General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4237 Views
  • 0 replies
  • 0 Likes

TLS 1.3 support

When can we expect PANOS to support TLS 1.3 for SSL Decryption and WebUI management ? Firefox will have TLS 1.3 on by default with Firefox 52. Chrome 56 already have TLS 1.3, but Google paused the roll out at this point, due to other vendor problem.. https://www.theregister.co.uk/2017/02/27/blue_coat_chokes_on_chrome_encryption_update/

Resolved! UIA 8.1 issue

I have two different customers who hits same issue.One user is using PAN-OS 8.1.3 and UIA 8.1.3-10,another is using PAN-OS 8.0.12 and UIA 8.1.3.-10. The issue is that UIA detects user info as three types of formats like...1) domain\user (this is same as previous version)2) domain.local\user3) user@domain.local When PA received these info, "show ...

emr_1 by L6 Presenter
  • 3206 Views
  • 1 replies
  • 0 Likes

Resolved! upgrading active passive panorama from 8.0 to 8.1.3

panorama is in active passive mode.need to upgrade from 8.8.x to 8.1.3 so i can upgrade the passive device first all the way from 8.0 to 8.1.3?then do the failover then upgrade the previous active one?? also panorama can still manage the PA running 8.0x right?

MP18 by Cyber Elite
  • 2287 Views
  • 1 replies
  • 0 Likes

HA sync time

I have 400 rules and it takes my PA 5050 HA pair 4 minutes to sync, that seesm long to me anyone else know their sync times or what should be a reasonable time?

jdprovine by L4 Transporter
  • 6434 Views
  • 8 replies
  • 0 Likes

GlobalProtect Install issues

having a bit of a weird issue. I believe it may be related to some of my security setting in GPO, but I can't tell what. When users download one of the 4.1 releases of the GlobalProtect clients, the install will go through the first screen or two, ask for elevated privlidges, then say it can't install (A program run as part of the setup did n...

GlobalProtect - Understand Client side Logs

Hi Guys, We are doing a global protect deployment and I'm new to this area. Time to time we have some users with poor performance or freequent disconnects from global protect who send us log fles.I have tried to search documentation that could provide information around global protect logs files.I need to understand difference of each log files ...

Namalw by L1 Bithead
  • 5131 Views
  • 1 replies
  • 0 Likes

Url filtring

Hello all, Actualy we have 2 PA 3020 firewall in our company, we have some issue with the option URL filtring. we have a policy block all user to acces to the web page with category (ex: games ...) in the monitor, I find the users who are bloked but i can't find who are allowed. there are some users working with proxy (web plugin), how can i id...

Session browser vs. traffic logs

Hi all,Maybe someone can help to bring some light on my question. I'm trying to determine the difference between the session browser and the traffic logs. Why it is that when I search on a rule in the traffic logs I see specific traffic that is not in the session browser? I'm trying to remove a rule from our firewall by first seeing if other rul...

Resolved! PA-3020 vs PA-850

Hi,I am in the process to purchase a new pair of firewalls (in active/passive setup), but I am stuck in selecting PA-3020 or PA-850.While the tech specifications are similar, the cost is not.Additionally, the PA-3020 is around since a while, so I am more oriented to purchase the PA-850.This is going to serve a 350-people office, and I will need ...

AMoretti by L1 Bithead
  • 9306 Views
  • 4 replies
  • 0 Likes

Resolved! ssl decryption enabled and proxy_wait_pkt_drop

ssl decryption is enabled on PA.sh running resource monitor is also normal. when i run below command i see show counter global filter delta yes category proxyGlobal counters:Elapsed time since last sampling: 124.323 secondsname value rate severity category aspect description------------------------------------------------------------------------...

MP18 by Cyber Elite
  • 3804 Views
  • 4 replies
  • 0 Likes

global protect client unable to connect windows xp

Hi Team can anyone help me with below issue We are having an issue with Global protect VPN connections from the Windows XP operating system.We can connect to the SSL VPN via the browser and download the Global protect client. But the issue is when you try to connect by entering the credential from the Global protect a client, it gives an error "...

HemanthV by L2 Linker
  • 5452 Views
  • 3 replies
  • 0 Likes

Resolved! Bug: Multiple Portals work only on GlobalProtect 4.1.0

Good day all, i was enthusiastic when 4.1.0 appeared, because this version finally allowed to manage connections to many PAN portals in a very easy way.Sadly, in 4.1.1, 4.1.2, 4.1.3,4.1.4,4.1.5,4.1.6 this is no longer working! The dropdown menu is not active, and the buttons Add/Delete/Edit in Portals config window are missing. I'm pretty sure ...

Resolved! recommended version of Panorama 8.1?

I have new PA that has come with 8.1 version.Currently we have PA and PAnorama running on version 8.0.9. Which is the recommended version of PAnorama in 8.1?

MP18 by Cyber Elite
  • 3516 Views
  • 3 replies
  • 0 Likes

moving firewall from one device group to another

I have one parent device group with 7 firewalls.I have created 2 new device groups and i need to move 4 firewalls from the parent device group into these 2 new device groups.so each new device group will have 2 firewalls each. right now issue is that when we push policy to 1 firewall it does out of syn for remaining.As all these firewalls nee...

MP18 by Cyber Elite
  • 5893 Views
  • 6 replies
  • 0 Likes

Resolved! does panorama gets local config from firewall

On one of education videos it says that in background panorma talks to firewall every 90 mins or so and pulls whole configfrom palo alto(local config on palo alto and global config pushed via panorama? Need to confirm if we have local config on palo alto and that firewall dies then will panorama have whole config of that firewall?

MP18 by Cyber Elite
  • 4596 Views
  • 6 replies
  • 0 Likes
  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels