General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1691 Views
  • 0 replies
  • 0 Likes

Remote Access on passive node of firewall ha cluster

Hello all,

 

I am currently configuring an HA cluster (active / passive) with the following configuration:

 

Primary (active) box: PA-820
ethernet1 / 1: 1.1.1.1/29 (external interface)
ethernet1 / 2: 192.168.0.1/24 (internal interface)
MGMT: 192.168.50.251/

...

Ipsec Proxy_id configuration issue

Hi Team,

 

 I'm not able to configure two separate proxy id in PA-3020 firewall. If I configure either the tunnel goes down or one of the proxy configured second is not working. 

 

Ipsec tunnel is IKEV2 between sonicwall and PA-3020.

I'm getting error "ik

...

vpn.JPG

Conditional NAT configuration request

Can you please guide me with this scenario and configuration.
 
I have multiple VPN clients who access two servers (A and B)  in DMZ (Outside to DMZ). The server A has evolved and the new replica of the server A now lies on the inside of the Firewall i
...

Resolved! Pushing config from Template stack

We have same template name  say corp 1 and corp 2

 

then we have template stack name dept and add these two templates corp 1 and 2 to this.

 

Now if we push config from template stack to PA will it be pushed from both corp 1 and 2 ???

 

say corp1  has sysl

...

MP18 by Cyber Elite
  • 3434 Views
  • 2 replies
  • 0 Likes

Resolved! Panos 8.1.9

Hi

 

Is this a recommend version to move to, currently on 8.1.5.

 

What about 9.x is it ready ?

Resolved! No deny or drop traffic appear on Panorama

Hi All,

 

We recently add palo alto firewall to the customer as 2nd layer firewall - 2PA820 and 1 Hyper-V panorama.

 

Panorama is in panorama mode and we use it for log collector and management the firewall. 

Now, we have a weird issue that in panorama, w

...

Resolved! DHCP Server and DHCP Relay

2 interfaces with DHCP server configure (interface ip 172.16.13.1) Scope 192.168.12.2-254 and (interface ip 172.16.33.1) scope 192.168.32.2-254
2 interfaces with DHCP relay to 172.16.13.1 and 172.16.33.1
all the interfaces are on the Palo Alto firewall

...

Yevgeni by L1 Bithead
  • 7133 Views
  • 3 replies
  • 0 Likes

Wildfire submission log

I don't understand wildfire work.

I have this example that Firewall had wildfire-virus signature but was created wildfire submission log before wildfire-virus identification

why?

 

wildfire log.png

Packet capture

We have an issue with SIP sessions randomly hang on the firewall. We are trying to do packet capture on the Palo alto firewall. Since the issue is random, so we need to leave the packet capture on until it happens next time.

 

It seems the firewall aut

...

PA-5220 HA Configuration

Please can someone shed some light on the following issues which we are facing for PA-5220 HA Configuration:

  1. We can see port lights on HSCI port but not on HA-1/HA-2 ports even when they are connected,. Should they be enabled somewhere because in GUI
...

Connection between two DMZ zone with MPLS

Hello,

We have a server on the DMZ zone and another server in the other DMZ site.

We need to allow traffics between the two DMZ zones with the MPLS connection.

I don’t know how can I put this configuration on my PA firewall or maybe I should contact my

...

ra7oub4 by L2 Linker
  • 2901 Views
  • 1 replies
  • 0 Likes
  • 24216 Posts
  • 117 Subscriptions
Top Liked Authors
Labels