General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4110 Views
  • 0 replies
  • 0 Likes

Resolved! moving old traffic logs to Panorama

Seems we forgot to configure log forwarding on one of Firewalls and now we do not see any logs in Panorama I was reading this link below https://www.paloaltonetworks.com/documentation/80/pan-os/cli-gsg/use-the-cli/use-secure-copy-to-import-and-export-files/export-and-import-a-complete-log-database-logdb is it possible to move all log database f...

MP18 by Cyber Elite
  • 4718 Views
  • 1 replies
  • 0 Likes

Can you use a URL directly in security policy?

I am trying to creat a basic security policy allowing ftp access to a list of url's. I know that I could do URL filering & white list the urls & add the profile to the security policy but can you put a url directly in the destination address field? I dont think you can but I could be wrong.

Resolved! Physical interface zone assignment

Hello guys, one really simple question, I hope.. when I configure subinterfaces and put them in separate zones, do I necessarly have to put also the physical interface in a zone?If yes, could be some sort of null zone created only for that? Thanks

Shye80 by L1 Bithead
  • 3371 Views
  • 3 replies
  • 0 Likes

Resolved! Public CA signed certificate

Need to confirm on certificate if only CA option is checked then it is Public CA signed certificate? which type of cert it is when only CA option is checked?

MP18 by Cyber Elite
  • 3063 Views
  • 3 replies
  • 0 Likes

Resolved! nested device group

i am trying to understand below from admin guide Without a hierarchy, you would have to configure both function- and location-specific settings for every device group in a single level under Shared. if anyone can explain me in more detail that will be much appreciated

MP18 by Cyber Elite
  • 3129 Views
  • 2 replies
  • 0 Likes

Resolved! Admin password problem on CLI and Web Interface after panorama upgrade

Hello everybody, I upgraded my panorama m100-series to 8.0.13 and since this upgrade, I cannot login in my panorama through CLI and Web interface with the default admin account (Password was changed of course). When I try to log myself, it says that I entered a wrong user/password. So I created a Radius account and I can log with this account on...

Resolved! GlobalProtect App deployment with gateway already configured

Hello,I'm at a confusion regarding if it's possible for GP users to download the App with the gateways already configured for connecting so that they don't have to enter the gateway after it's installed. My use case is easier deployment for single-gateway scenarios with/without GPO. Or better said, i don't want to document the gateway for users...

Resolved! log forwarding to m500 and SIEM

we have panorama in active and passive and all firewalls are connected to it.We have m500 log collector and when i run below command sh logging status i see the firewall is sending logs to m500 also we have configured logs to be send to SIEM. 1>Need to know if SIEM logs are directly send from firewall to SIEM?how can i verify that? 2>Nee...

MP18 by Cyber Elite
  • 7060 Views
  • 8 replies
  • 0 Likes

Linux GlobalProtect Client sends bad passcode format to RSA SecureID Radius

Hello, We've been using GlobalProtect on Windows and Mac for a long time now in conjunction with our RSA SecureID MFA appliances. We've recently started trialling the GlobalProtect client on Linux, however no users are able to authenticate against the RSA SecureID appliance via the Linux client due to a "Passcode format error". I have tried mul...

1.jpg
Farzana by L4 Transporter
  • 3640 Views
  • 2 replies
  • 0 Likes

Resolved! GlobalProtect restrict to approved devices

Hello, I am trying to restrict what devices users can log in to GlobalProtect with to only machines that we have given them. Since all of those machines would be domain-joined, I would expect that I can import an AD group that contains those machines and use that as a restriction, but all I can find is how to use an AD group for allowed users (...

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels