General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4222 Views
  • 0 replies
  • 0 Likes

IOT software not showing on new Palo's

I have deployed 6 new firewalls and 4 of the 6 are showing the IOT software on the devices But 2 of the Palos are not showing this and it has been over 24 hrs.. All of the devices have the IOT licence applied Why is this not being pulled to the dynamics updates on 2 of the Palo's?

MAllen_0-1732789239834.png
MAllen_1-1732789288733.png
MAllen_2-1732789338278.png
M.Allen by L2 Linker
  • 831 Views
  • 1 replies
  • 0 Likes

Testing the quality of the main link

Hello, The ISP had a failure on its side, which involved slow connection, which made it difficult for people inside the company and those working on VPN to work. We have a backup connection that switches in the event of a failure of the main connection. Is it possible to introduce a mechanism that tests the throughput of the main connection and,...

Route convergence when using a Redistribution Profile

This is my scenario. I have an eBGP relationship from my PA to Vendor A and Vendor B. I have users that traverse this firewall and use their respective applications. I have Vendor C which is a site-to-site vpn. I'm doing a routed vpn with this vendor and I have static routes for Vendor C going across the tunnel interface. The issue I am hav...

Resolved! Panorama: how to manage Security/NAT policies

This is something we're struggling with. How do you write Security Policies and NAT Policies in Panorama when each firewall uses different IPs for NAT and the Security Policies include the IPs in them?On our FreeBSD firewalls, this was easy. We just used generic variables in our rules scripts such that the rules were the same across all the fire...

fjwcash by L4 Transporter
  • 8465 Views
  • 6 replies
  • 0 Likes

Pan_task always at 100 % is it due to MP or DP?

we have PA 220 running 9.0.4 show system resources shows show system resourcestop - 09:53:13 up 2 days, 12:46, 1 user, load average: 2.11, 2.28, 2.35Tasks: 139 total, 5 running, 134 sleeping, 0 stopped, 0 zombie%Cpu(s): 59.4 us, 10.4 sy, 1.4 ni, 28.7 id, 0.1 wa, 0.0 hi, 0.0 si, 0.0 stKiB Mem : 4119652 total, 373012 free, 2303588 used, 1443052 b...

MP18 by Cyber Elite
  • 15110 Views
  • 8 replies
  • 0 Likes

BGP: route not installed when using import rules

In a BGP configuration, we properly receive the default route from the ISP and it´s installed in the routing table. As long as we add a import rule the route isn´t installed anymore. The import rule is very simple and we don´t know where can be the issue.      Thank you in advance!

Import_rule_1.png
Import_rule_2.png
Import_rule_3.png
Import_rule_4.png
Carracido by L4 Transporter
  • 1275 Views
  • 2 replies
  • 0 Likes

New Palo erroring when pushing device group and template stack it seems to not see all the variables

The device group commit is failing due to objects not having the correct reference The template is failing due to outside zone and all other zones using a log setting default which is deployed in the device group configuration.. What is the best way to workaround this, currently my Palos are not receiving any configuration from either...

MAllen_0-1732651707228.png
MAllen_1-1732651771182.png
M.Allen by L2 Linker
  • 1305 Views
  • 2 replies
  • 0 Likes

C$ access taken time to pop-up the authentication window

Dear Team May you please advise me how to rectify the issue while I was trying to access the C$ drive or admin$ folder taking about to 5 min to explorer the authentication window for validation the account. Before it had come promptly while I click on enter button. Currently I am using PA-3220 firewall.

Error while logging into PaloAlto Support Website

Dear sirs, I am a registered partner from Honeywell BV in the Netherlands. I am having issues while trying to login into your support website to register assets from our customers. This is an urgent situation, and without logging in to your support website, we are unable to assist our Honeywell customers properly. I would appreciate assistance c...

pchambel by L0 Member
  • 1344 Views
  • 1 replies
  • 2 Likes

Resolved! Ingress exception counters

Hey, all! Does anyone know something about FPGA Exception global counters? Especially these counters: flow_fpga_rcv_igr_INTFNFflow_fpga_rcv_igr_IPFRAGMENTflow_fpga_rcv_igr_PROTO I see packet drops on FPGA showed by counter flow_fpga_ingress_exception_err. Also the counter has the same rate as flow_fpga_rcv_igr_INTFNF. I'd like to understand wh...

m0tash by L1 Bithead
  • 1652 Views
  • 1 replies
  • 0 Likes

BGP enabled BFG Profile, 1 of the peer will marked down by bfd control detection time expired for BFD session.

2 BGP peer . 1 bfd profile can be used for BGP . 1 of the peer will trigger a Critical/high system log. The log is BFD state changed down for BFD session 6 to x.x.x.x on interface x.x Protocol :BGP BFD control detection time expired for BFD session 6 to neighbor x.x.x.x on interface x.x Protocol :BGP The BGP peer should be failed ,restarted...

Block Google Drive Desktop app

Hi all, Could you guide me on how can I block the Google Drive Desktop app? I've been reading articles and previous posts, but I couldn't understand them properly. If anyone could provide me with any insights, thanks for your time. #googledrive

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels