General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

How to add palo to multiple device groups

I am deploying two new firewalls. I have clone the existing templates and created new template stacks. I am not adding the firewall to the correct device groups and they have two VRFs in use. The old firewalls are detailed as YGC-FW1 and 2. The new are YGC-Palo-DC1 and 2. I have added the new to one of the new VRF groups but now I am unable to a...

MAllen_2-1732535519089.png
MAllen_0-1732535447632.png
MAllen_1-1732535488196.png
M.Allen by • L2 Linker
  • 2151 Views
  • 2 replies
  • 0 Likes

system resources snmp monitoring

Hello, We have sometimes occurencies of network outage because of particular trafic that leads to high load on packet descriptor and packet buffer on our PaloAlto PA-5220. We would like to snmp monitor the following values from the output of CLI command : show running resource-monitor packet descriptor (on-chip)packet buffer By using a monitorin...

SSL TLS

Can A Secured SSL And TLS Encryped Virtual Casino Can Be Decrypt To Get Any Sort Of Information Looking Throught

Resolved! PA-220 won’t get IP from ISP.

Hey, all. I have a PA-220 that I am trying to setup on my network. I connected it up and set up the layer 3 on it, then turned my router into an AP and lost all connectivity. Currently I have it connected to my modem on ethernet1/1, and As it is a residential connection obviously my IP is dynamic. I followed the dynamic configuration instruction...

Stop wsc files

Hi I know WSC is not on panos file types encoder list. My question is, how can i lower down download risk by using custom url filtering? How can i stop for example: Https://www.c.com/download/*.wsc?

chens by • L3 Networker
  • 1106 Views
  • 1 replies
  • 0 Likes

syslog-ng 3.5.4.1 failure on boot

Hi, We have integrated syslog-ng 3.5.4.1 on a client machine which sends logs to server which is running syslog-ng 3.16.1, some times, I see below error at the boot up of our targetsyslog-ng[1762]: Error opening control socket, bind() failed; socket='/var/lib/syslog-ng/syslog-ng.ctl', error='Permission denied (13)'and logs will not be sent to th...

User100 by • L0 Member
  • 3545 Views
  • 2 replies
  • 1 Likes

VPN Cisco concentrator/ISE - USER-ID log to PA

USER-ID log from VPN Cisco concentrator Dear Live community, how is everything going ? Have you ever had to do the following? We have to integrate a Cisco ASA, with Palo Alto, so that the PA receives from a Cisco ASA and/or Cisco ISE the users to be able to have mapper with USER-ID the users that connect by VPN. ( There is no global protec...

Metgatz by • L4 Transporter
  • 7158 Views
  • 7 replies
  • 0 Likes

Resolved! HA Firewall Device Migration/Hardware Swap

Need to replace an HA pair of Panorama managed, currently deployed firewalls (PA-5220s) with a different pair of Panorama managed firewalls (also PA-5220s), with minimum/no downtime; device licensing is different between #1 & #2 pairs, necessitating the swap. Proposed procedure (detailed in attached picture)- Copy Panorama DG/Template for H...

Resolved! Remote VPN gateway - IKE intitiator drop on Palo FW

Hi all, so a weird issue.. i have a pa1410 with multiple VPNs all working happy days. I have one client with a linux software based FW (cant recall fw vendor) we are using same ike/ipsec settings both ends all is good.. if i initiate vpn (test vpn ike-sa gateway xxxx) from Palo side, the VPN comes up and all is working.. however if client initi...

PA_nts by • L4 Transporter
  • 3171 Views
  • 6 replies
  • 0 Likes

Bad support from plaoalto

Bad support from plaoalto we have in customer support call center more then a hour to connect for P1 call its really surprise support from paloalto

mojeebk by • L0 Member
  • 14925 Views
  • 17 replies
  • 1 Likes

Activate Firewall with Expired License / Unknown Auth Code

I have a PA-440 on the shelf and want to make it a LAB unit. The support for the serial number expired on 12/15/2023. The device runs perfectly. I believe the original VAR is out of business. I tried my current VAR and was told the device was not registered. Is there anything I can do? I registered the device under my company's name, but the aut...

shobeav by • L0 Member
  • 3358 Views
  • 6 replies
  • 0 Likes

Black Screen Issue When Accessing GlobalProtect VPN

Hi everyone, Black screen issues are preventing me from using the GlobalProtect VPN client properly. Every time I launch the application and try to log in, the screen goes completely black, and I can’t interact with any options. I’ve already tried restarting my computer, reinstalling the client, and ensuring I have the latest version of Gl...

Resolved! How to show connected remote users with Panaroma

Hello directly at gateway you can show connected globalprotect users. Network - GlobalProtrect - Gateways - Info - Remote Users With Panorama you don't see the information about remote users. By the way - max user is in both views empty Using Panorama 10.1.7 Any idea how to see remote users with panorama?

kuschg by • L0 Member
  • 3870 Views
  • 2 replies
  • 0 Likes
  • 24460 Posts
  • 125 Subscriptions
Top Solution Authors
Top Liked Authors
Labels