General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 646 Views
  • 0 replies
  • 0 Likes

Over 110% untilization

I am seeing my management plane spiking over 100% when do a preview and a commit, what could be causing that ? Also can a defrag be run or need to be run on the hard drive?

jdprovine by L4 Transporter
  • 7199 Views
  • 27 replies
  • 0 Likes

VM based PAN FW

Hi,

I have not been able to list the interfaces on VM based PANOS 7.1.0 after the VM PAN FW boots successfully. 

interfaces have been set to vmxnet3 type on VM settings. I have configured 3 interfaces (1mgmt and 2 data). assiged the static mac-address.

...

Minmeld on Unbuntu

Hi,

 

We run a hyper-v shop so I am looking to set this up on Unbuntu. Just a few questions before I set off on the install:

 

Can we install with the most recent version of Unbuntu? Is there a reason I need to run it on 14.x?

I didn't resource requi

...

Minemeld engine stopped - error starting engine

I would like to create ipv4 output based on the aws ec2 and route 53 miners. I cloned miners, aggregator and output from prototypes. When I hit commit nothing happens. I can see the processes stopped under System. If I hit restart for the engine, I g

...

Resolved! VLANs for HA links

Hi all,

 

I am configuring two PA 3060 in A/A HA across datacenter. All the HA links from a PA in a DC will be connected to the core switch. Is it possible to put all HA links, i.e., HA1, HA2, HA3, HA1-backup, HA2-backup, in a single VLAN? Or does each

...

AlbertJJ by L1 Bithead
  • 4069 Views
  • 4 replies
  • 0 Likes

User-ID Hierarchy Design

So we have our device groups laid out like this, there’s more but you get the idea. Shared > Regional > Site.

The devices are members of the Site device group, and have a master device allowing me to push User-ID rules down through Panorama. If I want

...

problem with IP helpers after migration

We're migrating from a PA-2020 to PA-3020.

PANOS 6.1.12

 

Config migration went fine. And most functionality is ok on the new device.

However our IP helpers don't work anymore. We use them on tagged subinterfaces.

All subinterfaces on one interface connec

...

dieter_b by L4 Transporter
  • 4973 Views
  • 5 replies
  • 0 Likes

User-ID inconsistancies

Hello,

 

It's not the first time that I am facing this kind of issue :

 

Context : PaloAlto FW with (multiple) userID agents in a single (or multiple) Microsoft domain and user id based security policies.

 

The User ID feature seems at a glance to be worki

...

logs.JPG

Resolved! RDP NAT connection issue?

Hi folks,

 

For test purposes, I am trying to get RDP to work going through my PA-200 OS 6.1.4 to an internal PC.

I've been following several articles like this one, but not getting it to work.

https://live.paloaltonetworks.com/t5/General-Topics/MS-RDP-N

...

RDPNAT.jpg
RDPsecurity.jpg
OMatlock by L4 Transporter
  • 4971 Views
  • 7 replies
  • 1 Likes

Resolved! NTLM authentication fails

Hi all,

 

I'm facing an issue with captive portal and NTLM.  The SSO (NTLM) fails and the users must enter the credentials via the web-form. I've attached print screens from Wireshark and the output from the userid.log:

 

PAN-OS: 8.0.1

User-ID Agent: 8.0.

...

c1.jpg
c2.jpg

No Block Page when accessing Blocked Categories over HTTPS

Hi there,

I have recently noticed that when I test access to URLs of blocked categories over HTTPS, I do not get a 'Blocked Page' display from the Palo. It just says the Page Cannot be Displayed and show the connection was reset.

 

The URL filtering log

...

Bocsa by L3 Networker
  • 7729 Views
  • 6 replies
  • 0 Likes
  • 23945 Posts
  • 113 Subscriptions
Top Liked Authors
Labels