a configuration is exported from a firewall, the password is hashed and can be copied."

 

Basically its the exact answer o

...

Rboehme by L2 Linker
  • 3091 Views
  • 1 replies
  • 0 Likes
  • 23707 Posts
  • 103 Subscriptions
Top Solution Authors
Top Liked Authors
Labels