General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 304 Views
  • 0 replies
  • 2 Likes

HA2 interface not up using HSCI cable

Hi Good day,


Our client received two Palo Alto units, including an HSCI cable. However, they noticed that the HSCI cable is not functioning. When they connect it to the HSCI port, the LED port does not light up. However, when using a normal SFP with

...

Resolved! Cisco ISE integration for UserID

Greetings all,

 

I'm wondering if anyone else is using Cisco ISE for network access control and has experience integrating it to publish User ID to the Palo Alto firewalls?

 

I saw a support article for it but the regex appears to be out of date.  I foun

...

jsalmans by L4 Transporter
  • 17761 Views
  • 10 replies
  • 0 Likes

Zero Touch Provisioning's (ZTP) big no touch warning

Currently testing out ZTP.  I got the firewall added to Panorama with ZTP and that is all well and good.  On this article though:

 

Register Panorama with the ZTP Service for New Deployments (paloaltonetworks.com)

There is a big warning on Step 8 sayi

...

K_Wirch by L0 Member
  • 759 Views
  • 0 replies
  • 0 Likes

No DNS, cannot ping anything above gateway

I'm trying to set up a PA-820 from scratch, but would like to update and set up rules before placing it on top of our network. Currently it is set up as a DHCP client, parallel to our office router, connected upstream to a Charter AP and modem (for s

...

Altais by L1 Bithead
  • 3886 Views
  • 7 replies
  • 0 Likes

s2s vpn monitoring

Hey guys.

I have a PA50xx with PAN-OS 8.1.25 with several Site-to-Site VPNs (some with ph2 any and others with ph2 configured) configured and my IT manager wants to monitor the VPNs through Zabbix.

I could do it via API, but in the PAN-OS 8 version i

...

SMB Mid-Market Competitors

Hello All,

About 2 weeks ago and in the forth coming weeks, the key target area for me will be the PA-400 series and the PA-14xx series as we shall be focusing on the SMB / SME / Mid-Market sector.

 

However as I have worked in this area for 15+, I a

...

J.Patel by L1 Bithead
  • 1144 Views
  • 2 replies
  • 1 Likes

How does Expanse know about my website?

I have the following message in the User Agent field of my Apache log:

 

Expanse, a Palo Alto Networks company, searches across the global IPv4 space multiple times per day to identify customers' presences on the Internet. If you would like to be
...

HIP Check for Machine Certificate

Hello,

I've been unable to get my HIP check to work when checking for attributes in a machine certificate.  Other HIP checks do work.  I'm using my root cert for the Certificate Profile.  I don't have/use a intermediate cert as this is a lab.  Some of

...

Resolved! FIPS-CC Mode Initial Setup

We are now required to switch to FIPS-CC mode for compliance. I have read the Admin Guide section about switching the operation mode to FIPS-CC but have a question about a FIPS security function.

The guide states that I can save my current running-co

...

B.Vance by L1 Bithead
  • 2239 Views
  • 7 replies
  • 0 Likes

Ubuntu_OpenLDAP with PAN-OS User id

Hi All,

 

Is there any document which will show how to configure Ubuntu based OpenLADP as a user id agent with Palo Alto firewalls.

 

How to add the LDAP server into Server monitoring profile. 

 

 

Resolved! Vip(DNAT not working)

This is my topology. From 30.0.0.10 i would like to access the server 192.168.0.2 with the help of PA wan interface IP(30.0.0.1)
I have created DNAT and Ssecurity policy .

 

 

Object Prenat IP is 30.0.0.1/8 and Webserver Ip is 192.168.0.2/24, when

...

ArunKumar7_0-1707441279489.png
ArunKumar7_1-1707441365240.png
ArunKumar7_2-1707441401377.png
  • 23650 Posts
  • 107 Subscriptions
Top Liked Authors
Labels