General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4107 Views
  • 0 replies
  • 0 Likes

Advanced objet search in the policies panel

Hello, One of our customers moved from Checkpoint to PA and he's complaining about advanced search in the security rulebase.For example, he would like to search for and IP (source) with is used in an Address object or in an Address Group Object and with destination port 22 (example).If I put, for example, 192.168.1.0 in the search bar, the syste...

licenselu by L4 Transporter
  • 3798 Views
  • 3 replies
  • 0 Likes

Resolved! I can't open support cases

When I try to follow the article about support cases I get stuck on step 2 / 3https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClNSCA0I can see one of my firewalls and his serial, but I can't click on it.How can I solve it?I also tryed the support on the phone but I can't get to speak to anyone.Kindest Regards

Problem with GlobalProtect

Hello all!I have a problem with GlobalProtect. It happens that if GlobalProtect is connected to the gateway and the carrier connecton of the client goes down (3G, wi-fi, etc.) the GlobalProtect itself does not advice of the disconnection and it does not tear down the VPN, so the user must stop and start manually the connectionIs there something ...

Resolved! Does Panorama send info to PA to send logs to which Log collector??

We have Panorama M100 and 2 M500 for logs.Under PAnorama GUI -- log collectors i have configured which PA will send logs to which log collector. Firewall does not have this info. Need to know how does Firewall know which log collector it needs to send logs to?is ths info comes from Panorama to firewall? if yes then how and when?

MP18 by Cyber Elite
  • 7549 Views
  • 9 replies
  • 0 Likes

SCOM port 1270 detected as SSL application

Hi, While I checking on my firewall, I found that SCOM port 1270 detected under SSL application.Can someone help me with this? Is there anything that I am missing or Is it issue from Palo Alto?Thanks in advance.

EDL Refresh fails but certificate is valid

I've got our wildcard certificate on our minemeld server, which shows up perfectly fine when i go to the web UI through Opera to manage the server. But, when I try to use the minemeld feeds in EDLs on my 5220s, I get an error that says certificate validation failed. Is it an issue with wildcard certificates, or is there something else I sho...

Resolved! Any pitfalls upgrading VM-100 to 9.0?

Hi, I have a VM-100 running the latest v8 under VMWare ESX 6.7. Should I expect any problems upgrading to v9? I have browsed the docs and found no red lights, but I just want to ask here in case I have overlooked something... regards Tor

PAN-OS recommendation

Dear All, Currently PA 5200 is running with PA-OS-8.0.13 and we are facing issues with the number of objects that we could create. Release notes of 9.0 provides a promising object count increase. Kindly provide a stable version of 9.0 and PoA to upgrade from 8.0 to the recommended version. https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-new-...

Resolved! Is higher latency normal on a VM compared to hardware?

Hi All At home I run a PA-200, but I've been toying with the idea of moving to a VM (both lab-licences).. But whilst the VM runs WebUI runs 100x quicker, MGT interface is fine, but on the actual FW interface it has a much higher ping latency. When pinging a FW interface on my PA-200, I get average of 1-2ms response times, but on the VM, I see an...

projxit by L1 Bithead
  • 6442 Views
  • 1 replies
  • 0 Likes

Resolved! when doing commit from PA i get error

i am doing temp override on the PA so that managenet interface ip permitted list is as per panorama but when i do validcommit etails:vsys1Error: No PROXY_OPTOUT notify page defined in vsys1.

MP18 by Cyber Elite
  • 15086 Views
  • 12 replies
  • 0 Likes

Resolved! QoS Guaranteed Bandwidth question

We have a couple of tenants in our building and I was wanting to insure a guaranteed bandwidth of our 100 Mbs circuit for us regardless of what the tenants are doing. I was looking at something like this: I set all of our traffic to class 1 and all tenant traffic to class 2; create a QoS profile that sets class 1 with guaranteed bandwidth to 75 ...

Bvance by L2 Linker
  • 8349 Views
  • 4 replies
  • 0 Likes

querying regarding URL filtering profile

I had created a custom URL category (for specific tiny url let say *.tinyurl.com/) & in the url filtering profile I had opted for option to continue for this custom url category to make user acknowledge the action & log the event. but the caveat here is I see the user being going to the palo alto continue page but sometimes he can seamle...

Sanssj by L2 Linker
  • 3903 Views
  • 2 replies
  • 0 Likes

Resolved! Dataplane Limitations - When to use a router for intrazone vlan routing?

Hi,This is a question about when to use the firewall or a seperate core router to route traffic vor vlans in the same zone (intrazone).As this traffic does not need to be inspected, it should only be using the network layer and cpu of the dataplane. I tend to use the FW (simpler, more secure) but at which point would you recommend using a seper...

Scruffy by L1 Bithead
  • 5260 Views
  • 6 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels