General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4223 Views
  • 0 replies
  • 0 Likes

Issue with PBF rule

Hello, We added a new VDSL Link on port 1/4 and created the PBF rule so that if the primary goes down, it will switch over to the backup. PBF rule is working fine and internet failover works okay. However, customer accesses an internal Server across the client VPN, and when we enable the PBF rule, all access to that server is blocked via the VPN...

Resolved! Palo Alto Updates Issue on Multi VSYS system

Hi All, Hoping an answer can be provided to this multi vsys Palo Alto I am deploying. I enabled the operational status of one of the virtual firewalls I am providing making it fully internet facing with Globalprotect operating on the outside interface. This is operating without issue. When I enabled this VSYS to an operational status I had to ma...

a.jones by L3 Networker
  • 5256 Views
  • 4 replies
  • 0 Likes

Resolved! Error reading last checkpoint

Hi guys I started experiencing this problem in MM 0.9.52, my MM engine was restarting continuously. I tought it was some bug related with this version so, with a little bit of stress, I updated to 0.9.60 (I'm using CentOs), but I still get the same behavior. I even changed the config to the default one (few nodes - spamhaus etc.) but I'm getting...

Screenshot_2019-04-23 Problems with CentOs 7 and MM 0 9 52.png

Resolved! Best practice for OSPF

So i have a Pa850, it has lots of vlans off it. 1 vlan connect to the other OSPF routers. I have OSPF on there. But what about the other interface - is it better to add them as passive OSPF or redistribute connected ?

palo alto website outages

Hi all, Look, I don't want to tell the good people at Palo Alto how to do their jobs, but it would be great if they could push https://knowledgebase.paloaltonetworks.com/ back online. I've been on hold for over an hour for basic information available (or not in this instance) from https://knowledgebase.paloaltonetworks.com/. The big take away fr...

EDL Notifications

Is it possible to create notifications when an EDL is refreshed? My security team would like to know so when they recieve the actual IP lists and URL lists that the PAN is getting updated at the same time. Thank you.

Tecumseh by L0 Member
  • 2661 Views
  • 1 replies
  • 0 Likes

Resolved! Threat Vault and Virus/Win32.WGeneric.aalbaq

Hi all, Curious if anyone can point me toward amplifying info regarding Threat Vault signatures? From what I can tell, these generic signatures usually tend to generate false positives. It's hard to investigate why the alert is getting triggered when the Threat Vault only shows a hash without any context or information regarding why it's deemed ...

Policy to access apple-istore

Hi All, I created a new policy to access apple-appstore for couple for users for testing purpose. Zone - trust to untrut zoneaddress - anyuser - user group nameapplication - apple-appstoreservice - application- default action - allow Looks like the users are not able to send their app to appstore for testing, any action to do that ?service is d...

Resolved! Problems with CentOs 7 and MM 0.9.52

Hi guys, I used to run standalone MM 0.9.50 with CentOS 7, perfectly. Last week I updated MM to 0.9.52 with the help of @lmori and the proccess was completed with success. See ( https://live.paloaltonetworks.com/t5/MineMeld-Discussions/Updating-MineMeld-from-0-9-50-to-the-latest-stable-version/td-p/245365 ). However since the upload my MM doesn'...

Captura_Minemeld_0_9_52_Dashboard.PNG
Captura_Minemeld_0_9_52_Nodes.PNG
Captura_Minemeld_0_9_52_Nodes2.PNG
Captura_Minemeld_0_9_52_Nodes3.PNG

Advanced objet search in the policies panel

Hello, One of our customers moved from Checkpoint to PA and he's complaining about advanced search in the security rulebase.For example, he would like to search for and IP (source) with is used in an Address object or in an Address Group Object and with destination port 22 (example).If I put, for example, 192.168.1.0 in the search bar, the syste...

licenselu by L4 Transporter
  • 3836 Views
  • 3 replies
  • 0 Likes

Resolved! I can't open support cases

When I try to follow the article about support cases I get stuck on step 2 / 3https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClNSCA0I can see one of my firewalls and his serial, but I can't click on it.How can I solve it?I also tryed the support on the phone but I can't get to speak to anyone.Kindest Regards

Problem with GlobalProtect

Hello all!I have a problem with GlobalProtect. It happens that if GlobalProtect is connected to the gateway and the carrier connecton of the client goes down (3G, wi-fi, etc.) the GlobalProtect itself does not advice of the disconnection and it does not tear down the VPN, so the user must stop and start manually the connectionIs there something ...

Resolved! Does Panorama send info to PA to send logs to which Log collector??

We have Panorama M100 and 2 M500 for logs.Under PAnorama GUI -- log collectors i have configured which PA will send logs to which log collector. Firewall does not have this info. Need to know how does Firewall know which log collector it needs to send logs to?is ths info comes from Panorama to firewall? if yes then how and when?

MP18 by Cyber Elite
  • 7642 Views
  • 9 replies
  • 0 Likes
  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels