General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4224 Views
  • 0 replies
  • 0 Likes

Support Portal is down.

The palo support portal (that website that lets you register devices and create support cases in the first place) is currently down and has been down for over an hour now. This is a huge issue that needs to be addressed. I can not register any new devices.

Support Portal Access Salesforce SAML Error

Does anyone know a pathway to get my ability to create support cases fixed? I've emailed support@paloaltonetworks.com and have had no reply. Effectively I need to make a support case to make a support case so i'm a bit screwed here 😛

Resolved! Experiences with skipping the base image.

Hello.so slowly but surely I'm upgrading a large number of palo alto's from versions 7.1.x to eventualy version 8.1.6( or higher) In my palo alto training. and from some upgrades done before of pavm100 specifically. I always loved the fact that you can basically skip the install of a base image(though not recommended)I don't like to do it with x...

Resolved! Upgrade PAN OS from 10.1 to 11.1

Hi Community, My customer plan to upgrade their PAN OS from 10.1 to 11.1 From documentation said, You can now use the Skip Software Version Upgrade feature to skip software versions when upgrading your device from PAN-OS 10.1 or later releases. What is skip software version upgrade?, How to use it? so that I can go direct upgrade to 11.1 with...

HSutanto_0-1709107246673.png
H.Sutanto by L1 Bithead
  • 45737 Views
  • 21 replies
  • 0 Likes

Template stacks limitations

Hey all,I think I am hitting a limitation on the template-stacks, but maybe there is a nice workaround that you guys can help me with... Contrary to Device groups, which have "shared" objects, templates use stacks which is a little different.The limitation to this seems to be that you can not reference a template value between different template...

mr.linus by L4 Transporter
  • 9456 Views
  • 6 replies
  • 2 Likes

Resolved! Cannot see Dynamic IP lists

We are currently going through the process of setting up new PA-820s for use in our environment.We should have access to the following External Dynamic IP lists on these devices based on our licensing, however they are not being displayed.I have enabled all licenses / authorization codes in the portal. Unit has Internet access. Using Mgnt interf...

Old PA220.png
New PA820.png

Traffic Log query for FQDN object errors with "ip range [fqdn] expansion exceeds maximum number of items allowed"

I created a new FQDN object and added it to a security policy. After committing changes, I tried to validate the rule was working, but I get this error in the traffic log when searching for (addr in 'my-FQDN-object'): The security policy rule is not working either. It should allow access to this FQDN address, but is not triggering I can s...

MatthewHale_0-1732120150610.png

I want to allow gmail access to specific users on my LAN segment.

I have created a policy which says "Src: FQDN of 2users" "DST:Any" "App: gmail-base, gmail-posting, ssl, stun, vidyo, web-browsing" "URL CATEGORY: Computer and internet info, web-based-email" "Action: Allow" But the logs I see is, those users are not hitting this policy (They are still passing through the default policy even the above created ...

Information about Cortex tenant upgrade.

Hi Community I am looking for information in an official document that mentions the automatic update of the Cortex XDR tenant. I cannot find any information on the subject. I appreciate any information on the subject. Thanks for the support.

Removing Previous Commits on Panorama which are Stuck

Is there a way to clear old commits on Panorama which have never succeeded? Our firewall which we were committing to dropped off the network during that time and the commit is still pending. Any CLI commands to clear this other than restarting the management plane on Panorama?

Stuck_Commit.JPG
tulrich by L0 Member
  • 26804 Views
  • 9 replies
  • 0 Likes

Resolved! Step to change standalone for both device

Hi All, All our PA is managed by Panorama and there are a couple of HA pairs in our environment. we just want to change one of the HA pair to standalone. Currently our set up is active passive. We would like change to standalone on both device. Is there any steps to make this happen? Thanks !!

Resolved! Two Virtual Routers

Hello,When I configure two virtual routers on a PA-5060, how do I get them to see each others’ routes?Do I need to configure some kind of virtual internal circuit between the two routers?Thanks!

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels