General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Failover (Active, Standby) 2 WAN Tunnel IPSEC

Hi All Expert,

I have a small question to ask you.
I have plan to use PA for this semester and try to find what PA can do.

I have more than 10 Partners dial Site-to-Site VPN with me.
One of 10 Partners have connection issue with my primary link, so PA wi

...

Change PAN Education Email Address

Hi All

 

My current work email address is used to log in to support.paloaltonetworks.com (super user, can add/remove users, see all our assets etc). It is also linked (not sure how) to my PAN Education login/transcript via SSO. 

 

I will be leaving my cu

...

smichie by L0 Member
  • 1447 Views
  • 1 replies
  • 0 Likes

PAN for NSX 6.3 and vSphere 6.5

Does anyone know if NSX 6.3 and vSphere 6.3 are officially supported for PAN yet? I looked at the release notes for 7.0 and 7.1 and they are both stating vsphere 5.5/6.0 and NSX 6.2. I have a POC lab with NSX 6.3 and vSphere 6.5 that i was looking to

...

plesogor by L0 Member
  • 1494 Views
  • 1 replies
  • 0 Likes

GlobalProtect Login Portal Redirect to 443

We're trying to find a way to redirect people trying to hit our Globalprotect login page on straight http to redirect to https seemlessly.  We thought we had this working with an inbound NAT policy with destination translation looking for original se

...

jsalmans by L4 Transporter
  • 6534 Views
  • 4 replies
  • 0 Likes

Panorama Certificate Expiration on June 16 2017

Dear valued Palo Alto Networks customers,

 

Palo Alto Networks firewalls communicate with Panorama managers and Panorama log collectors over a secure channel. For Panorama versions prior to PAN-OS 8.0, the signing CA certificate will expire on Friday

...

PAN-OS_screenshot.png

ikev2 VPN

Is it possbile to set up a VPN using ikev2 and if so is there a document of the steps to create it?

jdprovine by L4 Transporter
  • 2194 Views
  • 2 replies
  • 0 Likes

Issue with traffic over ipsec tunnel.

PA-3020 ,7.1.8. PA  has 3 tunnels with 3 sites.

 

Site1 - PA200 on other side tunnel traffic fine. ping from site1 to subnet behind Pa3020 works with 1472 mtu and fails after

that.

 

Site2- Tried to migrated from ssg140 to PA-3020,other side Cisco 871. Tr

...

Resolved! Palo Alto Mapping problem adding new groups

Hi,

 

we have a PA3050 and we are expecting a problem related to Group mapping. We have added two new groups in LDAP Group mapping profile. We can add these 2 groups using WebUIS "Included groups", we launch a refresh userid group-mapping but when we r

...

Resolved! Migration to Panorama for logging only

I have a quick question about moving an existing set of firewalls to Panorama.  We don't want to migrate the whole config, just want to get it setup so we can send the logs on the device to Panorama so we can utilize the benefits of log aggregation f

...

Resolved! Unused rules showing used

I just upgraded and rebooted my firewall. When I choose to highlight unused rules it is showing rules that I can not find any traffic for in the traffic monitor as used. I thought the reboot would reset everything but I have no idea why a rule that a

...

jdprovine by L4 Transporter
  • 4001 Views
  • 10 replies
  • 0 Likes

Automatic attack block

Occaisionally we get an attack from a single IP to one of our external servers where the attacker tries a whole bunch of known exploits. Is there anything like a "Zone Protection" for this type of attack? I'm looking for something where an external b

...

  • 24026 Posts
  • 102 Subscriptions
Labels