General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1898 Views
  • 0 replies
  • 0 Likes

BGP peering on loopbacks, struggle is real

I am really struggling with this. I have been at it for hours. I have two Palo Altos in standalone mode both forwarding traffic.I have connected to each palo cisco 9500s and Cisco 9300s. These are not fully meshed. So i know that I am going to need R

...

Resolved! Default Action for Revoked Certificates via OCSP and CRL

Hi All,

When you enable OCSP and CRL revocation checking on the firewall, if a certificate is revoked the default behavior is to block the connection.  Is there any way to change that behavior so that maybe the revoked log is written in the system log

...

dan731028 by L3 Networker
  • 4493 Views
  • 2 replies
  • 0 Likes

Global Protect Agent GW Login Lifetime

We are having an issue where our internal GP agent is authenticating to both of our internal gateways normally, but after the period set for "Login Lifetime" - the firewall is clearing the IP to username mapping, even though the GP agent still shows

...

Sec101 by L4 Transporter
  • 15055 Views
  • 2 replies
  • 0 Likes

how to distribute one internet line to multiple services

in my current scenario, I have 4 interfaces configured with different Public IP address and each interface linked to the different router and each interface have different services (Internet Email1, Email2, VPN)

 

 

Our Plan to get a new line from a new

...

MFayez by L2 Linker
  • 5931 Views
  • 11 replies
  • 0 Likes

Resolved! Recommended PanOS in 8.0.x

HI, we are hitting a critical bug in our PA5020 about memory leak. Current version is 8.0.8. So we are planning to upgrade. What PanOS version do you recommend us? more "stable"?

BigPalo by L4 Transporter
  • 5139 Views
  • 4 replies
  • 0 Likes

SMTP Inbound Decryption

I am trying to setup inbound decryption for SMTP (TLS) using the default Decryption Profile.

What destination IP address do I use in the Decryption Policy: public pre-NAT or private post-NAT?

 

Regards,

Han.

 

Han.Valk by L2 Linker
  • 3113 Views
  • 2 replies
  • 0 Likes

Interface shutting down

I have a VM-100 running 8.0.12.  I inherated this configuration from the previous network engineer.  I am quite new to PAN-OS and have found that an interface that faces the Internet is shutting down.  

I can cycle the port in the GUI, and able to pin

...

2 ISP, 1 production & 1 Guest

Question for the community.

I have a site with 2 ISP, 1 circuit is a crappy 10mb circuit I want to use for just guest wireless.

 

Is it possible to run 2 ISP on a PA220 and keep the NAT and security seperate? 

 

dualisp.png

HA2 goes down when Enabling Session Synchronization

Hello Palo Alto Community,

I'm deploying a HA Pair of Palo Alto VM Serie (hosted on my infrastructure) and I'm being blocked by a situation I don't understand.

  • HA1 is UP and the two member can see each other. I'm using the management interface as HA1 i
...

Resolved! OSPF in a Active/Passive Firewall setup

Hi,


I have a lab with a active/passive Palo Alto firewall setup. I have had a look at the Palo Guide for setting up OSPF at:

 

https://knowledgebase.paloaltonetworks.com/servlet/fileField?entityId=ka10g000000D8HwAAK&field=Attachment_1__Body__s

 

From this

...

vvadia by L1 Bithead
  • 7986 Views
  • 2 replies
  • 0 Likes
  • 24257 Posts
  • 117 Subscriptions
Top Liked Authors
Labels