General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 2826 Views
  • 2 replies
  • 13 Likes

External Dynamic List exceptions

Hello,

 

We have recently upgraded our FW to PanOS 8.x (currently running 8.0.8) and we want to use the newly added feature that enable to add exceptions in External Dynamic List.

 

However it doesn't seem to work since the configured IP we put in except

...

GlobalProtect internal gateways

I'm struggling with GlobalProtect and always on.I have it configuerd for Multi-gateways and that part works great.  My issue is when I switch WiFi networks to internal, the globalprotect still tries to connect. I have added internal host detection an

...

Amory by L1 Bithead
  • 3364 Views
  • 5 replies
  • 0 Likes

Running config not synchronized - Sync to peer

Hello ! 

 

We encounter a problem on a power supply on one of our Palo Alto. Since power supply replacement, we've the message "Running config not synchronized  - Sync to peer" but i've one question : Is the active firewall configuration will be pushed

...

Passive firewall initiating syslog connection

We've syslog configured on devices with tcp protocol on port 515. Our passive device syslog connection is breaking every 300 seconds. Can you help in understand why passive palo alto not sending keep-alive?

amey_13 by L1 Bithead
  • 3347 Views
  • 5 replies
  • 0 Likes

Sanity Check on a VPN Design

Greetings all,

 

I've been asked to set up a secure desktop for one of our departments.  The desktop will need access to a few on premises resources such as DHCP, DNS, and AD but, otherwise, it has to be restricted to allow connectivity only to a speci

...

jsalmans by L4 Transporter
  • 2059 Views
  • 5 replies
  • 0 Likes

User identification error with AD

Hello everybody!

I have a problem with user identification and accordingly with security Policy.

In different computer, the same user is seen "user" or "domain\user".

The rules for work must have both type of user format. This is a big limitation.

Where

...

Resolved! Virtual firewall in HA with failover ip`s?

Hello, good morning.

 

I have a virtual firewall vm-300

 

I'm considering setting up the firewall in HA.

 

But the company where I have the dedicated servers does not offer me floating ip`s.

But they do offer failover ip's.

It is possible to mount a HA, with

...

About HiP-Profile

Hi expert  I would like to know shy after applied policy with HIp everything  normally but why after I choose HIP Profile from any to no-hip found is can't access anything  but connected normally 

SAML for admins auto login or redirect to idp?

I've successfully  configure SAML with a Shibboleth IDP for administrator access, however, the login process still requires two clicks : One to select SSO, and another to continue without a username. I'd like to provide a better user experience for a

...

Resolved! PA to ASA Proxy-ID Mismatch

Hi all,

 

We have a standard IPSec tunnel one of our smaller sites with a strange issue related to the Proxy-IDs defined on the PA side of the tunnel. Our ASA side (10.7.0.0/16) is set to inherit all policy settings from the PA side, and our PA defines

...

PA_Proxy-ID_Details.PNG
ASA_Ses_Details.PNG
ASA_Ses_Details.PNG
  • 24004 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors