General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.


Always on/Pre-Logon GP and Windows logon time

Does anyone have any tweaks or suggestions that might improve the windows logon time when GP is configured as pre-logon always on? Our users have gotten used to waiting sometimes up to 5 minutes after logging in before they see their windows desktop.


hshawn by L4 Transporter
  • 6 replies

Need help on VPN PA firewall to IBM cloud VPN



I am new to Palo Alto World


Really need your Help in understanding how can i create the VPN for the below


1. IBM cloud subnet only 1 subnet so thats okay. 

2. Multiple subnets behind my PA firewall, my question is how to NAT them all to go out?




SNMP on Active-Passive HA Cluster



I have SNMP configured and working on the Active member of my HA cluster.  i need to set SNMP up on the Passive member, i have made the changes and saved config but it is not working, do i need to commit the config?  if so, would this cause an


GlobalProtect Connection Problems

Hi All


I have had to re-install a user client Global Protect Agent 2.3.3-5 as he couldn't  connect, after re-installing he still cant connect and getting a error message off:


#“(T10576) 02/01/18 13:55:00:745 Debug( 226): CPanSocket::onConnect - retur


ptotham by L0 Member
  • 2 replies

Decryption policy options explanation required.

Hello Everyone,


I am reading about decryption policy and have some questions in my mind, so looking for some answers.


1- In order to apply the decryption profile, do I need to have action set to decrypt ?


2- what is the advantage if I have a decrypt


Xtreme by L1 Bithead
  • 5 replies

Traffic in interface tunnel



I have enabled QoS in order to limit a tunnel interface to maximum badwith to 50Mbps. QoS is well-applied but the current BW value is not being showed in QoS statistics. What ways are there to know the amount of traffic that goes in a moment thro


Resolved! syslog forwarding

how can i forward exact below information to Syslog server ?


> show log userid
1,2013/03/28 12:53:05,001701000225,USERID,login,12,2013/03/28 12:53:05,vsys1,172.17.

Resolved! HA Active/Passive upgrade question

Hey PA Guru's!   I have a question I haven't really seen on the KB's and documentation on HA upgrades, and wanted to get some insight.


I currently have a pair of PA-3050's we're looking to upgrade, and i've reviewed the docs on the recommended proced


Power failure on PA-7000

The PA-7000 Hardware Guide specifies they minimum number of active PS to provide enough power for a chassis depending on the type of power and number of NPCs installed.

For example, if the PA-7050 chassis is powered via 120V AC and has 6 NPCs installe


  • 23570 Posts
  • 103 Subscriptions
Top Liked Authors