General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

what means session end reason with tcp-reuse?

Hi All,

 

i having 1 application claim that their port is stuck on Syn send status and there is possibility causing by palo alto firewall. i did check on the traffic log .. it showing session end with tcp resue. i not sure is that tcp-reuse will causin

...

port2020.JPG
traffic log.JPG
Nono by L1 Bithead
  • 7220 Views
  • 2 replies
  • 0 Likes

Unable SSH to Palo Alto firewall via SSH2

Hi everyone,

 

Now I can access webui normanly but I can't access to Firewall Palo Alto via SSH2 with the same account. When login with SecureCRT, it appears notification :  Password Authentication Failed. On palo alto appears notification : Failed pas

...

hoandh by L1 Bithead
  • 4620 Views
  • 4 replies
  • 0 Likes

Resolved! 5250 HA1 over SFP question

I have a customer who is implementing a pair of 5250 in active/passive. The firewalls are in separate DCs that are connected with fibre. It seems HA2 over the SFP ports is OK but HA1 seems to only work over the 2 AUX ports not any of the data ports. 

...

Screenshot 2018-05-02 17.14.11.png
PerryK by L2 Linker
  • 2269 Views
  • 2 replies
  • 0 Likes

Scheduling support sessions with end-users

I was just wondering if Palo Alto would consider scheduling support sessions with customers via https://www.timetrade.com/ or something similar. This would help to manage time coordinating support sessions.

Thanks,

 

Resolved! VPN over MetroE

I've been given an L2 handoff from Comcast from our data center to our co-location. I can move switched traffic over the link between the Palos at both sites with no issues. My problem comes when I try to add L3 and a a tunnel to the link. I've set u

...

xauth use on global protect tunnels

how many are using xauth on the global protect tunnels and why ? We are using it because we have users using native clients on PC's and phones (don't want to pay for the mobile license for on)? 

Let me know what you think and the pros and cons of usin

...

jdprovine by L4 Transporter
  • 3638 Views
  • 7 replies
  • 0 Likes

Bootstrap the VM-Series Firewall on ESXi

I have an OVA of PA VM-100 series version 8.0.5.

I'm trying to follow the article for "Bootstrap the VM-Series Firewall on ESXi" at:

 

https://www.paloaltonetworks.com/documentation/71/virtualization/virtualization/bootstrap-the-vm-series-firewall/boots

...

Resolved! How do I block Image search?

Hi 

 

I am fairly new to Palo's and I am trying to figure out how I can block search engine image searches. I know there are currently no real app-ids that cover this and just wondering if anyone has a way to block all image search results on the big s

...

Pooch87 by L0 Member
  • 3407 Views
  • 4 replies
  • 0 Likes

SSH decrypt and not decrypt

Hi.

 

I have an ERP server on the inside which must be access from supplier via SSH. Trying both using proxy and no decrypt but always getting Aged out in traffic monitor. 

 

I don't have access to the ERP system but I got the routing printed and it look

...

Resolved! SIP traffic between a Mitel IPBX and a sip server

HI,

 

We have a PA3020 and we are trying to create a trunksip between a Mitel IPBX and a SIP server and it doesn't work. 

I can't see the traffic in logs even if I create a rule to see it but I can see it if I do "Packet Capture", I see the REGISTER req

...

Resolved! EOL dates

I was looking for EOL announcements for a couple of PA models and found this link: https://www.paloaltonetworks.com/services/support/end-of-life-announcements/hardware-end-of-life-dates. It doesn’t have dates for the 3032 or the 500. I just wanted to

...

Bvance by L2 Linker
  • 3926 Views
  • 3 replies
  • 0 Likes

8.1 clientless VPN missing icons

I just updated my home 220 to 8.1 and my clientless vpn icons no longer show up. I can see them when I click the preview button on the clientless application popup in the management GUI. I tried re adding the icons to the configuration, but they stil

...

  • 24034 Posts
  • 102 Subscriptions
Top Liked Authors
Labels