General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4114 Views
  • 0 replies
  • 0 Likes

How to view searched words using custom reports

Hello Community! I´m trying to see the searched words made with different search engines. For this I wanna create custom reports and look for terms on the URL log database with the help of different query builders. I´m following the idea of this doc:https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm19CAC I´m not able to...

Carracido by L4 Transporter
  • 3400 Views
  • 3 replies
  • 0 Likes

general question to aggregate group

Hi all!When I create an aggregate group, there is the possibility to enable LACP.But when I don't enable LACP, which ethernet standard is enabled then?Does the firewall utilize bandwith over all links as in LACP?Thank you

MPI-AE by L4 Transporter
  • 2637 Views
  • 2 replies
  • 0 Likes

Resolved! Testing Sinkhole DNS

Hello, all I am testing Anti-Spyware DNS sinkhole. I set: I make policy with this profile. For most DNS-names in category “Malware” и “Command and Control” (https://threatvault.paloaltonetworks.com/) i see nslookup answer, for example: Addresses: ::1127.0.0.1And it is good. But for two DNS-names: namecha.in, 4cdf1kuvlgl5zpb9.pmr.cc (Malware cate...

Sinkhole.png
aaobuhov by L2 Linker
  • 3002 Views
  • 2 replies
  • 0 Likes

Pan-OS Upgrade path question

I know this is a frequent question, but I've not seen one particular aspect of it. I need to upgrade from 7.0.1 to 7.1.x (the latest). Am I correct that I would do the following: Download and install 7.0.19 <- this is my main question- can I go directly from 7.0.1 to 7.0.19 or is there an interim version needed? rebootDownload and install 7....

bwade by L0 Member
  • 2242 Views
  • 1 replies
  • 0 Likes

Resolved! 'proxy decrypt failure' in session detail even though no ssl decryption

CLI shows Session 33880958c2s flow:source: 10.29.32.146 [_DMZ]dst: 65.55.163.76proto: 6sport: 59760 dport: 443state: INIT type: FLOWsrc user: unknowndst user: unknowns2c flow:source: 65.55.163.76 [_EXT]dst: 198.160.191.5proto: 6sport: 443 dport: 32999state: INIT type: FLOWsrc user: unknowndst user: unknownqos node: ae1.3741, qos member N/A Qid ...

MP18 by Cyber Elite
  • 5719 Views
  • 4 replies
  • 0 Likes

GlobalProtect with MFA Dual Authentication

We have set up a GP slit tunnel we allow SSO using LDAP and Certificate based authentication this allows access to everything in the corporate network. However for applications we have specifically listed by service and destination we have created additional authentication rules that force the user to authenticate using a MFA (Entrust) method th...

Resolved! No expiration set for collector group on Panorama m100

Hello everybody, I would like to know what happen if I don't configure the Expiration Period in my Collector Group. By default, blank field means that my logs will never expire but if it reachs the maximum capacity what happen ? Does my panorama take in consideration my Quota and override the oldest logs ? Regards,David

GlobalProtect portal user authentication failed

For globalprotect I have a radius server profile with two servers in it. I have noticed that all authentication goes to the first server in the list all the time. And that works. However, in testing, I have shut off the first server and the firewall never tries to send authentcation to the second server. If I use the "test authentication" co...

Hangout as ms-lync

Hello everyone, the users in our company use Google Hangouts / Meet. We allowed google-hangouts and google-meet and all the dependent applications with Service Any.However the connection is recognized as ms-lync!! Anyone else facing similar issue? Best Regards,RJ

Configure Firewall HA through Panorama

Hi ! How we can configure the HA between Firewall through Panorama. I have added the both devices in to single device groups. So whenever i did the HA configuration parameters it's getting applied to both devices . What are the steps need to be followed for this ? Thanks in Advance...

gpsriram by L1 Bithead
  • 2528 Views
  • 2 replies
  • 0 Likes

Panorama snmp trap

My idea was first to setup panorama to monitor the logs for critical and then send snmp trap.But from what i can see from the PA mibs, there are no way for panorama to send info in the trap about the device? So all i see in the trap is the panorama ip. Is there any way around this? Or is maybe best practise to trap from the individual device?

hbalzac by L3 Networker
  • 4015 Views
  • 2 replies
  • 0 Likes
  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels