General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4436 Views
  • 0 replies
  • 0 Likes

Resolved! Routing to/from the Management Interface

I have two new PA-455-5G firewalls running 11.2.3. These have 8 ethernet interfaces, two management ports, and two console ports. I have configured the management ports as 10.0.0.1 & .2 respectively on FW1& 2. These will be in A/P HA, so I want to be able to manage the firewalls individually via these management ports. I do NOT want to u...

R.Rehart by L0 Member
  • 2385 Views
  • 2 replies
  • 0 Likes

Resolved! HA traffic "HSCI" over Switch

Hi Can i use cisco switch as layer 2 between two PA-3410 for HA ports "HSCI" . as i need to connect the HA ports between two building using the dark fiber. Appreciate your support Thanks

mmarie by L1 Bithead
  • 2170 Views
  • 3 replies
  • 0 Likes

URL List not filtering correctly

Hello everyone, I have created a URL List in Objects - URL Categories to allow only specific URLs and added it to Policy Rule in URL Category section However, I noticed that all traffic and is being allowed on this particular rule, seems like the URL List is being ignored I have other rules configured the same way (with URL Lists) and all works ...

Palo Alto Support - real deal please

Hi, We're trying to understand the real options for support features Customer Support Plan - Palo Alto Networks We're currently running multiple FW's in HA mode and we subscribe to premium support. We're thinking of down grading to standard support however it's not clear what the restrictions are. Note we're not interested in the HW replacem...

smelias by L1 Bithead
  • 1171 Views
  • 1 replies
  • 0 Likes

Resolved! PANOS SDWAN VS CLOUDGENIX

Hello , I have a query . When PANOS can do all SDWAN FUNCTIONS, WHAT IS THE ADVANTAGE OF CLOUGENIX ION . .EVEN FOR BRANCHES ,PANOS SMALL BRANCH MODEL CAN PARTICIPATE IN SASE OR SDWAN , SO WHAT IS CLOUDGENIX USP ?

Resolved! Global protect warning message upon commit

Hi All, A client recently updated to PAN OS 10.1.2 and is now receiving the below warning upon commit. 2021-09-19 12:18:46.350 +1000 client sslvpn reported warning: Portal config 'GP_VPN': Authentication Override and Config Seletcion Criteria -> Device Checks/Custom Checks are both configured, Authentication Override will be disabled.(Module...

BenPrice_0-1632382640904.png
BenPrice_2-1632382763240.png
Ben-Price by L4 Transporter
  • 4485 Views
  • 4 replies
  • 0 Likes

Layer 3 Sub-Interface Question

All, I have recently set up a test lab with a PA440. In the lab I have created a WAN and LAN zone from two different physical interfaces. In addition, I have created a sub-Interface from the physical ethernet port 1/3. This is what the ethernet port 1/3 looks like: Ethernet 1/3 (Physical Port) - Sub-Interface Eth1/3.25 ~ L3 (IP = 1...

QOS for SIP Questions

I have tried configuring QOS for SIP and Teams calling but it doesn't seem to be working right. I can see the policy is detecting the applications correctly and assigning it to class 1 but it isn't prioritizing the traffic. My SBC is in the DMZ which is one interface and my users are on a separate interface and they both share one internet conne...

Youtube in QoS

Hi everyone!I want to use youtube with QoS.I want to limit class2 to 50mb.But the actual data amount that works is 140mb.Did I set it wrong? If you have any good ideas, please let me know.

1_3.png
1_2.png
1_1.png
danudan by L0 Member
  • 703 Views
  • 1 replies
  • 0 Likes

PCNSE - Instructor-Led Courses - study guide

Dear all,I noticed that when accessing the Instructor-Led Courses section, only tests are available, but the actual courses seem to be missing. Could you please assist me in locating the full courses or provide guidance on where they can be accessed? Any help would be greatly appreciated. Thank you!

PA-VM sysd_construct_sync_importer

We got a customer that runs into this issue recently, it's a known issue (not public) for versions 11.0.0, 10.2.3, 10.2.2-h1 (and also to us 10.2.3-h2, 10.2.2-2). When you run into this, means that there's a hardware issue, please go to TAC in order to find the root cause. VM-series fails to boot on Hyper V with older Intel Xeon CPUs. This is h...

Palo FAIL TO LOGIN.png
Gabeeh by L0 Member
  • 14963 Views
  • 11 replies
  • 3 Likes

Website is not secure, certificate is expired.

Hi everyone, Recently, I've seen an issue where if we use a computer that has its traffic routed through the PAN NGFW, we will get an error message from the website saying "Your connection is not private" with an error code: NET::ERR_CERT_COMMON_NAME_INVALID. This happen to 2 different websites I've seen so far. When we looked at the certifica...

LuckyLau by L1 Bithead
  • 4793 Views
  • 4 replies
  • 0 Likes
  • 24374 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels