General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 591 Views
  • 0 replies
  • 0 Likes

Shutdown Clustered/HA FWs

Is there any documentation on how to properly shutdown a clustered/HA FW pair and then restore connectivinty power verifying proper function once power is restored?

GMasanz by L0 Member
  • 3519 Views
  • 3 replies
  • 0 Likes

Dynamic TCP port APP query

Hi community, In a situation where there is a security policy allowing: SOURCE Source IP: any Source Zone: outside DESTINATION Destination IP: public IP 1.2.3.4 -> NAT'd to private IP 10.10.10.10 (servername1) (the security policy is using the post N

...

ash83 by L2 Linker
  • 2912 Views
  • 3 replies
  • 0 Likes

Resolved! Auth Profile 8.1.x LDAP

We'd like our users to be able to log into Captive Portal or Globalprotect with user@domain.com or just user.  We've messed around with seemingly every combination of username modifiers, but have not been able to get it to work both ways.  Currently,

...

Resolved! User ID Agent

Where the userid agent save log file ?

 

We want to start audit when User ID update task failed on PA

Is there a possibility to move the logs of userid to the siem / syslog server 

Resolved! LACP NEGOTIATION LOG FILE

Hello,

 

In order to debug an issue in our LACP interfaces.

I need to run lacp debug and to find the log file of lacp negotiation.

 

And there is a log file of all ethernet negoatiation?

 

Thanks in advance.

Resolved! ISP redundancy and route load balancing.

Hi, Community!

 

I'm looking for some help with a customer today 

 

Here's the situation:  a customer has a dual ISP configuration and wants the traffic both to be balanced between the routes of the two providers and that a redundancy scheme is put in p

...

CMachado by L2 Linker
  • 8616 Views
  • 8 replies
  • 0 Likes

Resolved! Replace passive member in HA (A/P)

Hi,

 

We need to replace the passive member in a cluster. So in the HA preempt is not enabled. And priority in the active member is 100. So i understand that we can directly connect all the cables for new devices and this new member will take passive r

...

BigPalo by L4 Transporter
  • 2312 Views
  • 1 replies
  • 0 Likes

Stuck in Failsafe Bootloader. what now?

My PA-820 is stuck in failsafe bootloader mode.  what are my options now? I am no longer getting the option for MAINT mode either.  If I let the system boot on it's own I get the below and it just keeps rebooting.

 

 

 

 

Welcome to the PanOS Failsafe Boo

...

GPL-DDay by L0 Member
  • 7467 Views
  • 4 replies
  • 0 Likes

Resolved! No source user in logs post 8.1.2 upgrade

At the weekend I upgraded all our boxes from 8.0.9 to 8.1.2 as we need to make use of the new GP - Split Tunnel by URL features & Enhanced UserId coolness. Yes, I know - this was brave 

 

Everything seems to be working as expected & as it was pre-upgr

...

SimmSimm by L2 Linker
  • 3471 Views
  • 2 replies
  • 0 Likes

Asymmetric routing with the same interface

I have to deploy the WAN firewall which have 2 WAN link. The requirement was egress traffic from the firewall to WAN will be send to Link A but the response traffic will be ingress from the Link B. 

If I've set both of these interface in the same zone

...

  • 23927 Posts
  • 113 Subscriptions
Top Liked Authors
Labels