General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4110 Views
  • 0 replies
  • 0 Likes

Is anybody else reporting AD issues after upgrading to PAN OS 7.1.14

Hi PA Members, So far, seems to be there is only one person having AD issues after upgrading to PAN OS 7.1.14 (https://live.paloaltonetworks.com/t5/General-Topics/PAN-OS-7-1-14-AD-issues-after-update/m-p/191745), the same member also reports PA being aware of this issue and correct it on the next release PAN OS 7.1.15. We would like to avoid ha...

PA firewall can't properly reassemble fragmented packets if the traffic is asymmetric

Hi PA Expert, We have a network environment that have an asymmetric routing and fragmented traffics. Model: PA5060PANOS: 8.0.6-h3Method: vwire modeNo security profiles applied, no zone protection, no QOS, just single security policy that allow all. Already applied this setting to allow asymmetric: set deviceconfig setting session tcp-reject-non-...

CLI show session all filter - negation

Hello I need to show all session with destination IP 2.2.2.2 from all my worstation but not from my 1.1.1.1 How to do that?Negation using "!" doesnt work (works perfectly in GUI) show session all filter source !1.1.1.1 destination 2.2.2.2 RegardsSLawek

_slv_ by L4 Transporter
  • 4247 Views
  • 4 replies
  • 0 Likes

Resolved! I can't get IPs from output of minemeld in autofocus.

Hello, I can't get IPs from output of minemeld in autofocus. Please refer to the follwoing message and then give me any assistance. I can see IPs when I enter the follwoing url on a browser. https://0b2b72a3.paloaltonetworks-app.com/feeds/feedMCWithValue-Malware-IP vsys1/ActiveCampaignsIPv4: Next update at : Mon Jan 29 12:03:25...

Resolved! Disable possibility of Commit

Hi, I want to know if there is some way to know ifIn which scenario, we can guarantee that a PaloAlto device united to Panorama (For "x" reason) can give a COMMIT that involves a complaint from the Business Unit. Or there is a button ("Disable" in Panorama) that will help us with something similar and only enable when something specific is requi...

RCastro by L1 Bithead
  • 4666 Views
  • 4 replies
  • 0 Likes

Resolved! Best Practices for PAN-OS Upgrade without downtime

Hello all, i have Active /passive firewalls how can i upgrade PAN-OS without downtime ?? 1-when i upgrade active , it will reboot then passive will be active .. 2- When i upgrade the new active is it will be back to old active again ?? what about OS mismatching is it have any impact on HA 3- If both devices will be for VPN ? Tunnel will be down ...

Failed upgrade

I tried to do an upgrade from 7.1.13 to 7.1.14 and it appeared to install fine, but the ports, all the ports, failed to come up again. So I rolled it back to 7.1.13 and it went back to working fine

jdprovine by L4 Transporter
  • 3710 Views
  • 6 replies
  • 0 Likes

Upgrade from 7.0.12 to 8.0.6-h3

Hi, I have checked the PAN-OS upgrade document and find it bit confusing. Using standalone device. Can someone please confirm if the following upgrade path will be correct? 7.0.12 —> download 7.1.0 —> Install —> RebootDownload 7.1.15 --> InstallDownload 8.0.0 —> Install —> RebootDownload 8.0.6-h3 —> Install —> Reboot Than...

Farzana by L4 Transporter
  • 4163 Views
  • 6 replies
  • 0 Likes

Resolved! Upgrading from PA500 to PA220

Sales team reached out to me recommending that we upgrade our PA500 to the PA220. We are a small company with a data pipe of 100MB. We do not have a lot of settings on the PA500. On an average we have around 1500-2000 sessions per the UI Home page. Looking at the ACC, I set it to 24hours and athe highest is around 22,000 (looks like about an ave...

jharlow by L3 Networker
  • 7693 Views
  • 7 replies
  • 0 Likes

PANGP Virtual Adapter Not Created

Hello, The company I work for uses Global Protect as their VPN (transitioning from AnyConnect) and I am having an issue after install. This is a Windows 7 PC, HP Compaq Pro 6300 SFF, and it does not create the PANGP Virtual adapter. GP version 4.00.02. I have not found an issue in the knowledge base so I am asking here instead. Any insight o...

RQinD4 by L0 Member
  • 2610 Views
  • 2 replies
  • 0 Likes

commit lock

Is it possbile to apply a commit lock prior to and upgrade and still be able to upgrade the OS?

jdprovine by L4 Transporter
  • 1741 Views
  • 1 replies
  • 0 Likes

User-ID with Azure AD

We currently use User-ID with an on-premise Active Directory server. We are planning on moving to Azure AD (not to be confused with AD services in Azure). Are there any plan on getting User-ID to work with AzureAD (web Auth)? What other options can I use to continue to use User-ID if we do not have Active Directory on premise? Thanks.

jharlow by L3 Networker
  • 10022 Views
  • 8 replies
  • 0 Likes

Resolved! Version 7.1 for PA-850

Is there a way of getting 7.1 onto an 850? Need to get new firewall into service soon, ideally managed by Panorama. Panorama is on 7.1 and it seems cannot communicate with the 850 as it has shipped with 8.0. Won't be able to get Panorama upgraded in time due to change control restrictions.Can deploy firewall as standalone and bring under Panoram...

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels