General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4443 Views
  • 0 replies
  • 0 Likes

Resolved! Error: Threat database handler failed (Module: device)

I got two devices 3020 and is running with HA Active/Passive.First, I have download and install "Application version 384-1877 (07/18/13) and Threat version 384-1877 (07/18/13)" on the Active device and I select Syns ... to peer.After that, I issue "request restart system" on the passive device.Next, when the passive device reboot sussesfully, th...

same subnet multiple VRs not working

I am trying to setup SDWAN, however this firewall currently has several Site to Site VPNS which causes an error on deploying site to site vpns. I am trying to setup a second WAN address to be usedonly for SD WAN. Currently my public ip is 2.2.2.2/24 on ethernet1/2. I converted it to a trunk vlan 2 (2.2.2.0/24) as the native vlan and the tagged v...

mmercald by L1 Bithead
  • 1583 Views
  • 1 replies
  • 0 Likes

How configure to receive email when an Importan action is required

Hello, From my colleague I have received the info about Upcoming November 18, 2024 Deadline for NGFW User-ID and Terminal Server (TS) Agent Certificate Expiration where I need to set and receive that Important Emails? is because I'm the responsible of all PA's Firewall on our organization but I don't know where subscribe to receive that ema...

S.Liloia by L0 Member
  • 930 Views
  • 1 replies
  • 0 Likes

Receiving too many alerts when a ISP or Tunnel link goes up or down.

Hello. I have a Palo Alto PA-440 We have enabled path monitoring for our ISPs, with the destination address/monitor IP set to 8.8.8.8. The ping interval is set to 3 seconds, and the ping count is 5. Additionally, we have configured and enabled system email alerts for the severity level "Critical". As soon as any of the ISPs is down or the route ...

System-log-test --1.png
Rehaman by L0 Member
  • 1285 Views
  • 1 replies
  • 0 Likes

PA- Security Policy Destination as FQDN issue

Dear Community, I am facing an issue were the i have post security rule allowing the access to some FortiGuard URLs, on the other hand i am have a default deny rule with reset-both action right above to the interzone & intrazone policies. What actually happening is the traffic will hit the allow policy and right after will hit the default...

Unable to access HTTP & HTTPS

When I switch from passive to active, I can't access the application via http and https. But I can ping and telnet the application via port 443

thanhlb by L1 Bithead
  • 2607 Views
  • 8 replies
  • 0 Likes

Split Tunnel - Exclude Client Application

Hello, I am setting up a new Global Protect gateway. We previously havent setup Global Protect (GP) before with Split tunnel so this is my first time and its not going smoothly..i am trying to exclude client applications for some software we use. being a media company, we often need to tranfer large files to partners. there are well known applic...

DevPatel by L1 Bithead
  • 1830 Views
  • 3 replies
  • 0 Likes

videoparse.jar detected as Grayware

"videoparse.jar" is detected as Grayware in Wildfire but not found now. why this was flagged malicious ? File hash : 844ccde43fa61803f1643401600e17dced86c60509ee340ae83b332a068f8dcc VirusTotal - File - 844ccde43fa61803f1643401600e17dced86c60509ee340ae83b332a068f8dcc

HA Pair - peer version too old

I have two hardware gateways in a HA pair running 9.1.19. Ive upgraded one to 10.0 and then to 10.1.14. It now complains that the HA 'peer version is too old' and it has suspended HA. If i suspend HA on the remaining 9.1 gateway, HA doesnt activate on the 10.1 gateway. If i suspend the 9.1 gateway and try to manually "make local device functi...

Build in tool to test throughput

Hello experts, Im wondering if Palo Alto firewalls have a build in tool to test throughput on specific interface. We are trying to use iperf on an endpoint and test channel utilization from the firewall or if possible, firewall acting as iperf server. Thanks in advance.

Resolved! Difference Between 1 and 2 VM-Series Firewalls Without Subscription Licenses

Hi Team, I am looking to understand the practical differences between deploying 1 unit and 2 units of Palo Alto VM-Series firewalls, particularly without any subscription licenses. I am aware that subscription licenses enable services like Threat Prevention, URL Filtering, and WildFire, but in a scenario where no subscriptions are used, what w...

Vulnerabilities

The vulnerabilities which it will show in vulnerability assessment are live or any particular time the data get updated?

  • 24375 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels