General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4106 Views
  • 0 replies
  • 0 Likes

Resolved! File blocking Profile on File Sharing Applications

Hello GuysWe have a security policy which goes with application & service any any to the internet. (that's another topic 😉 ) We want to block specific file types for downloading (.exe as an example). In the File blocking Profile we defined applications to any, configured the needed file types and set the action download to block. When we te...

Globalprotect Client - Reset configuration

Hi Community, I'm looking for an alternative and faster way to reset the GlobalProtect client config on a windows endpoint without reinstalling it.I know, that there are a few locations, where a config is cached:- win registry local machine and current user- install directory- %appdata$\local But if I delete all cached config there, the client s...

Chacko42 by L4 Transporter
  • 16417 Views
  • 2 replies
  • 0 Likes

Configure Global protect

I have setup VM series firewall and backend server. I need to configure global protect from palo alto web view I follow this docs and also I have AWS Elastic IP but I am confused with how I can configure AWS EIP.According to step 1 I created interface with AWS EIP but Its not working. Could any one help me to setup Remote Access VPN with Two-Fac...

PAN-DB URL Filtering - WEB ADs wrong classification!? - google domain

Hi, We have just switched from Brightcloud DB to PAN-DB database, in the first few days everything was ok, but we have just noticed a problem with PAN URL Filtering and WEB Ads category, domain doubleclick.net (google Ad domain that is used on most sites) is categorized as Business and Economy??? In our security policy we block Web Ads category...

rvsky124 by L0 Member
  • 7210 Views
  • 7 replies
  • 0 Likes

Issues with dynamic updates

Hi Community We are having problems when we are trying to download updates ,some error are showing AV Updates are not installingApplications and threats downloaded but not installWildFire are not downloaded Some suggestions please ?

fail.png
larry2019 by L1 Bithead
  • 11764 Views
  • 11 replies
  • 0 Likes

HA1 Backup link went down root cause analysis

HI Team, I have issue in Palo alto firewall 3260 where HA1 backup link went down. Eventhough there is no production impact i'm seeing this issue happened without any cable change or any activity. This is due to ping failure for heart beat , But I want to know what caused this ping failure issue. I have already running PANOS 8.1.4-h2 which says r...

PA-500 registration

Hi there,I am completely new on this platform, to start learning this firewall I got myself a used PA-500 from the online market.I would like to register the device so that I can downloads updates unfortunately, I have got the device serial number but not the "Sales Order Number or Customer Id". What can I do the register the firewall and downl...

bngala by L1 Bithead
  • 6218 Views
  • 6 replies
  • 0 Likes

No anti-virus response page for SSL

I have SSL decryption setup and working. When I go to eicar.org, the http test returns my response page. The https test doesn't return any response page; although I can see in the threat log that it was properly denied. The browser just spins waiting for something to return.I've attached a snippet from the log.Thanks,Todd

Resolved! Question About HA Failover (Require Assistance On Urgent Basis)

Hi Team,Can anyone provide your valuable suggestion here please? As per the below diagram, we have a active|passive HA setup both active & passive devices are connected in different switches. My query is if a active firewall uplink port went down, Does failover will happen or not?, My understanding is if the Failover takes place only ...

Nashik IPS Diagram.jpg

Can everything besides DCs be on 2019?

I know Server 2019 isn't supported yet on Domain Controllers for User-ID, but is there any other type of server that Palo needs access to that can't be upgraded? A team is asking if they can upgrade DFSR to 2019

Strange DNS issue for users

Hi All, Any idea on this one? I have some wireless testing underway which seemed to be going without issue. All of a sudden, any browsing to .co.uk domains stopped working, followed by .com domains failing as well. A short while ago, .co.uk domains started working again but sporadically. If I change the rule permitting the dns traffic from eithe...

a.jones by L3 Networker
  • 3236 Views
  • 3 replies
  • 0 Likes

Suppress GP notification

We have upgraded our GP Client to version 5.0.1-9Since then we are getting notification window in bottom right which keeps on trying to connect while the device is on corporate network. We need to click on the GP icon to minimize the notification however we get the notification again on next restart. Our System tray setting 'show-system-tray-not...

Resolved! Custom Report

We deployed our 5520 recently between our LAN and MPLS connections and the reports from Panorama are great but I'd like to be able to create a custom SAAS report with specific source - destination traffic excluded from the report. Is this possible and if so how do I start building the report? Thanks Jon

JonHill by L1 Bithead
  • 3907 Views
  • 1 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels