General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4225 Views
  • 0 replies
  • 0 Likes

Is there a way to make URL custom allow list take precedence over the block lists

Hi All, I have an issue where we at times we block whole domains but we sometimes need to allow one sub-domain through. We recently put in the Palo Alto content filter and we have found it behaves very differently to our previous content filter which read the custom allow list first before proceeding to the block list. I found this article htt...

Site to Site VPN cannot use any private network range

Hello,I have to set up a Site-to-Site VPN so our users can access some resources on a clients network. As we had here a lab firewall, another Palo Alto, I set up a test between our production and lab. This worked and I was able to connect. For the actual connection to the client, their side is a Cisco ASA. I provided our Peer IP(Public IP) and i...

cheez by L1 Bithead
  • 13111 Views
  • 9 replies
  • 0 Likes

Resolved! Standard License Expired

My Standard License on PA says it expired, however the description on it is same as the last box which says License am I missing something ? License

PALicence.jpeg

Paloalto PA-820 automatic restart

Dear All I have a problem, why suddenly our paloalto PA-820 automatic reboot? This is informations :Software Version8.1.2 Paloalto suddenly restart own self.Logging :1. flow_mgmt: Exited 4 times, must be manually recovered.2. tasks: Exited 1 times, must be manually recovered. 3. supervisor: Exited 1 times, must be manually recovered.4. data_pl...

Resolved! Query on HA failover

Currently our secondary unit is running as Primary.We have upgraded our Secondary (originally Primary) FW and now would like to do the failover so that it becomes Primary.If the failover doesn't work as expected what should be done straightaway to avoid any traffic loss?

Resolved! show session all - command question

Is there any option for the 'show session all' command to act like log tail / stay active? ie - it would be good / useful with troubleshooting to see new sessions that match the filter, to be appended to the existing output, rather than re-running the command and looking for new lines that have appeared. Failing that, some othere CLI way to ach...

Sudden login issues with Minemeld on Ubuntu 14 and can't login under Ubuntu 16

First post was marked as spam for some reason so here goes try #2 with a more specific title Never been able to get a solid ansible deploy to CentOS so stuck with Ubuntu 14 manual install but....after staying up way too late last night trying to figure out why I suddenly could not log into Minemeld, discovering the engine would not start, doin...

hshawn by L4 Transporter
  • 8675 Views
  • 4 replies
  • 0 Likes

Panorama Serial

Hi I have deployed PA-VM-ESX-8.1.2.ova I have powered on the vm and opened the gui. I want to input the serial number that I have been given. - Select PanoramaSetupManagement and edit the General Settings- Enter the Serial Number and click OK- Select CommitCommit to Panorama and Commit your changes However, the Serial Number field isn't shown i...

Does 2 spaces cause issue with group mapping

A securit policy is not getting used because ad group i entered is not matching the policy. On checking the cli i cannot list users in the ad group and get invalid syntax error. show user group name cn=r-emp-it imp adm,ou=role restricted,ou=groups,ou=it ops,dc=cds,dc=abc,dc=comInvalid syntax.

raji_toor by L4 Transporter
  • 5503 Views
  • 4 replies
  • 0 Likes

PBF Rule not being hit

I am experiencing an issue with one of our PAN devices, which is a PA-500 running OS 7.0.19. I have created a new PBF rule to forward traffic from a certain subnet to the inside interface of our edge router. I have several other rules pointing other subnets at the same interface which work fine. The PBF rule did not seem to work (yes it is commi...

Resolved! PAN Firewall LDAP Authentication user handling

Hello Community, so i've got a small "issue"/question regarding PAN Firewalls and LDAP User-Authentication handling.I configured it like it is documented hereMy issue now is that when i add an Administrator, then delete the user from the Active-Directory group, the user is still able to log on even after the firewall refreshes the connection.Am ...

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels