General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4472 Views
  • 0 replies
  • 0 Likes

Inter Vsys Throughput Limitation

We are currently testing out a PA-5220 in a POC. We have run into a strange issue with througput limitations when traffic is passing between Vsys. On a single Vsys (L2, L3 and vWire), we are able to max out 10Gb's using a single TCP session with iperf3. As soon as we introduce another Vsys into the equation and route traffic between them, sin...

ImBatman by L1 Bithead
  • 4206 Views
  • 2 replies
  • 0 Likes

failover

Is there anything such as a particle failover with a palo alto firewall? Can it start to failover and suddenly fail back and block some traffic

jdprovine by L4 Transporter
  • 9004 Views
  • 22 replies
  • 0 Likes

Several sessions outage/interface drops

Hi, We have a PA-5050 with PaNoS 7.0.7, we are expecting that there are moments during the day when the traffic increases that there is a outage for several sessions, but the sessions are still very low for this PA-5050. And we dont know why some sessions are not being established. We would like to discard if this is caused for PA. Looking the P...

PAN as proxy destination?

Does anyone know if I can configure a web browser to use the PAN device as the proxy? We used to have an ISA as that proxy but after installing the PAN's (two 500's in HA) the ISA waqs moved to a DMZ and only helps with incoming connections to things like webmail and sharepoint.

Panorama 8 not receiving PA log

Hi, We are deploying a new Panorama 8 VM (in Panorama mode) and configured it to receive log from a PA-5020 running PA 7.0.11.The Panorama GUI not show any log. I've debugged it in CLI: > tail follow yes mp-log logd.log2017-07-18 16:05:36.213 -0300 Error: pan_collect_log_stats(pan_log_handler.c:5704): Invalid record type 202017-07-18 16:05:36...

Resolved! Windows 10 browsing issues

We have a continuing issue with Windows 10 machines browsing SSL sites that are decrypted. We've had a ticket open for a couple weeks with no solution. It is intermittent and random, we cannot create the issue at will. Tech Support has verified Decryption Policy and Profiles are correct. You can see it happening in the Traffic Logs. The use...

kmullen by L1 Bithead
  • 3526 Views
  • 3 replies
  • 0 Likes

Resolved! How to download Palo Alto VM?

Can someone in this forum redirect me to the Downloads page for downloading PAN OS VM's, so that i can download them for KVM etc. and then order a license?

option 61 on dhcp client non-mgmt

I have ether1/1 assigned as my untrusted/WAN interface. It is in Layer 3 mode and has been set as a DHCP-Client. I need to tell the firewall to send a option 61 (clientid) as part of it's DHCP discover. I been looking though OS 7.1 and can't find it in the GUI or the CLI. Is this a option in 8.0. or am I just blind? I can see the options on the ...

PAN 5250 routing question

Hi guys, new with PANs but not with firewalls. Replacing our older Cisco ASAs with PANs and have a design question for larger installations (about 10,000 simultaneous users). We currently route our wireless traffic with two pairs of Cisco 6500/sup2Ts (layer 2 switch + router), and have a static route to send all traffic to the inside interface...

Resolved! URL DB recategorization

Hello ,We are currently using Panorama 5.0.11 Version .Most of the website is blocking due to this version .We have already requested brightcloud to recategorized the URL to new one .But still we are facing the issuue.Like widma.com coming to Adult and porn category .Also how to clear the URL cache via CLI.

tiwara by L3 Networker
  • 11399 Views
  • 8 replies
  • 0 Likes

Box - Control access

We are discovering more and more companies are using EFSS (or just FSS) solutions like Citrix FileShare, Box, OneDrive, Google Drive, and even Dropbox to share content. We have had a blanket deny policy for a long time so as to prevent using one of these services to store sensitive data with no ability to audit, but it is becoming clear that th...

Resolved! Reached max allowble probes

Users have no access. [Debug 988]: Reached max allowble probes, adding IP 10.100.xxx.xxx to queue for later processing. Probing 40 IPs, list contains 117 entries Reached max allowble probes, adding IP 10.100.xxx.xxx to queue for later processing. Probing 40 IPs, list contains 117 entries Probing IP 10.100.xxx.xxx failed. For initial probing...

Resolved! Can PA-200 or PA-500 be infected with Win32/Hupigon?

I had a puzzle today from my ISP suggesting that they are receing traffic infected with Win32/Hupigon from the management interface of my PA-200s and PA-500s. I don't route user data through the management interface. So, is it really possible that PA-200 or PA-500 can be infected with Win32/Hupigon?

bokeke by L0 Member
  • 2440 Views
  • 1 replies
  • 0 Likes

Is there a way to report or trigger email notification for correlated events?

I'm working towards generating some reports for our other IT departments and I noticed the correlated events have some really nice information that might indicate when someone is infected with Malware. I'd like to get that information over to our desktop support team but I'm not sure the best way to do it. I could certainly give them restricted...

jsalmans by L4 Transporter
  • 3918 Views
  • 2 replies
  • 0 Likes
  • 24379 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels