General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2852 Views
  • 0 replies
  • 0 Likes

HA1-B down on 3200 series

I've been doing some tinkering with a pair of 3220s and am noticing that in the GUI it's reporting HA1 Backup is down in the HA widget of the dashboard if I use the HA1-B port.  HA1-A is up, and if I use the management port for HA1-Backup, it comes u

...

dan731028 by L3 Networker
  • 11826 Views
  • 6 replies
  • 0 Likes

Resolved! Adding a sub-interface to an exsiting Security Zone

Hi,

 

I have a Palo Alto with existing security zones managed via Panorama. I need to add an existing sub-interface to an existing security zone which has been done on Panorama and committed. However, after logging into the firewall node directly the s

...

vvadia by L1 Bithead
  • 7701 Views
  • 6 replies
  • 0 Likes

move subinterfaces to new aggreagate group

Hey guys,

I got a pair of PA-3020s (8.0.7) and 2 ae's with a lof of subinterfaces. Each subinterface does have a gateway, security zone and vlan tag.

Out of permonance issues, I want to create a third ae with two new physical interfaces.

Then, I want to

...

MPI-AE by L4 Transporter
  • 3058 Views
  • 3 replies
  • 0 Likes

Wrong user from access log

Hello!

 

The local user Administrator is logged in on the desktop and he is not allowed to access the internet. But he can access.

When checking in Monitor on PA220, I noticed that another user appears in the Source User column and not the Administrator

...

How to view searched words using custom reports

Hello Community!

 

I´m trying to see the searched words made with different search engines. For this I wanna create custom reports and look for terms on the URL log database with the help of different query builders. I´m following the idea of this doc:

...

Carracido by L3 Networker
  • 3293 Views
  • 3 replies
  • 0 Likes

general question to aggregate group

Hi all!
When I create an aggregate group, there is the possibility to enable LACP.

But when I don't enable LACP, which ethernet standard is enabled then?

Does the firewall utilize bandwith over all links as in LACP?

Thank you

MPI-AE by L4 Transporter
  • 2533 Views
  • 2 replies
  • 0 Likes

Resolved! Testing Sinkhole DNS

Hello, all

 

I am testing Anti-Spyware DNS sinkhole. I set:

 

I make policy with this profile.

 

For most DNS-names in category “Malware” и “Command and Control” (https://threatvault.paloaltonetworks.com/) i see nslookup answer, for example:

 

Addresses: ::1

...

Sinkhole.png
aaobuhov by L2 Linker
  • 2843 Views
  • 2 replies
  • 0 Likes

Pan-OS Upgrade path question

I know this is a frequent question, but I've not seen one particular aspect of it. I need to upgrade from 7.0.1 to 7.1.x (the latest).  Am I correct that I would do the following:

 

  • Download and install 7.0.19 <- this is my main question- can I go dire
...

bwade by L0 Member
  • 2134 Views
  • 1 replies
  • 0 Likes

GlobalProtect with MFA Dual Authentication

We have set up a GP slit tunnel we allow SSO using LDAP and Certificate based authentication this allows access to everything in the corporate network. However for applications we have specifically listed by service and destination we have created ad

...

  • 24283 Posts
  • 120 Subscriptions
Top Solution Authors
Top Liked Authors
Labels