General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 397 Views
  • 0 replies
  • 2 Likes

input logs firawall

Hi, is it possible to add information imported from another event log to the logs of a Palo Alto firewall?

axelfa by L2 Linker
  • 880 Views
  • 2 replies
  • 0 Likes

HA upgrade oddness (no preempt)

Hello,

just seeing if anyone has an explanation or has experienced this before.

I followed the HA firewall upgrade guide and experienced this unexpected behavior.

i suspended the primary, ( secondary went active), installed the new os, and rebooted. 

...

VK9H13 by L2 Linker
  • 822 Views
  • 2 replies
  • 1 Likes

Possible NAT issue on a PA-3260

Folks, I am trying to configure a NAT policy which should be bi-directional. Here the traffic can be initiated from outside or the inside. The policy is configured and I can see NAT hits. However, this policy does not work.

 

The NAT IP is from a sub

...

Resolved! Panorama Software Upgrade

Hi All,

 

Just wanted to confirm I have the process right.

 

We're running Panorama, M-100 appliance (32GB RAM), managing 3 pairs (6 no) of PA-3220 firewalls.

 

All currently running PAN-OS 8.1.5. Looking to upgrade to the next major stable release, curren

...

API for Code Repo

Hey, can anyone tell me the API to fetch the code repositories? 
Earlier I used to use this : https://<console>/api/v1/coderepos?id=<reponame> 
But now it's not working. Can someone please help me out with the same. 

Thank you 

Captive portal authentication over TLS

Hi, I've enabled captive portal on our systems, following the PA docs (Configure Authentication Portal (paloaltonetworks.com)). I have an SSL/TLS profile created with a valid, trusted certificate signed by our own internal CA. When our machines try t

...

Redundancy for Global protect VPN

Dear Friends,
We have a customer who is Currently configured with GP- Global Protect for VPN is connecting with ISP-1, one Public IP / One ISP-Internet Service Provider.
 
Requirement is, can we configure as backup or as redundant with another ISP-2
...

Add disk collector panorama (missing)

Hi,

 

We are trying to add a new disk in collector (panorama). We follow the correct procedure and we can see the disk running: show system disk details. This is the disk:

 

Name   : sdh
State  : Present
Size   : 2097152 MB
Status : Available
Reason : Ad

...

disk.JPG
BigPalo by L4 Transporter
  • 1545 Views
  • 7 replies
  • 0 Likes

User-ID - Windows Server 2022 , not working

We are running a Windows server 2022 and PA-3220.  I have the user-agent put on a seperate Win 2022 server.  The firewall when communicating with server is getting dropped code 5986.  Under my Server Monitoring it shows Connection refused(0).  

tnewton by L0 Member
  • 1509 Views
  • 2 replies
  • 0 Likes

Resolved! DHCP Relay for GlobalProtect

I'm trying to setup globalprotect where once a user successfully logs in, they pull an IP from our dedicated, internal DHCP server with all the DHCP options. So essentially, setup Palo Alto for a DHCP relay for the GlobalProtect clients. I was trying

...

Resolved! CVE-2024-0010

Hi there everyone.

Could please someone clarify for me what versions are affected regarding CVE-2024-0010 as seen here?

https://security.paloaltonetworks.com/CVE-2024-0010

My inquiry goes for version 10.1.11-h5. Is it affected or not? Because I belie

...

Koulentis_0-1708063049201.png

Resolved! SSL/TLS Vulnerabilities

Dear Team , 
 
We have a customer, who found SSL/TLS Vulnerabilities on audit SSL/TLS configuration The firewall supports weak cipher mode CBC.
kindly provide the solution to remediate the weakness. 
snip attached for Refr.

  • 23688 Posts
  • 109 Subscriptions
Top Solution Authors
Labels