General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

Brute force attack

The PA showed one of the pc's on my network was the source of brute force attack to the Netherlands so I blocked it. Anyone have any ideas what needs to be done to remediate the issues on the PC?

jdprovine by L4 Transporter
  • 4585 Views
  • 9 replies
  • 0 Likes

Resolved! Master Key extending time issue

Hi All Experts, I am currently having an issue while attempting to extend a Master Key validity time: 2017-07-21 00:08:20.473 +0100 ------------ Received event:3 (Cfg installed) in worker thread ------------2017-07-21 00:08:20.475 +0100 [3] Reading mkey, ks files...2017-07-21 00:08:20.475 +0100 [3] Get fips/cc mode, event_type2017-07-21 00:08:2...

master key.JPG

EDL for Office 365 DoD Tenant

I installed Minemeld and found the office365-config.yml file to import in order to build my External Dynamic Lists. Unfortunately, we are not using the commercial tenant for O365, so I'm wondering if anybody knows of a different file that you can download to mine the necessarry URLs to get the IPs that are used for that tenant instead? Maybe it'...

[Install Error] Ubuntu 16.04 - No repository field

Hello, I'm trying to install Minemeld on Ubuntu 16.04. https://github.com/PaloAltoNetworks/minemeld-ansible $ ansible-playbook -K -i 127.0.0.1, local.yml I receive the following fatal error during the npm install: TASK [minemeld : npm install] ************************************************** fatal: [127.0.0.1]: FAILED! => {"change...

PAN 5060 7.1.11 HA Election Settings Frozen in Web UI

I experienced an issue when using the UI in 7.1.11 on a PAN 5060 I disabled "Preemptive" in the "Elections Settings" area of the "Device -> High Availability -> General" page in 7.1.10. It has a template from Panorama, so the change is saved as an override. I upgraded to 7.1.11. When I tried to enable "Preemptive", by reverting the overrid...

LesSmith by L1 Bithead
  • 6172 Views
  • 10 replies
  • 0 Likes

How to know peak throughput using on palo?

HiFrom command "show system statistics session" , we can see real-time throughput value.Is there a way to know or collect those value ?, we want to see the maximum/peak throughput been using on palo.From what i think. (not sure if we can do these method?)1. Is there a way to using API to collect throughput value , then we can plot them on excel...

Timeout sessions - custom app

Hi, We are having problems with Oracle sessions because a offloading sessions. we have solved this problem rising timeout for this app. I would like to know if we create a custom app, this offload process is still working over this custom app? https://live.paloaltonetworks.com/t5/Management-Articles/How-Does-the-Device-Manage-Offloaded-Session/t...

Resolved! 3rd Party Rack Mount for 2x PA-220

I'm looking at picking up a 2 device 1 unit 19" rack mount for my HA PA-220s off of Amazon. I want to make sure this won't affect my support since it's not an official Palo Alto tray. Am I ok with this? Thanks!

wbtech by L0 Member
  • 3471 Views
  • 3 replies
  • 0 Likes

Bounty question live from Ignite2017: chance to win an Live Community hoodie!

Community member @KyleVonFange came up to the booth and asked an interesting question he got this morning. We're posting it in the discussion forum and the right answer gets a chance at winning a Live Community hoodie! What is the best way to set up a steelhead behind a virtual firewall so that only a couple internal IPs (both directions) ar...

reaper by Cyber Elite
  • 6796 Views
  • 9 replies
  • 0 Likes

Google Authentication With Server Profiles

Hello, Does anyone know if it is possible to have Palo Alto authenticate with Google? We are using LDAP and Google. The problem I have is that when a student signs in on a Chromebook, we can only get reports for the IP address. I would like to be able to trace events back to students without having to do a lot of work. Thank you.

mperez1 by L0 Member
  • 2472 Views
  • 1 replies
  • 0 Likes

Resolved! Strange system error messages

Folks. I have a pair of 3050's in a HA cluster, and recently I'ver been noticing some weird messages ont he system log on the primary. I happened to log into the secondary the other day, and say a heap more. has anyone seen messages like the following Failed to upload the new HA URL file to RAM.Failed to upload the old URL file to RAM,Starting w...

darren_g by L4 Transporter
  • 5611 Views
  • 5 replies
  • 0 Likes

Resolved! SSL/TLS vs. Chrome [missing_subjectAltName]

I'm trying to get rid of the warning when I open the PA GUI from Chrome. I'm getting the following warning:This server could not prove that it is 192.168.10.4; its security certificate is from [missing_subjectAltName]First of all, IE is fine, no errors! I have generated the certificate and imported it as my trusted Root CA:I have also created a ...

cert import.JPG
Hwinter by L2 Linker
  • 8114 Views
  • 2 replies
  • 0 Likes

OSPF annomoly

Hi I have OSPF setup on an interface and a policy that allows OSPF from any to any . But I see a lot of aged-out / unknown log entries and some are with 0 bytes is this normal .. OSPF seems to be stable, but it very strange ..

  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels