General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4455 Views
  • 0 replies
  • 0 Likes

Issue with PA-1410 platform disk size

Hello Team, Recently we have deployed PA-1410 in our datacenter and since first day we are having issue with disk space in loggin. and after contacting the support, logging is not more than a week which is not accepted from our side. I know that the PA-1410 disk is 128GB. Did any one met with a similar issue? what was the solut...

Need to block chrome-remote-desktop from outside coming in

I've been on this project for a few days with no semi-success. i have a PA VM-200. I've used the built-in 'chrome-remote-desktop' protocol, and doesn't work. The description seems to say this protocol is in BETA and is for the support function fo the chrome-remote-desktop. ive tried blocking the following ip addresses/networks172.217.0.0/1621...

source-ips.jpg
service-url Category.jpg
log1.jpg
log2.jpg
b8cons by L0 Member
  • 13311 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama hypervisor support

Hello PA community, Customer run an internal scan where it turned out Panorama is running on an End of Life Hypervisor (CentOS 8). Indeed, we can notice this as mentioned on below doc: https://learn.microsoft.com/en-us/azure/virtual-machines/workloads/centos/centos-end-of-life *CentOS 8 - December 31, 2021 we checked the below compatibilit...

Global Protect connections fails after 20-30 seconds

Hello, We have an issue with a Global Protect connection failing for some users in couple of seconds after we migrated from PA 3000 to 1410 series FW. PA 3000 was 10.2.9 and the new FW came with PANOS 11.1.2-h3 version. For the users with the problem, the connection is established correctly, they get the tunnel IP and can access resources, bu...

RafaelGarcia_0-1727368158358.png

Resolved! Difference between apps and contents

Dear PAN community,When a new 'Applications and Threats' signature is release there are typically two versions that have the same Version name (e.g. 350-1658) but then differ in the File Name and Features description.As a current example, Applications and Threats Version 350-1658 was released on 2013/01/15 and there are two of them, one with Fil...

tommyluke by Not applicable
  • 7597 Views
  • 5 replies
  • 0 Likes

Panorama high MIB memory

Hello community! We are monitoring the Panorama system resources and we get alerts regarding memory (MIB). We don´t have any performance issues though. Can you advice if the following memory levels are fine or it´s too little memory free? > show system resources top - 15:54:07 up 144 days, 33 min, 1 user, load average: 0.68, 0.76, 0.87...

Carracido by L4 Transporter
  • 3310 Views
  • 4 replies
  • 0 Likes

Starting from PAN-OS 11.0 version, is the only interface link duplex set to auto?

Dear Team, I noticed something unusual during testing. Starting from 11.0, the only option for interface link duplex setting is 'auto'. I've checked the changes and restrictions in 11.0, but there are no explicit details about them. Is this by design? Could this be a bug? I checked both GUI and CLI, but couldn't configure it. The OS ...

KyungjunCHOE_0-1721887749138.png
KyungjunCHOE_1-1721887749141.png
KyungjunCHOE_2-1721887749275.png

Negate networks within an object group

Hi, is it possible to negate certain networks within a rule? example.. src (192.168.0.0/16) and dest (10.0.0.0/8) action Deny but want to negate dest 10.200.0.0/24 in the same rule so that 192.168.0.0/16 cannot talk to 10.0.0.0/8 but can talk to 10.200.0.0/24 (allowed lower down the order) the FW negate option negates all the objects within ...

PA_nts by L4 Transporter
  • 1507 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama will not upgrade as a stand alone.

Hi guys new here. The problem I'm having is my panorama will not upgrade. Of course I get the "requires a content version of 8529 or greater". I've look that up and found out I needed to download the latest content(APPS and Threats), did that but I get an error stated that encfilesize is 91802736. No matching apps package found. I'm have 2 new F...

Myoung1 by L1 Bithead
  • 2477 Views
  • 5 replies
  • 0 Likes

Resolved! Exempt alerting for specific threat

We have an open wifi network and do see lot of coinhive spyware threat alerts. Recently a user genrated in excess 30000 email alerts for CoinHive JavaScript Detection. We don't want to block the user and also the external IP is not single one. Firewall is set to reset-bot on detection. We just don't want to see this email alert, is there a worka...

raji_toor by L4 Transporter
  • 6252 Views
  • 6 replies
  • 0 Likes

Resolved! ION CLoudGenix Devices Offline

Hi Team, Has anybody experienced any issue with CloudGenix ION devices where you can SSH onto the device but actual on the Prisma Cloud Portal all the CG devices shows offline ? I have one of this issue where I can remote into every single ION device but on the cloud portal all of them are showing offline. Any help would be much appreci...

H.Suthar by L0 Member
  • 2325 Views
  • 3 replies
  • 0 Likes

Decrypt STARTTLS SMTP protocol but not blocked Virus File

The mail server resides on the network inside PaloAlto.I am trying to add a feature to use STARTTLS for SMTP/25 from the mail server to the Internet. I implemented STARTTLS decryption (Forward Proxy) on the PaloAlto and sent an email with Eicar Virus to the Internet via the mail server and it was sent without being blocked. The PaloAlto threat l...

Hogewo by L1 Bithead
  • 1459 Views
  • 2 replies
  • 0 Likes

Block Exchange ECP externally

Hello team, We are experiencing with our hosted exchange server on the cloud. Despite efforts from our Server team to block ECP access from external networks, it remains accessible. The team has suggested blocking ECP for external networks only. I have attempted to address this by creating a URL filter and applying it to the security policies,...

  • 24376 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels