Resolved! When Dynamic Updates Version 8634-7663 is downloaded, commit does not work.
Hello all,I have downloaded Dynamic update version 8634-7663, but the commit function does not work.Is there any bug about Dynamic Updates Version 8634-7663Thanks,
Hello all,I have downloaded Dynamic update version 8634-7663, but the commit function does not work.Is there any bug about Dynamic Updates Version 8634-7663Thanks,
CVE-2024-3393 - Any tips on using Panorama in CLI mode SET output?I have 8 anti-spyware profiles across about 10 HA Pairs - 2 predefined and 6 custom. All in "Shared", not a DG. Any references that would be able to be in a template are likely in a template.It seems to me that until I can get my departments to give me upgrade windows I should s...
Hello, Most of our users are running Teams in a Office 365 on Windows laptops, from a network perspective it is just a connection on different ports to random hosts within 52.0.0.0/8 subnet. The problem we have is with udp/3478 port, some portion of it is STUN, some been identified as MS-TEAMS-AUDIO-VIDEO with latest app-ids. As mentioned i...
Hello, We have updated 10.2.6-h3 to 10.2.8-h3 earlier and recently to 10.2.10-h9 but in both times we had to do rollback to 10.2.6-h3 because our websites stopped working. Everything else seemed to work except inbound traffic to these applications. Traffic totally stopped. Not even one hit in traffic log after update. Have you seen anything ...
One of the more useful features in troubleshooting on the PIX/ASA (which we used until recently) is the packet tracer, which allows us to enter source/destination IP/port, etc and check to see if a given connection is allowed or blocked, and by which rule. Is there an equivalent feature in the PA units?
I am unable to access the firewall through both the GUI and CLI modes, but the internet is functioning properly. The firewall gateway is located at 192.168.0.1, and it is reachable via ping.
Hi if a admin user doesn't login for some time is it possible for the password to just expire ? Or could the account just automatically become locked out ? Is this such a thing ?
Dear Community i have 2-PA configured as HA and need to be redundant for ISP,so i have interface from ISP-A and another one from ISP-B, and from internal service i have VM server that needs only one IP statically work with NAT and 2-Vsys,and using static route for routing, my question is how I can make some change so I can make redundant for th...
Hi We have a doubt about the inclusion of CVEs in the “Vulnerability Protection” profiles. Currently [CVE-2025-0282][CVE-2025-0283] are not included in the list of signatures. Is it possible to request Palo Alto to include them and is there a procedure? Regards
Hi All, We onboarded the 1 pair of Palo Alto firewalls into panorama. It is successfully onboard. New Template stack pushed successfully to firewall. But the device group was failed with “Error: Number of address group(x) exceeds platform capacity(xx)”. Based on Palo Alto solution is to disable "Share Unused Address and Service Objects with De...
Hello Palo Alto LiveCommunity, I’m currently working on a task where I need to create a custom BIOC (Behavioral Indicator of Compromise) and add it to a restriction profile to block FTP command lines. Specifically, I want to prevent FTP-related commands from being executed by monitoring and restricting certain patterns. I also need help with...
Hello, In my customer support portal, I can't find the VM version for PAN-OS. Is this related to my license, or did Palo Alto remove it? Thank you! Best regards,Murillo Castiho
I am having issue with webservice stopped i tried to restart it is getting stopped GUI mode is not working only CLI is working
hi guys, I searched through and it looks like it's an know issue that speedtest.net is not correctly identified by app-id I use app -default setting on the policy The policy cannot really see speedtest.net's traffic and identifies the traffic as ssl, speedtest uses customer port tcp 8080 which is obviously not part of ssl app id defined...
I recently updated to 11.1.5-h1 on one of my firewalls and the software area updated to show the base versions and previous preferred versions we were running but I am not able to see that I am actually on the 11.1.5-h1 version. I assume it isn't listed since it isn't preferred but then how do I know for sure what version I am running? Do I need...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

