General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4132 Views
  • 0 replies
  • 0 Likes

Deploying Minemeld Using Vagrant and Virtualbox

Hello All, Based on @lmori's great guide for doing a manual install of Minemeld on Ubuntu 14.04, I have taken his configurations and wrapped them in a Vagrantfile for easy foolproof deployment of Minemeld. It's a simple 3 step process: Install latest version of Virtualbox for your OS (Download) Install latest version of Vagrant for your OS ...

nbilal by L3 Networker
  • 13677 Views
  • 2 replies
  • 9 Likes

TAXII Feeds not working correctly.

I am having major issues with my TAXII feeds recently. A long running feed stopped working recently with an error "'unicode' object has no attribute 'get'". I have figured out that it only gives this error on any MM instances running on Trusty 14.0.4.5 that were manually installed. The cloud loader install seems to work with the same config impo...

kethomas by L1 Bithead
  • 3956 Views
  • 2 replies
  • 0 Likes

Resolved! MineMeld Speedtest.net host mining

Hi all, I managed to install MineMeld on-prem and are playing around with it now. As a first task I'd like to setup a domain feed delivering SpeedTest.net hosts from countries we deployed Palo Alto firewalls. Setting up the miner, a domain aggregator and an output worked, no problem there. We download the full hosts list from http://c.speedt...

oschuler by L4 Transporter
  • 4178 Views
  • 1 replies
  • 0 Likes

Resolved! Remote shutdown via CLI or through Panorama

Hello all,I'm tasked with initiating a graceful shutdown of mutiple PA3060 firewalls following UPS-detected mains power loss via a scripted process. I can login to invididual firewalls using plink but I can't work out how to enter the shutdown command with the confirming 'y' keystroke.Does anyone have experience of this, please?We have Panorama ...

what means session end reason with tcp-reuse?

Hi All, i having 1 application claim that their port is stuck on Syn send status and there is possibility causing by palo alto firewall. i did check on the traffic log .. it showing session end with tcp resue. i not sure is that tcp-reuse will causing the port hang?if yes any way we able to tune it? one of our application port 2020 is stuck on s...

port2020.JPG
traffic log.JPG
Nono by L1 Bithead
  • 8695 Views
  • 2 replies
  • 0 Likes

PA220 running 8.1 GlobalProtect data file version failed to install

Hi, Got this message on PA220 running 8.1, Time Severity Subtype Object EventID ID Description===============================================================================2018/03/18 02:00:18 high general general 0 GlobalProtect data file version 1521363012 failed to install Anyone know how to fix it? There is no download button on the WebUI,...

Unable SSH to Palo Alto firewall via SSH2

Hi everyone, Now I can access webui normanly but I can't access to Firewall Palo Alto via SSH2 with the same account. When login with SecureCRT, it appears notification : Password Authentication Failed. On palo alto appears notification : Failed password for 'account name' from 'x.x.x.x' port 64249 ssh2. Please help me fix this error.

hoandh by L1 Bithead
  • 5940 Views
  • 4 replies
  • 0 Likes

Resolved! 5250 HA1 over SFP question

I have a customer who is implementing a pair of 5250 in active/passive. The firewalls are in separate DCs that are connected with fibre. It seems HA2 over the SFP ports is OK but HA1 seems to only work over the 2 AUX ports not any of the data ports. The docs say use these ports for SFP+ but it doesn't say NOT to use other SFP ports for HA1. Thou...

Screenshot 2018-05-02 17.14.11.png
PerryK by L2 Linker
  • 3100 Views
  • 2 replies
  • 0 Likes

Scheduling support sessions with end-users

I was just wondering if Palo Alto would consider scheduling support sessions with customers via https://www.timetrade.com/ or something similar. This would help to manage time coordinating support sessions.Thanks,

Resolved! VPN over MetroE

I've been given an L2 handoff from Comcast from our data center to our co-location. I can move switched traffic over the link between the Palos at both sites with no issues. My problem comes when I try to add L3 and a a tunnel to the link. I've set up many site-to-site vpns before, but this is my first time trying to add it to an L2 interface. ...

xauth use on global protect tunnels

how many are using xauth on the global protect tunnels and why ? We are using it because we have users using native clients on PC's and phones (don't want to pay for the mobile license for on)? Let me know what you think and the pros and cons of using xauth

jdprovine by L4 Transporter
  • 4963 Views
  • 7 replies
  • 0 Likes

PaloAlto Networks Discloses Confidential Security Information to Third Parties w/o customer consent

I just was emailed a Palo Alto Networks security report listing information on all of the wildfire submissions from our organization. This email came from a vendor that we had never purchased Palo Alto products from and contained detailed information about our environment. I was shocked and disturbed by this disclosure. Support refered me to ...

JohnWade by L2 Linker
  • 3823 Views
  • 4 replies
  • 0 Likes

Bootstrap the VM-Series Firewall on ESXi

I have an OVA of PA VM-100 series version 8.0.5.I'm trying to follow the article for "Bootstrap the VM-Series Firewall on ESXi" at: https://www.paloaltonetworks.com/documentation/71/virtualization/virtualization/bootstrap-the-vm-series-firewall/bootstrap-the-vm-series-firewall-on-esxi and having some trouble.When preparing the bootstap package i...

Resolved! How do I block Image search?

Hi I am fairly new to Palo's and I am trying to figure out how I can block search engine image searches. I know there are currently no real app-ids that cover this and just wondering if anyone has a way to block all image search results on the big search engines such as google.

Pooch87 by L0 Member
  • 5359 Views
  • 4 replies
  • 0 Likes
  • 24337 Posts
  • 124 Subscriptions
Labels