General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1837 Views
  • 0 replies
  • 0 Likes

Resolved! Security Policy Search Results

We have a 3020 firewall with version 8.0.10 and need to allow a new server access to resources in other zones. An existing server, 10.100.100.10 already has this access, so I need to mimic the access of this server.

 

In Objects\Addresses there is an e

...

Analyzing Email Traffic on Palo Alto

We have our in house mail server which is behind the Palo Alto, all incoming and outgoing email traffic go through it. Can we analyze the email traffic and get following information?

 

Sender

Recipient 

Attachment File name

Attachment File Type

Email Subje

...

HA Data Link Ethernet vs IP

Hi,

 

When I configure HA for data link I use Ethernet when devices are directly connected to each other, but sometimes in the field I see people using IP for transport but the devices are directly connected to each other. Why are they doing this? Ther

...

junior_r by L3 Networker
  • 8065 Views
  • 6 replies
  • 0 Likes

Customer Experience (CX) Day on LIVEcommunity

October 1st is Customer Experience (CX) Day, and Palo Alto Networks is celebrating you, our customer! Join us in this celebration.

 

Tells us:  

- What great customer experience means to you. 

OR

- About a LIVEcommunity member or Palo Alto Networks e

...

CX-Day 2019 LIVEcommunity (1).png
reaper by Cyber Elite
  • 4143 Views
  • 3 replies
  • 3 Likes

VPN problem

Hi
i have a problem. i have configured vpn ikev2 ipsec. When test vpn with CLI command( test vpn ipsec tunnel [name]) vpn gets up. But when other side try to connect, vpn do not get up.

Also when i check system logs this logs appears:
'IKE phase-1 negot

...

URAN_725 by L1 Bithead
  • 4153 Views
  • 3 replies
  • 0 Likes

PXE boot

I'm trying to get pxe boot to work through the firewall. Now options 66 and 67 are available in palos dhcp server but I can't get it to work anyway.

 

Besdies normal dhcp options I've setup option 66 with IP and ip-address and option 67 with ASCII an

...

Meraki Implementation

Curious if anyone has Meraki and a PAN setup.  We are trying to to link our remote sites to the data center.  At the remotes the meraki is the router then in the data center we have the meraki behind the the PA.  We can establish a VPN tunnel and pin

...

Global Protect not connecting to gateway

I have a Pa220 and its using DHCP for untrust interface. I have followed about 40 documents and knowledgebases and still have no success with connecting my iphone to the palo via global protect. I am using self generated cert. I have collected the lo

...

Resolved! How to Stop DNS traffic logs going to Log collector

We have M500 and syslog server getting all the traffic logs.

What we want is do not send DNS logs to M500 only to Syslog server.

Need to know how can i config this ?

 

Currently we have single log forwarding profile.

 

 

MP18 by Cyber Elite
  • 6560 Views
  • 3 replies
  • 0 Likes

Resolved! Is there a way to force Applications Seen to Update?

I'm running PanOS 9.0.3-h3 and I'm creating some new Security Policies.

I like that I can see what applications are getting hit in the rule. 

My only problem is that while I'm testing, I seem to have to wait overnight for the Applications Seen to get u

...

All traffic through LSVPN (or LSVPN route metric)

I want all satellites to route all traffic through VPN tunnel when it's available. In GP gateway if I leave Access Routes emtpy or if I publish 0.0.0.0/0 to the satellite I get the default route with metric 100 on the atellite. But that means the sta

...

santonic by L6 Presenter
  • 7842 Views
  • 6 replies
  • 0 Likes

Policy Optimizer Apps

Is it possible to add the apps seen by the policy optimizer to an application group already created? I feel like this should be easy, but I can't seem to be able to do it. It appears you can create new app groups but cant add to current? Am I missing

...

  • 24250 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels