General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4112 Views
  • 0 replies
  • 0 Likes

panMgmtPanorama2Connected custom poller = Not-Connected

can someone tell me how can we troubleshoot palo alto firewall disconnection from Panorama. I tried to check system logs but there are no enough logs to troubleshoot it. logsFW has lost connection to panorama, no log will be forwardedDisconnected from Panorama Server: X.X.X.X. , source: Y.Y.Y.YUser-ID server monitor <hostname>(vsys1): con...

SSL Forward Proxy Decryption with ECDSA Cert?

Just wondering if it's possible to use an Elliptical Curve DSA cert with CA and Trusted Root to be the Forward Trust Certificate for the SSL Forward Proxy decryption feature? Reading about the Perfect Forward Secrecy feature here:https://www.paloaltonetworks.com/documentation/71/pan-os/newfeaturesguide/decryption-features/perfect-forward-secrec...

jsalmans by L4 Transporter
  • 4789 Views
  • 2 replies
  • 0 Likes

user-ID user mapping problems

Our PA 4.1 has problems mapping entries received from user-ID agent and LDAP queries.show user ip-user-mapping command produces following output:192.168.1.1 AD grybai\vltr12345678 Here grybai is our NetBIOS domain name for domain and vltr12345678 is sAMAccountName attribute of user object in LDAP.However command show user user-IDs (which...

SimasK by Not applicable
  • 3836 Views
  • 3 replies
  • 0 Likes

Resolved! Please suggest about mac-address control

Hi expert , I would like to know about suggest mac-control because my customer use Fortinet which use device control and I will replace and migrate to Palo-alto if that possible about control this thing . Thank you

Block "internet-communications-and-telephony" but allow Skype4Business connections

Hi community Has anyone of you already had to deal with a request to generally block the URL category "internet communications and telephony" but at the same time allow connections to Skype for Business services of other companies?The only way I can think of about this is to manually maintain an exclusion list ... Thanks for your input.Remo

Remo by L7 Applicator
  • 3824 Views
  • 1 replies
  • 0 Likes

Guide to FTPS?

One of our partners is switching it's service to FTPS, Does anyone know of a decent guide on implementing FTPS? I saw a brife article by "sdurga" but it's not very detailed. We don't presently do any SSL decryption so unsure of what we need to do and what effect it may have on other parts of the system??? Thanks Robin

TRAPS Logs 4.1.2 to panorama 8.0

Hello, I have tried push logs to panorama by KB link but I have still same error message "Connection to pan.xxx.xx:23001 failed.I am using TCP 23001 without SSLDo someone have same problem? https://www.paloaltonetworks.com/documentation/41/endpoint/endpoint-admin-guide/reports-and-logging/forward-logs-to-panorama/enable-log-forwarding-to-panoram...

How to limit global protect for specific android/ios users?

I have an interesting scenario. We have windows users accessing global protect. I am looking to buy gateway license to enable a set of users(10) out of 400 users to use android/iphone to connect to vpn. We have IBM MaaS360 MDM installed on phone to collect mobile attributes. Is there a way I can enforce a policy to limit specific users to use m...

Tunnel Monitor

Hi Members While setting up the Tunnel monitor, what would the destination IP on the ipsec tunnel. Is it the IP of the peer? and where does the alert gets generated, within the PA system logs? Regards,

R_Sharma by L2 Linker
  • 2929 Views
  • 1 replies
  • 0 Likes

Resolved! Logging Searches

Is there a way to log or record user searches on the firewall or panorama for auditing purposes? There are a lot of information in the Monitor tab that can be potentially misused, so we'd like to record the searches in that tab. Thank you.

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels