General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Panorama - Object

Hello I start the Panorama configuration and I created Device Group. My device group are based on our site location : FR - Paris - Toulouse I would like to know the best way for the configuration. If I create objects in Paris DG (object to define Paris's local networks and servers) and I create also objects in Toulouse DG (object to define Tou...

Resolved! New template stacks after upgrade?

Hi all, I upgraded from an 8.0 release to 8.1.3 to prepare for a migration to some new hardware. I did a commit after the upgrade to make sure everything was synced up between Panorama and the firewalls and I believe everything went ok. I was making some adjustments at the recommendation of the Best Practices analyzer in Expedition and noticed ...

jsalmans by L4 Transporter
  • 7282 Views
  • 5 replies
  • 0 Likes

GlobalProtect successfully connected but no traffic allowed

Hello, From more than 1.5k users, there are two users with the following problems: They can connect to globalprotect portal, they receive ipadd / sm / def gateway / dns servers . There is no overlap between ip information received from firewall and local networks settingsIn windows, the default route received by palo alto fw has the lowest metri...

Resolved! 15 cpu cores in 5220

Hi everyone, Need to know the cores from 0 to 15 as shown below does it mean that 5220 has 16 dedicated CPU including number zero?And all these cores are used by the DP only? show running resource-monitorResource monitoring sampling data (per second):CPU load sampling by group:flow_lookup : 17%flow_fastpath : 16%flow_slowpath : 17%flow_forward...

MP18 by Cyber Elite
  • 4446 Views
  • 3 replies
  • 0 Likes

Poor Man's HA

Hi, We have 2 PA VM100 devices. For some reasons we are not able to configure more network interfaces at the moment.Can I create an active-passive HA cluster just using the Management interfaces in the way that the second device receives all configuration updates from the first device and is ready to be "activated" manually in case of failure of...

Custom miner, class not found

Hello, I wrote a local Taxii Client class that uses Cabby.I can see the prototype in web UI prototype list.I cloned it tried to commit.But it says 'Unknown node class'.I added my class in /opt/minemeld/engine/core/nodes.js then restarted minemeld.Still no succcess.

zulaa by L1 Bithead
  • 2500 Views
  • 1 replies
  • 0 Likes

WildFire Alerts

Hello Is it possible that Wildfire sent me alert information from other companies? because I see events in the console Regards.

Resolved! PA firewall is not forwarding logs to Splunk indexer

Hi Dears, I have a issue regarding the log forwarding. Paloalto logs are forwarded to splunk SIEM in our environment. We were running panos 8.0.10 and the log forwarding was working as expected. Recently we upgraded to version 8.0.12 which is a TAC recommended version. Since upgrade PA appliance is not forwarding the logs in real time. Instead...

Failed to pre-login to the portal cosbppan01.net.americas.agilent.com. Error 0

I am writing to you because in the company where I work we are having a problem while using Global Protect, some of my colleagues are no longer able to connect and receive the error you see below: 80) 11/20/18 09:55:43:156 Debug(2301): IPADDR=cosbppan01.net.americas.agilent.com,PORT=443,URL=/global-protect/prelogin.esp,POST=1,PROXY_AUTO=1,PROXY_...

Resolved! How to correctly visualize groups and users in security policy

Hi everyoneI’m working with a Palo Alto 3250 (Pan-OS 8.1.1).I made integration with LDAP, and configurated group mapping setting.My problem is when I want add any group or user in a security policy the object appear like cn=Admin,ou=groupadmin,dc=example,dc=com and I want to see just the user or the group, not visualize the full path of the user...

Resolved! Can't create Nat rule using more than one source address

Hi all, I'm trying to create Nat rule for source translate when the source is address group and it will not be bi-directional. The address group include 2 address from objects.The source translate is Static-IP tried to put object and specifric IP address with subnet (/32) I keep receiving the following error, also tried to use two-source address...

Nat rule error.jpg
SShnap by L3 Networker
  • 7877 Views
  • 6 replies
  • 0 Likes
  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels