General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4119 Views
  • 0 replies
  • 0 Likes

Resolved! User Agent Empty

Hello, I just enabled HTTP Header Logging for my URL Filtering Profile, but the only User Agent recognized is Mozilla. I am missing Chrome, for example. There is no User-ID Agent used. kind regards

Password expired date doesn't HA sync

Hi I have a problem about Password expired date HA sync.I have four pair of Paloalto firewallPA-5020(7.1.8)PA-3020(7.1.10)PA-2050(7.1.10)*2I config password expired in Device->Setup->Management->Minimum Password Complexity->Required Password Change PeriodAfter the first password expired date, I change my password and find out a probl...

Artsun by L0 Member
  • 2346 Views
  • 1 replies
  • 0 Likes

Teams Online with “Direct Routing” Topology AppID?

Using ExpressRoute today for O365 but moving to (Direct Internet Access) DIA to reduce backhauling enterpirse traffic. Obtained the requirements from MS, they are extensive. I don't see a specific AppID for Teams Direct Routing. Anyone doing this today & any plans for AppID creation?

bdf.png
MS Teams.jpg

Nodes not loading

Good moorning all, I have an issue with nodes. After some hours tab nodes say loading, however it will not load. #chassis if everything ok say "2", however, when nodes stop loading it says 1. Hope to find some help. Best Regards,Tiago Santos

MineMeld custom processor / output node question ?

Hi all, I have a customer that is asking if we ingest thier ThreatConnect feed into MM, could a custom processor / output node be built that sends destination IP address,port 192.168.0.11,43 and then they would like this PUSHED from the output node to another system for ingestion ? I've seen the standard IPv4 processor and output parame...

MineMeld - SSO via SAML, OAUTH, etc.

Has anyone explored creating a separate "SsoController" for the UI? I'm thinking it could run in parallel to the basic auth system, which would still be used for API access (and cases where SSO was broken).

Help needed

Hello, i cant install. after starting GlobalProtect64.msi, only the following message appears

global_protect.JPG

Certificate can not be deleted

Hi, Im having a weird issue in Palo Alto. First of all, we dont have vsys configured but in the confgi we can see the field <vsys> and many config in it.Basically whn we run a commit we receive a warning about "certificate duplicate". We go to devices-> certificates and we can only see one certificate with that CN. But if we check the ....

BigPalo by L4 Transporter
  • 10432 Views
  • 3 replies
  • 1 Likes

Resolved! Renew SSL Certificate

Hello, Can someone please provide link/instructions for renewing expiring Panorama SSL certificate with a .pfx certificate? Also, please provide the instructions for the Palo Alto devices as well if they also require SSL certificates. Thanks in advance.

Upgrade PanOS on PA-220-OSS

For an upgrade of our small branch offices we have ordered 11 PA-220's and 11 PA-220 On-Site Spares. Before we send them around the globe, the planning was to upgrade all the devices to the latest software version (8.0.4).The PA-220's didn't have any problems after we registred them in the portal. Before with our PA-200-OSS devices it was possib...

mtijhoff by L1 Bithead
  • 4153 Views
  • 4 replies
  • 0 Likes

Resolved! HA Pair Dashboard Resource Information Widget Session Count

I have a pair of PA-4020's in HA active/passive. I just did a commit (which went fine, except the synchronization failed and I had to push the config to the passive peer). I then looked at the passive and the information in the Resource Information widget on the Dashboard is a little suspicious. Again, this is immediately after a successful c...

bhelman by L2 Linker
  • 6810 Views
  • 6 replies
  • 0 Likes

Ipsec proxy Tunnel issue with multiple tunnels

HI Team, I have configure Ipsec between PA and Cisco ASA, IPSEC is up but not traffic is passing. During the troubleshooting I have found for the proxy ID's configure in palo alto for some of the proxy id's only encapulation packet paloalto is sending and there is no decapusulation packet increasing for the proxy tunnel. But in the same Ipsec t...

Aruba Wireless Authentication User-IP Mapping Question

Hi, I have an Aruba Instant Cluster with an SSID set up to user a radius server to authenticate users. The cluster controller is configured to send syslog data to a Paloalto User Agent running on a Windows server. I've had this set up for a time but am now moving in to a updated OS (Windows 2016) and updated UA (8.0.10-7). My question revolves a...

Dan by L1 Bithead
  • 13232 Views
  • 9 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels