General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Require Assistance on MineMeld AWS setup

Hello All, I am tring to setup Minemeld on aws with help of below mention article, however no success. https://live.paloaltonetworks.com/t5/MineMeld-Articles/Running-MineMeld-on-Amazon-EC2/ta-p/72039 Request, if someone help me in setting the platform. Thanks in advance.

sam2016 by L0 Member
  • 1917 Views
  • 1 replies
  • 0 Likes

Log forwarding to PAN and syslog?

I use panorama to configure and push policies as well as log forwarding (to the panorama) for all my firewalls. I now want to send all those logs (traffic, threat, data, etc..) to a syslog server as well but running into a problem when doing this. It seems I can't push/create a syslog server on the PAN and add it to the 'panorama log forwardin...

pan-log-forward.JPG
drewdown by L4 Transporter
  • 3626 Views
  • 5 replies
  • 0 Likes

Inter-routing between diffrent Virtuel Router

Hi Brothers, Plz help me, i have a scénario wich i must configure every interface with its own Virtuel router, and i need to make routing between this virtuel router. Ex:Ethernet1/1 has VR1Ethernet1/2 has VR2How i can make routing between VR1 & VR2 ?? plz your help

How to update the Check URL category web link on PAN

The weblink on my PAN devices is going to the old website https://urlfiltering.paloaltonetworks.com/testasite.aspx so I get a page not found error. How do I update this weblink to go to the new website which should just be https://urlfiltering.paloaltonetworks.com. Here is a screenshot of the weblink I am talking about

check-url.PNG

Dual GW on 1 firewall with 1 A-record

Hello there 🙂 Following situation has evolved on our company network and I'm not 100% sure it's the best solution. As system engineers we use the GlobalProtect to login to work and do our things. The setup: ISP1 ----active/active---- ISP |PA3050 ----active/passive---- PA3050 Very straightforwa...

b.visee by L1 Bithead
  • 6406 Views
  • 14 replies
  • 0 Likes

No Information on Core0 and Core3 - PA 220

Hi everyone, After reading the topic "How to Troubleshoot High Dataplane CPU", I realize that my PA 220 got no information on Core 0 and 3. Anyone meet this case ? If this is an error, I need to open a support case ?Thanks in advance for your help. Best regards,Mr. Tuan

resource.JPG
natuan by L0 Member
  • 2861 Views
  • 2 replies
  • 0 Likes

Resolved! CLI output filter

Hello,I would like to know if there's way how to "chain" multiple variables after pipe in some command to filter the output, something like:<command> | match <param1>|<param2>For example:show running security-policy | match index|source|destination|application I tried to play around with quotation marks, brackets and so on but ...

User-ID Configuration multiple different domains

Hello ; We have configured Captive Portals with LDAP on a Windows Server and it works perfectly fine but now we have planned to add another different domain in LDAP & User-ID configuration but we have some problems which indicates access denied. After running the command less mp-log useridd.log it shows the following response on the end of l...

Ghafar by L1 Bithead
  • 11884 Views
  • 8 replies
  • 0 Likes

Resolved! How to create multiple policy objects using Panorama

Is there any quick way to configure multiple policy objects on Panorama? especially looking to configure hundreds of fqdn objects to push them to firewalls managed through panorama so using GUI is quite a lot of work. e.g. for standalone PA, it is quick using CLI commands

Migration of Palo Alto VM series from one host to another

Two PaloAlto Virtual appliances has been deployed in HA mode on Customer site. Device models: VM-200We plan to migrate the virtual firewalls to another host via VMWare Vmotionfeature. Issue is: the status of licenses of the firewalls. We have information that the licenses will be lost in that case. What is essential to do to recover remove...

Radmin_85 by L4 Transporter
  • 5287 Views
  • 2 replies
  • 0 Likes

Traffic flow

Is there a good way to determine if the traffic flow through you firewall is optimal and the most efficient?

jdprovine by L4 Transporter
  • 6431 Views
  • 8 replies
  • 0 Likes

Active/Active HA with OSPF is dropping packets when innactive member becomes active

I am seeing an issue where upon pulling the plug in an active/active setup, OSPF does it's job. A few packets are lost but it is within an acceptable range. My issue stems from when the innactive member comes back online and joins the HA. I can't confirm this, but it feels as if the OSPF routes are coming up before the FW services are ready t...

ImBatman by L1 Bithead
  • 4452 Views
  • 4 replies
  • 0 Likes

Resolved! Outputs Limit! Service restart loop @ 30+

So the title is a slight misnomer.Have a dev server with 59 miners, 42 procs, and 32 outputs, works fine.Have a prod server with 58 miners 41 procs and 29 outputs, does not work fine. The two devices are set up with "identical" configs the dev server having a few extra test nodes.On the prod box, as soon as I add a 30th output node the service g...

0isac0 by L1 Bithead
  • 6107 Views
  • 5 replies
  • 0 Likes

Resolved! Security policy that permits traffic to any *.office365.com ?

I see there is an FQDN option for Destination Address when I create a security policy.I want to permit port 993 to any host in office365.com. Will it work if I just put office.comin the FQDN destination? Trying to put the * wildcard causes the widget to gray out theOK button. Thanks!

  • 24413 Posts
  • 125 Subscriptions
Top Solution Authors
Labels