General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2183 Views
  • 0 replies
  • 0 Likes

PAN 5050 Migration to PAN 5220

We are planning a migration from hardware 5050 to 5220. The PANOS migration will be from 6.1.16 to 8.0.2 (oe whatever 8.x version installed on the new 5220 hardware).

 

I am looking for advise for the upgrade process. 

 

 

GlobalProtect Clients fall back to SSL

Hi,

 

Our GP Clients initially try to establish a connection over IPSec, but fall back to SSL every time. I can see the IPSEC traffic coming in and being allowed and do not know how to find why the tunnel is not establishing over IPSec.

 

Any ideas on ho

...

SARowe_NZ by L3 Networker
  • 3702 Views
  • 2 replies
  • 0 Likes

Resolved! Force Safe Search without SSL decryption

We are a K-12 school district.  SSL decryption is not in the cards, at least for the time being.  From what I read, enabling safe search enforcement in URL filtering profile will not work properly without having implemented SSL decryption

 

If that's c

...

Setting up Panorama as a log collector

Hi

 

I have tried reading and following some of the manuals and well.... argh.

 

So I have 1 HA cluster of PA-3060 and 1 VM panorama.

 

I have upped the spec of the vm - to allow me to change into panorama mode. I have added a 100G SCSI drive sdb added it

...

Global protect - multiple gateway on one IP

Hello,

 

 

I just migrated from cisco ASA to Palo Alto. 

Before, i used Cisco VPN Client (IPSec) and i managed to access to a network or host, or services by username. One security profile by local user.
For this fonctionnality, i used just 1 Public IP an
...

Resolved! Wireless and PA200 homelab access

Hi

 

Iam trying to find a good solution to my home and homelab network.

 

i put together a drawing of the current layout.

How can i access mye homelab 10.0.0.0/24 via my wireless 192.168.1.0/24 when i am home?

and how can i access my home 192.168.1.0/24 an

...

Untitled 1.jpg

Resolved! Global protect company pc and user pc

Hi

 

I have a working GP setup. I have setup the agent to be always on, prelogon and auto login when the user logs in.

 

No I want to use the same setup to allow users at home to setup their PC so they can connect, 

I do want to use the global protect age

...

Does PANOS support NTPv4 ?

Answer: PAN-OS devices can update their own clocks (as clients passively consuming the time, not servers giving out the time) using NTPv4.

Outside of time syncing PAN-OS also supports autokey and symmetric key (introduced in PAN-OS v6.1 as part of the

...

dhshah by L3 Networker
  • 3129 Views
  • 2 replies
  • 0 Likes

Resolved! Link monitoring characteristics?

Hi Folks,

 

We have configured HA recently and trying to understand the features of Link monitoring.

 

We are considering Link monitoring only first since we want to consider our local firewall port health first.

 

We configured a Link monitoring group on

...

OMatlock by L4 Transporter
  • 8916 Views
  • 8 replies
  • 0 Likes

Group Mapping error

Hi Guys,

 

After setting up an LDAP profile i am trying to map over the groups.

When i go through the process of expanding the domain i get this error:

 

"op command for client useridd timed out as client is not available"

 

Does anyone know what could be c

...

TAOR200 by L0 Member
  • 5370 Views
  • 1 replies
  • 0 Likes
  • 24253 Posts
  • 119 Subscriptions
Top Solution Authors
Top Liked Authors
Labels