General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4118 Views
  • 0 replies
  • 0 Likes

Can't add tunnel interface created by restapi, to Security Zone using restapi.

Using restapi to create IPSec tunnels for a new firewall attached to Panorama. I create the tunnel interface using restapi. I can see the new interface successfully created in Panorama. When I try to assign that interface to a Security Zone it fails with: "Invalid Object: Branch-VPN -> network -> layer3 'tunnel.781' is not a valid ref...

I.Miller by L0 Member
  • 1011 Views
  • 1 replies
  • 0 Likes

questions while creating first IPsec tunnel

We have our egress on Eth1/1 with a public IP assigned by our provider. We also own a separate public subnet. We have the internet working and want to add an IPsec tunnel from our PAN to a partner also running PAN. I'm told to continue using the Eth1/1 interface. Do you see problems with this solution? Diagram attached. Eth1/1 is untrust. It h...

Resolved! HA State is "not sycned" even though Sync Task is completed on Peer (Passive) Gerät)

Hello,There are a few config differences between Active/Passive Firewalls like (asssigned Auth. Profil under Device section, login banner, snmp features)When i perform sync it shows on Task Manager of Passive Firewall it is succesfully synched. However on the Active Firewall it shows us always "not synced" here is the show high avaiabiltiy st...

fkuecuek_0-1728893393917.png
fkuecuek_1-1728893480464.png

How to limit concurrent GlobalProtect connections per user

Hi communit So far it isn't possible to limit the concurrent GlobalProtect connections per user directly in PAN-OS. There is a feature request #4603 for which you can vote and wait/hope that this will be implemented. If you need a solution (workaround) right now, once more the PAN-OS API is your friend. Because we (like probably some or a lo...

Remo by L7 Applicator
  • 53700 Views
  • 39 replies
  • 16 Likes

Find more info about process based on PID

The command 'show system resources' lists the active processes and their PIDs and their resource utilization, but is there another command where based on the PID I can get more info about a specific process ? Similar to show jobs all shows all the jobs and show jobs id xxx shows more detailed info about the specific job based on the ID.

DHCP Relay

PC1 in DMZ Zone cannot receive IP from DHCP Server. I already allowed DHCP Traffic in firewall and also configure DHCP Relay which is ethernet1/4 interface with dhcp server ip 192.168.10.1 NOTE: i have configured vlan: 192.168.10.0/24

geminigumisong_0-1725427056164.png

Boot PXE Fog

Hello everyone, I have a little problem with my boot PXE with Fog server My station boot on port 69 at the gateway of his network Fog server and the station they are not in the same network. I tried to use DNSMASQ but that not resolve the problem Here is felt capture of my configuration : DNSMASQ on Fog: Option on Paloalto DHCP Service ...

asbui_0-1728633248747.png
asbui_1-1728633439225.png
asbui by L0 Member
  • 1323 Views
  • 1 replies
  • 0 Likes

log rotation alarm in the Panorama?

Hello community! The firewalls generate an alarm when certain % of the log quota is reached: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClktCAC In Panorama you don´t have those alarms. In a Panorama-VM Logs are purged actively when 5% of the allocated quota is left or if the available space is less than 50 GB, ...

Carracido by L4 Transporter
  • 1058 Views
  • 1 replies
  • 0 Likes

Delete logs in /opt/panlogs can select specific date?

Hi All, i have question on this KB : How to Clear Logs To Reduce Disk Space usage on /opt/panlogs - Knowledge Base - Palo Alto Networks can we chose to delete the logs by specific date? if there any command or KB to do it, can do please share. Thank you

logdb quota question

Hi , in show system logdb-quota as per screenshot i found something weird information As you can see, the system log is have max allocated 12.91GB, but why actual disk usage for system logs can be reach 61GB ? Can anyone know and explain about this ? thank you

Unable to Log Into Customer Support Portal

Hello. I just made an account with Palo Alto. I'm trying to get access to the IOS files for my company's Palo Alto devices to get them updated. When I try to access the Support Portal, I get an "unexpected error," which directs me to customer support phone numbers. Those numbers led to automated menus, which terminated the call and advised...

CVE ID

Device details : PAN-PA-5060 / Palo Alto There are 6 CVEs in the advisory. DESCRIPTION: CVE-2024-9463: CVSS: 9.9CVE-2024-9464: CVSS: 9.3CVE-2024-9465: CVSS: 9.2CVE-2024-9466: CVSS: 8.2CVE-2024-9467: CVSS: 7.0CVE-2024-9468: CVSS : 8.2 Kindly confirm, if these CVE IDs are impacting FW/panorama at all. Also, I am not able to find any source...

  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels