General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4440 Views
  • 0 replies
  • 0 Likes

Very Slow Commits

Anyone who's used Palo's since the early days may roll their eyes at this question..! We have a bunch of 3020's and one can take an age to perform commits; for example this morning we performed 4 - the first 2 took <30 seconds, the 3rd took >10 minutes, the 4th took >30 seconds. The only aspect to the 3rd commit that I can think was dif...

apackard by L4 Transporter
  • 3632 Views
  • 3 replies
  • 0 Likes

UserID Reporting Computer Names

Quick question. We are having some issues where a users' computer name i.e. acme\pc01$ is being reported by UserID rather than the user i.e. acme\jbloggs. Anyone seen this before and\or advice what it could be? We have a horendously complicated UserI setup so not going to go into detail, but suffice to say that I'm sure that's part of it! Thanks

apackard by L4 Transporter
  • 7389 Views
  • 8 replies
  • 0 Likes

Kerberos SSO with Globalprotect and User-Logon

Hi Community, I have a strange problem with Kerberos SSO and Globalprotect 4.0.7:I set up Kerberos SSO and the SSO is working.If you connect to the Globalprotect-Portal via browser, you directly get a Kerberos ticket and the SSO works. If you logout from Windows 10 and you login again, you have a Kerberos-Ticket assigned, but the global protect ...

Chacko42 by L4 Transporter
  • 3014 Views
  • 1 replies
  • 0 Likes

Resolved! virutal router and ipsec settings for vsys admin

Dear All, We created a seprate vsys and assigned l3 interfaces and virtual router for a vsys. But vsys admin which is assigned for it is unable to view virutal router tabs and ipsec configuration tabs. We want this vsys should be handled completely seprate, this vsys need not to share or depend on interface, shared gateway or other...

Resolved! PAN OS 7.1 Dynamic Scheduled Update Failing

Hi Everyone, I have recently started to help a team support our Palo Alto's and was tasked to get our Panorama Server to push dynamic updates out to our Firewalls (PA 3050). Originally we had the individual firewalls setup to update themselves, but wanted to mange this through Panormama, so i setup the schedules (Anti Virus, App & Threat and...

9sobey by L0 Member
  • 2929 Views
  • 1 replies
  • 0 Likes

Resolved! Wildfire API

i am working on paloalto VM version 5.0.6 and tying to read reports from wildfire with the help of API using cURL.i am pulling the report on the basis of "device_id" and "report_id" but getting error.curl -i -k -F device_id=[SERIAL NUMBER] -F report_id=[TID FROM LOG] -F format=xml are above options are supported in version 5.0.6?if yes then anyt...

Resolved! General Interface status?

Hi folks, We have a PA-200 over in London (on the recall list) that get complaints that the internet has intermittent connectivity issues.Everytime I login to it, the interface (1/1) is up, green, and no indication of a problem. Other than contacting the service provider about outage status, does anyone have method(s) on the firewall to determin...

OMatlock by L4 Transporter
  • 4341 Views
  • 4 replies
  • 0 Likes

User activity report

Hi Team, Customer trying to utilize Palo Alto to generate user activity reports that show detailed web browsing. I understand from other articles (https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/monitoring/view-and-manage-reports/generate-usergroup-activity-reports) that the browse time isn't something that the firewalls have the...

sprabhu by L3 Networker
  • 2154 Views
  • 1 replies
  • 0 Likes

Resolved! Best Practice for HA1 IP address

I have a lots of customers who uses HA pair with 1.1.1.1/30 and 1.1.1.2/30 for HA1 port.This HA1 port connected directly. And reason for selecting these IPs are because nobody was using it in the past. Today, I read this article:https://blog.cloudflare.com/announcing-1111/https://www.theverge.com/2018/4/1/17185732/cloudflare-dns-service-1-1-1-1 ...

emr_1 by L6 Presenter
  • 4932 Views
  • 3 replies
  • 0 Likes

Resolved! DNS not working

Hi There, I am new to Palo Alto and we are currently simulating PA VM ESX-7.0.1. I try to implement DNS but though I have reachability to the DNS server (google DNS) my address resolution is not working as expected. Please find the snap below. Thanks in advance Prashanth

snap.PNG

Resolved! What is mean log .1 .old

Hi all, I would like to know about log cache example mp.log.1 or mp.log.old extension .1, old how it occurred and in this case usually with compromise or disk full

Global Protect IPSec/SSL

Hello, If global protect fails to establish a IPSec tunnel and uses SSL instead, does it attempt to switch tunnel types if it sees it can do a IPSec tunnel or will it keep it's current tunnel type until the GP client get's refreshed and sees what connection it can establish? The reason I ask is because Global Protect is extremly slow when it us...

URL Filtering with no block page

Is it possible to have URL filtering by category with just a quiet drop of traffic, no reset or block page? Basically I want to filter without people knowing I am filtering, they just can't connect to a bad website. I can't figure out how to do that; everything looks like URL filtering requires some sort of response page.

Resolved! Identify Policy Deny Source

I am seeing some decrypted sessions hitting an allow rule, but the session end reason gets logged as a "policy-deny". Here is a screenshot of one example:In the above example, rule "outbound" is configured as:Source Zone: MSUNSource Address: AnyDestination Zone: CharterDestination Address: AnyApplication: AnyService: AnyAction: AllowSecurity Pr...

policy deny.PNG

Resolved! Authentication error Gprotect

Hi, we have a cluster of PA5020 with PanOS 7.1.12. Yesterday we had a problem, the Global protect authentication was failing. So we failover the cluster and it worked again. Today this problem has happened again. Looking in bug we could be hitting this bug. So i would like to confirm if we are hitting this bug. How could we check "proxy memory"....

bug.JPG
  • 24375 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels