General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4253 Views
  • 0 replies
  • 0 Likes

Resolved! Threat Vault and Virus/Win32.WGeneric.aalbaq

Hi all, Curious if anyone can point me toward amplifying info regarding Threat Vault signatures? From what I can tell, these generic signatures usually tend to generate false positives. It's hard to investigate why the alert is getting triggered when the Threat Vault only shows a hash without any context or information regarding why it's deemed ...

Policy to access apple-istore

Hi All, I created a new policy to access apple-appstore for couple for users for testing purpose. Zone - trust to untrut zoneaddress - anyuser - user group nameapplication - apple-appstoreservice - application- default action - allow Looks like the users are not able to send their app to appstore for testing, any action to do that ?service is d...

Resolved! Problems with CentOs 7 and MM 0.9.52

Hi guys, I used to run standalone MM 0.9.50 with CentOS 7, perfectly. Last week I updated MM to 0.9.52 with the help of @lmori and the proccess was completed with success. See ( https://live.paloaltonetworks.com/t5/MineMeld-Discussions/Updating-MineMeld-from-0-9-50-to-the-latest-stable-version/td-p/245365 ). However since the upload my MM doesn'...

Captura_Minemeld_0_9_52_Dashboard.PNG
Captura_Minemeld_0_9_52_Nodes.PNG
Captura_Minemeld_0_9_52_Nodes2.PNG
Captura_Minemeld_0_9_52_Nodes3.PNG

Advanced objet search in the policies panel

Hello, One of our customers moved from Checkpoint to PA and he's complaining about advanced search in the security rulebase.For example, he would like to search for and IP (source) with is used in an Address object or in an Address Group Object and with destination port 22 (example).If I put, for example, 192.168.1.0 in the search bar, the syste...

licenselu by L4 Transporter
  • 3853 Views
  • 3 replies
  • 0 Likes

Resolved! I can't open support cases

When I try to follow the article about support cases I get stuck on step 2 / 3https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClNSCA0I can see one of my firewalls and his serial, but I can't click on it.How can I solve it?I also tryed the support on the phone but I can't get to speak to anyone.Kindest Regards

Problem with GlobalProtect

Hello all!I have a problem with GlobalProtect. It happens that if GlobalProtect is connected to the gateway and the carrier connecton of the client goes down (3G, wi-fi, etc.) the GlobalProtect itself does not advice of the disconnection and it does not tear down the VPN, so the user must stop and start manually the connectionIs there something ...

Resolved! Does Panorama send info to PA to send logs to which Log collector??

We have Panorama M100 and 2 M500 for logs.Under PAnorama GUI -- log collectors i have configured which PA will send logs to which log collector. Firewall does not have this info. Need to know how does Firewall know which log collector it needs to send logs to?is ths info comes from Panorama to firewall? if yes then how and when?

MP18 by Cyber Elite
  • 7671 Views
  • 9 replies
  • 0 Likes

SCOM port 1270 detected as SSL application

Hi, While I checking on my firewall, I found that SCOM port 1270 detected under SSL application.Can someone help me with this? Is there anything that I am missing or Is it issue from Palo Alto?Thanks in advance.

EDL Refresh fails but certificate is valid

I've got our wildcard certificate on our minemeld server, which shows up perfectly fine when i go to the web UI through Opera to manage the server. But, when I try to use the minemeld feeds in EDLs on my 5220s, I get an error that says certificate validation failed. Is it an issue with wildcard certificates, or is there something else I sho...

Resolved! Any pitfalls upgrading VM-100 to 9.0?

Hi, I have a VM-100 running the latest v8 under VMWare ESX 6.7. Should I expect any problems upgrading to v9? I have browsed the docs and found no red lights, but I just want to ask here in case I have overlooked something... regards Tor

PAN-OS recommendation

Dear All, Currently PA 5200 is running with PA-OS-8.0.13 and we are facing issues with the number of objects that we could create. Release notes of 9.0 provides a promising object count increase. Kindly provide a stable version of 9.0 and PoA to upgrade from 8.0 to the recommended version. https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-new-...

Resolved! Is higher latency normal on a VM compared to hardware?

Hi All At home I run a PA-200, but I've been toying with the idea of moving to a VM (both lab-licences).. But whilst the VM runs WebUI runs 100x quicker, MGT interface is fine, but on the actual FW interface it has a much higher ping latency. When pinging a FW interface on my PA-200, I get average of 1-2ms response times, but on the VM, I see an...

projxit by L1 Bithead
  • 6513 Views
  • 1 replies
  • 0 Likes

Resolved! when doing commit from PA i get error

i am doing temp override on the PA so that managenet interface ip permitted list is as per panorama but when i do validcommit etails:vsys1Error: No PROXY_OPTOUT notify page defined in vsys1.

MP18 by Cyber Elite
  • 15288 Views
  • 12 replies
  • 0 Likes
  • 24362 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels