General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4111 Views
  • 0 replies
  • 0 Likes

Need help on this my palo alto PA-1410

Hi everyone, Appreciate you can help me as I cannot access the url : www.mot.gov.my . All rules has been configured but still cannot access that website. I already checked with the owner of the website that there is no blocking.

PA-220 with multiple switch connections with same vlan

Hello, I have a setup like this to provide some redundancy to a PA-220 firewall but have some questions about how to best configure. What I have tried doing is setting PA-220 Port 1 and 2 to be Layer 2 with a common VLAN vlan.200 with the IP as shown. This has worked fine. Port 1 is connected to a Cisco 9200 configured as an access port fo...

LYTOT_0-1736994719525.png
LYT-OT by L1 Bithead
  • 3239 Views
  • 3 replies
  • 0 Likes

Issue displaying globalprotect window with certain monitor configurations under linux

There seems to be an issue displaying the globalprotect window in Linux with certain monitor configurations. I have a small primary monitor and a large secondary monitor, placed like this: The globalprotect window tries to display in the bottom right corner of the total monitor area and is offscreen to the right of monitor 1 and completely inacc...

image.jpg
image.jpg
bungle by L0 Member
  • 949 Views
  • 1 replies
  • 0 Likes

Resolved! TLS handshake error when using my IPsec tunnel

I have an IPsec tunnel set up between two PAs. Everything showing green and I can ping between the two networks. My problem is that whenever I try to access a Docker container over TLS through the tunnel I receive a TLS handshake error, connection reset by peer. I have tried a variety of fixes including changing the Docker network settings and l...

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 1281 Views
  • 0 replies
  • 0 Likes

Resolved! NAT Question

I have a question about the PA NATing. I have 8 different internal zones within my test lab. Each zone is either assigned to a physical interface or a sub-interface. Would I need a separate NAT rule for each zone to be routed to my egress port (WAN) port? Looking to keep everything neat and simple. Lastly, if that NAT traffic is coming back int...

Resolved! Issue to send security policy forwarding log by email

Hello everyone, I have created a security policy that logs only IPv6 traffic, and I added a log forwarding profile to ensure I receive an email whenever the policy is triggered. However, the issue is that when I send IPv6 packets, I don’t receive any emails. My email server profile is working fine. When I test the connection, I receive the t...

PA 445 ZTP

Hi Team, I am planning to configure the new firewall using ZTP and also planning to manage this firewall completely via SCM. Add a ZTP Firewall to Strata Cloud Manager Following the above link to add teh ZTP FW to SCM. > Need to know where will i get the Claim Key? Here it asks for both Serial No and Claim Key. > If i activate the licenses...

Resolved! Is it possible to generate "email" alert when any user reaches the defined bandwidth threshold?

Hi All,Is it possible to generate "email" alert when any user reaches the defined bandwidth threshold?Eg: Defined bandwidth threshold is 1 MB, if any user reach or exceeds the defined bandwidth threshold then the device should trigger a email alert to administrator. Note : I don't want to restrict any user to 1MB, but need onle alert if he excee...

Gururaj by L4 Transporter
  • 3875 Views
  • 2 replies
  • 0 Likes

CVE-2024-3393 - Any tips on using Panorama in CLI mode SET output?

CVE-2024-3393 - Any tips on using Panorama in CLI mode SET output?I have 8 anti-spyware profiles across about 10 HA Pairs - 2 predefined and 6 custom. All in "Shared", not a DG. Any references that would be able to be in a template are likely in a template.It seems to me that until I can get my departments to give me upgrade windows I should s...

Traffic on udp/3478 (STUN) is been classified as 'unknown-udp' for MS-Teams app

Hello, Most of our users are running Teams in a Office 365 on Windows laptops, from a network perspective it is just a connection on different ports to random hosts within 52.0.0.0/8 subnet. The problem we have is with udp/3478 port, some portion of it is STUN, some been identified as MS-TEAMS-AUDIO-VIDEO with latest app-ids. As mentioned i...

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels