General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4114 Views
  • 0 replies
  • 0 Likes

URL Link Translation possible?

Hello folks! We have Microsoft ISA 2006 server that we use as a web proxy (I believe the right term) to proxy ssl communication to/from our internal RSA server. Our PA 3020 device does NAT of our public IP to this ISA internal IP and ISA. Seems like this ISA server is using a Link Translation feature that translates the external/internal URLs ...

URLfiltering.jpg
OMatlock by L4 Transporter
  • 1857 Views
  • 1 replies
  • 0 Likes

VM-Series on Vmware Workstation Pro 12

Hi, I am trying to deploy a VM-Series appliance in a lab environment using VMWARE workstation and GNS3.The interface however don't show up. show interface hardware is empty.I have configured in GNS3 to use VMXNET3. And also verified the vmx config file is using this. Example config settings vmxf file. ethernet2.vnet = "VMnet4"ethernet2.connec...

RELFDM by L0 Member
  • 2432 Views
  • 1 replies
  • 0 Likes

iSSUE Enabled UsedID agentless in Palo Alto

Hi Team, We configured and using UsedID on our policy. 1 issue i've encountered is sometime PA can't resolve the UserID assigned for specific address. This happens only selective user and other user are fine.Question are:1. What would be the issue when PA can't resolve or just show unknown userid on logs?2. How to trouble and verify whether it's...

Resolved! Can't translate password

Hello, We are unable to commit changes on astandalone PA-200 as is shows the error message. Can't even create local accounts on the firewalls. Anything which uses a password generates this error. Any thoughts on this? Thanks in advance.

Error.png
Farzana by L4 Transporter
  • 6043 Views
  • 2 replies
  • 0 Likes

SSL Decryption for Chrome Browser

Hello, Below is our Decryption Policy. Using latest Chrome version.Security certificate used by the Palo is from the Windows domain PKI and is already implicitly trusted as this testing is from a domain connected Windows 10 device over Ethernet.It is working fine for IE but in Chrome it is showing like this: If I set the URL Category of Compu...

Decryption.jpg
SSLDecryption.jpg
Farzana by L4 Transporter
  • 3202 Views
  • 2 replies
  • 0 Likes

Resolved! Query on GP client password

Hello, Is there a way for the Global Protect Client on Windows machines to not save the client password between session? Thanks in advance.

Farzana by L4 Transporter
  • 3367 Views
  • 2 replies
  • 0 Likes

Resolved! Not licensed for vsys id 2

Anyone run into this one? I have a TAC case open as well.Receiving the following error on a 3060 cluster when trying to add a 2nd vsys. This is not being created on panorama, this is directly on FW01. PAN-OS-7.1.10 Error: vsys2 'vsys2' is invalid. Not licensed for vsys id 2

vsys-pic.png

Resolved! RIYADH

HELLO EVERYONE !! I GOT GENERAL QUESTION ABOUT ACC RISK FACTORIT REACHES 4.0DOES THIS WILL MAKE THE PALOALTO GO SLOW ? AND WHAT IS BEST VERIFIED APPLICATION THAT I SHOULD ADDSO IT CAN LOWER THE RISK . IF YOU HAVE A LIST THAT WOULD BE HELPFUL THANK YOU 🙂

Security policy zones after a source NAT

Hi, I'm migrating my security policy from a netscreen firewall to a Palo Alto firewall. I used the migration tool and I'm currently reviewing the NAT rules, and I'm getting a bit confused about security zones after NAT. - I have 3 interfaces : Trust, Unstrust, DMZ.- I have a public IP range, that has nothing to do with the Untrust interface. My...

Resolved! Example IP and port translation rule?

Hi Folks, Trying to learn a basic port translation example to relate to some work I have, but not working for me so far. I have a basic IIS web server listening on port 80. My security and NAT rule works fine for that.Now, I change my IIS web site to listen on port 8080 (website binding) and change my NAT rule to this below, but does not resolv...

portrule1.jpg
portrule2.jpg
OMatlock by L4 Transporter
  • 2392 Views
  • 1 replies
  • 0 Likes

wireless intemittent Router connectivity issue

Hi everyone,I have got an Huawei HG8245 wireless router with 40 mbps optical connection on it and as we are in the same room as of the wireless router itself we are connected through wifi and the issue is that when i ping to the Ip address given to the router i.e., the Default gateway there is a intermittent connectivity issue once the packets a...

Resolved! Unable To Connect To MineMeld Output URL Via EDL

Setup an EDL in Panorama to grab a IPv4 feed from a Minemeld (Autofocus hosted) output. Verified the EDL was pushed down to one of our PA-5050's and clicked on 'Import Now' from the 5050. EDL is not able to connect and system log shows following: "Unable to fetch external dynamic list. HTTP response code said error Using old copy for refresh."...

  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels