General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Panorama Upload/install fail

Hi,

 

We are having task failed for the task: "UploadInstall". I attach a screenshot:

 

 

We dont know why this task is failing. What is the means for this task "uploadinstall"? where can we know why is not being completed?

 

 

 

tasks.JPG
BigPalo by L4 Transporter
  • 830 Views
  • 1 replies
  • 0 Likes

Resolved! Windows-Based User-ID Agent for User Mapping issue

We are using Windows-Based User-ID Agent for User Mapping. But For last few days, for some users Paloalto FW shows U-ID mapping as below instead of actual username. If anyone can explain this behavior it would be appreciated.

 

 

 

3ce0226582b332e5cd9121636128484c_0-1661948046541.png
Bijesh by L1 Bithead
  • 837 Views
  • 1 replies
  • 0 Likes

BGP Import and Export Routes - HELP

Hello, 

We have a connection with our Business Partner. This BGP over IPSEC Tunnel. We have configured an IPSEC Tunnel and then a BGP Peering over the tunnel. We are sending our DNAT IP range (Public) to them by configuring export routes. They are re

...

Resolved! PCNSE certification for v10

Hello,

Does PCNSE certification available for panos 10 also or currently it is for version 9.x only?

I am planning for the certification so need help.

d.spider by L2 Linker
  • 2439 Views
  • 5 replies
  • 0 Likes

In Wildfire how do we disable weak TLS ciphers?

Nessus scanning is picking up TCP/443 TLS v1.0 and v1.1 on our WildFire (WF-500) appliances.

 

Is there a way to turn off TLS v1.0 and v1.1 on the WildFire ?

 

Below is the Nessus scanner notification.

-------------------------------------------------

...

session end reason as 'Threat'

hello everyone,

 

Firewall is showing session end reason as 'Threat' in traffic logs for the traffic blocked under url filtering profile.   this is showing repeatedly, i'm afraid is consuming the Data Plane CPU.  IT could be the action of blocking or

...

YParreno by L1 Bithead
  • 1292 Views
  • 4 replies
  • 0 Likes

Resolved! decryption rule

Hi Everyone,

 

I want know how we can check which decryption rule is being used for a particular traffic.

 

Thanks

Virender

 

vsingh31 by L1 Bithead
  • 1061 Views
  • 3 replies
  • 0 Likes

Resolved! App-ID

Good Morning,

I am currently working with a PA 3220 firewall that has no licenses. Does App-ID work right out of the box without a license? On security policies I see under the ‘apps seen’ column it is identifying apps. If you use the apps found unde

...

jaah1231 by L0 Member
  • 952 Views
  • 2 replies
  • 0 Likes

Configure HA3 on a non HCSI interface for PA220

Hello Everyone,

 

Need to put my PA220s in active-active mode, I know they do not come with a HSCI port, can I use a normal Gigabit interface for my HA3 interface and just set them to HA?

 

Should I be worried about any stability or performance issue

...

Resolved! Certificate Error in GP

Hi Team,

 

I am getting below error while try to connect to GP. 

 

 

When I am try to connect to the portal getting this error, any suggestions? before it was showing continue but not it is not showing. 

 

Usually it will give the option to proceed

...

SubaMuthuram_0-1661322421146.png