General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4124 Views
  • 0 replies
  • 0 Likes

Zone protection - Show hops between source & dst.

Hello, I want to see the hops between the source and destination when I do tracert from my PC to an IP.The tracert is shown as completed. I followed the following kb but didn't work: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClfsCAC I disable Zone protection from the Zone initiating the conection(Trust) a few mi...

2019-05-16 16_31_47-C__Windows_system32_cmd.exe.png
upatino by L1 Bithead
  • 3041 Views
  • 1 replies
  • 0 Likes

Traffic is not getting Natted DIPP

We have Single Outbound PAT configured for internet traffic for all internal users.So all users traffic use the same Outbound PAt while going to internet but one traffic is not getting natted with this NAT policy There is no PBF configured, its simple NAT (Outbound PAT DIPP), Security Policy (From trust to untrust).PAN-OS 8.1.6 h2Request to fine...

Automatic email alerts: Sinkhole and security policies

Hi Community, This query is for PAN-OS v8.1.X I am trying to generate an email alert when the firewall sees an (action eq sinkhole) event or when the security policy created to sinkhole an infected host is used. Email Profile(s) have already configured and so has Sinkhole. What is the best way to configure both, the email alert for the (action e...

ash83 by L2 Linker
  • 4375 Views
  • 1 replies
  • 0 Likes

Custom URL category enforcement in URL column

I'm seeing some different behavior from our firewall on 8.0 code. I've got a few rules setup wtih both security URL profiles, and the URL category column. I've got a few custom URL categories made that match certain traffic. What I'm finding is that the second I include a category in the URL column, even if my URL profile has the custom categ...

Sec101 by L4 Transporter
  • 4564 Views
  • 5 replies
  • 0 Likes

Resolved! Server Monitoring Not Connected

Hello, Microsoft AD under Server Monitoring is showing as 'not connected.'We would like to use the PAN-OS Integrated User-ID AgentOutput from debug commands show UserID Debug Log is enabled but nothing is logging. Anyone encountered similar issue?

Resolved! Multiple malicious scans from the same source address - can I block IP automatically

Occasionally, I notice that the firewall has been blocking tens or even hundreds of attempts from a single source address for multiple threats. In a case like this, it seems obvious, for someone looking at the logs, that that source IP should have been temporarily blocked and possibly banned, but that does not happen automatically. We do have...

Cisco ISE and Palo Alto TACACS

Few questions here. Why do you need user local on the PA devices?Why do you need those users local on the ISE box rather then allowing access from AD groups via ISE?If the users are local then password changes are not possible when a user changes their AD password, so how does that work?

Resolved! URL Filtering & Blocked Countries Response page

I have custom URL filtering response page enabled which works; however, I have noticed that when users get this response page, the URL category is correct and is allowed. When further investigating the issue, we found that the URL/Site is blocked by the Blocked Countries policy instead of the URL category Is there a way to include the actual pol...

MikeHamm by L1 Bithead
  • 3012 Views
  • 1 replies
  • 0 Likes

Panorama Device Removal

I had to rebuild Panorama 7 on ESX as for some reason after a power outage the image could not be restored... New installation completed and licensed but I cannot get the firewall 3020 to connect. I have removed the Panorama settings from firewall and re-applied. I have added the serial number to Panorama but the firewall is complaining..... Err...

Mick_Ball by L7 Applicator
  • 4144 Views
  • 4 replies
  • 0 Likes

Resolved! Global Protect - Newly Imaged Laptop, first time login before Windows login

Hello, Been trying to look around about how to do this but not finding anything. So we are moving from AnyConnect to Global Protect. The transition has been fairly smooth but ran into a unique issue yesterday. We have a small number of user's who are remote who can't come into the office and they are getting a new laptop shipped to them. In t...

Global protect

Hi team,How can i extract a detailed report on the list of all Global protect users (VPN users). this report aims to get the date each user was created. this is for audit reasons and i would appreciate if any one has a solution. thanks

Abduba by L0 Member
  • 2728 Views
  • 2 replies
  • 0 Likes

collecting palo alto firewall logs with Graylog 2.5

Dear palo alto community, I collect the palo alto firewall logs with Graylog 2.5.When i make an ssh connection to the fw palo alto with an incorrect password, this ssh connection does not get into the logs on Graylog interface web why ? To configure the syslog profile I followed this linkhttps://knowledgebase.paloaltonetworks.com/KCSArticleDetai...

Ayoub2 by L1 Bithead
  • 11801 Views
  • 9 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels