General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

User-ID Agent Connected Status Shows Red

This is a PSA for anyone having issues connecting/ setting up the User-ID Agent program on a Windows server.After installing the correct User-ID Agent from Paloalto's support site, you need to make sure you've set correct security/ access settings for the user you will bind to the agent. I found these instructions pretty easy to follow.https://k...

Unable to add AD group to Group Include List

System logs showing error: User Group Count of 'xxxx' Exceeds Threshold of 1000. I am trying to shrink the group numbers by using specific user group. Issues: 1. on Panorama template setting, there is no option to select the user group, pls refer to attached screenshot. 2. On firewall local device, i tried to configure configure by override fr...

After upgradation no traffic flow between DMZ to WAN

Hi Team, I hope you are doing well. One of our customers is attempting to upgrade their PAN-OS version from 11.0.4-h1 to a higher version, as the 11.0 version is nearing its end-of-life. The issue encountered is that whenever we upgrade beyond version 11.0.4-h1, communication between the DMZ and WAN zones is lost. Specifically, after the u...

Error deleting custom URL categories?

I created a custom URL category and then tried to delete it and got this on the validate, any ideas please? Operation ValidateStatus FailedDetails member corp-blocking-exclusions is an invalid referenceInvalid blockInvalid url-filtering corp defaultInvalid url-filteringInvalid profilesInvalid vsys vsys1Invalid vsysInvalid configurat...

Panorama and firewall upgrades schedule

Have a question related to the upgrades; Can i schedule the Panorama software upgrade ? Also , can i schedule the Managed firewall upgrades through Panorama ? I see schedule option for App and threat updates but not for PanOS images

Resolved! User-ID from multiple sources - what takes precedence

Hi,We are setting up user-ID with agents on member servers, checking domain controller event logs. We also run an internal globalprotect gateway.With both active and potentially providing the same user-ip mapping, which one does the firewall user? the one from GP or the one from the DCs?Thanks,Shannon

SARowe_NZ by L3 Networker
  • 6328 Views
  • 3 replies
  • 0 Likes

Error when renewing Certificate "Failed to read certificate"

Hello Bro, Recently, I was trying to renew a certificate but I received the error "Failed to read certificate". I have tried it like 4 times receiving the same error. Tried by renewing the CA first or by the child first, both cases I receive the same error. error message attached. Any ideas Bro, TIA

SYSTEM ALERT : high : Number of hints on disk has exceeded 5000 due to log forward failures

Hello I receive many alerts with subject SYSTEM ALERT : high : Number of hints on disk has exceeded 5000 due to log forward failures. I do not have panorama (never did). Is there a way for these alerts to stop. Below is the alert i received from email. domain: 1receive_time: 2024/05/29 13:18:52serial: xxxxxxxxxxseqno: 7373667907529615763action...

kvagenas by L1 Bithead
  • 2848 Views
  • 3 replies
  • 0 Likes

Certificate not valid

I am trying to setup Machine authentication, where it actually validates the machine certificate, I have a PKI infrastructure, that pushes certificates to the machines, with there name in Common Name, and SAN, of the machine hostname. On they Certificate Profile i have enabled CRL, and added both Root and intermediate CA, and set username to su...

Spiff_21 by L1 Bithead
  • 69763 Views
  • 4 replies
  • 0 Likes

radius and PANF gui

Hello , I have integrated Radius with VM FW the ssh to FW works . I have not created any local user on FW , All users are on radius server but gui to FW does not work with radius account ; when i enter radius creds in gui , it accepts and comes back to the login screen again ? Is that a known issue I created 10 users in Radius and a...

LDAP

We plan to enable channel binding for LDAP on our domain controllers. Since the firewalls use LDAP for querying AD information from the domain controllers, do we need to make any configurations to the firewalls to be compatible?

Captive portal auth with Client Certificate as first auth method and local auth as fallback

Hello team, To identify my users, I have used Captive Portal with ldap authentication profile.Then I removed the ldap from the captive protal config and added a "Certificate profile", and it works well as well. However, when I assign both an ldap profile AND a certificate profile to my captive portal configuration (Device> User Identificatio...

Rule has application any and port 3389 we see discard for application cotp

We have security policy to allow any application on port 3389.I see users are able to connect to server on port 3389. traffic log shows denied on application cotp.my understanding is that if you have application as any it should cover all the applications.why it is getting denied on app cotp for port 3389? Running PAN os 8.1.9

MP18 by Cyber Elite
  • 15725 Views
  • 9 replies
  • 0 Likes
  • 24413 Posts
  • 125 Subscriptions
Top Solution Authors
Labels