General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4126 Views
  • 0 replies
  • 0 Likes

How to IPSec over GRE with dynamic routing

I saw a document on how to configure VTI tunnel with OSPF. But that is for PAN-OS 4.1. Does anybody know if PAN-OS 7.1 supports GRE tunnel? I need to configure IPSec over GRE on the Palo Alto to talk to a Cisco router. Thanks

jac101 by L2 Linker
  • 4515 Views
  • 2 replies
  • 0 Likes

Resolved! How to Implement Certificates Issued from Microsoft Certificate Services?

Hi folks, I am starting my journey to configure Global Protect VPN. First I am trying to create/install a SSL certificate from my internal Microsoft CA. I see articles for subordinate, but I do not have that. Just a stand alone Microsoft CA. This article indicates that I need to eventually export the certificate (after submitting csr to CA an...

pacsr.jpg
pacsr2.jpg
pacsr3.jpg
pacsr4.jpg
OMatlock by L4 Transporter
  • 16676 Views
  • 7 replies
  • 0 Likes

Resolved! Viewing offloaded sessions in CLI

System is a PA-3050 running SW version 7.1.7 Does the CLI still show the "Offload: yes" output in 'show session id <session-id-#>' for this version of software? I recall seeing this flag for certain sessions in prior versions. Lately I have been troubleshooting some issues and have not seen that flag for any of the sessions being viewed. H...

Resolved! Monitor tab empty

PANOS 8.0.0Definitely forwarding and policies working.But monitor tab simply empty.. restart did nothing.?

mpgioia by L3 Networker
  • 9259 Views
  • 14 replies
  • 0 Likes

help with NAT

hello im wondering if anyone can help a PAFW newbie with configuring some nat that i am trying to pass through. i dont know how my security & nat rules should look but this is what i have configured: security rule: source zone (untrust) source address (any) destination zone (untrust) destination 99.99.99.13 Acceptnat rule: source zone (untr...

bwfreas by L1 Bithead
  • 2923 Views
  • 3 replies
  • 0 Likes

Resolved! IPsec tunnel questions?

Hi folks, We have several IPsec VPN tunnels for various remote firewalls connections. One of them is changing their firewall hardware to something else next week. Sonic firewall, I believe. I've been told that they are configuring the new replacement hardware with the same settings as before including same peer IP address.NOTE: I will backup ...

OMatlock by L4 Transporter
  • 4062 Views
  • 5 replies
  • 0 Likes

Resolved! moving away from a disconnected panorama

Hi All,we recently got disconnected from the parent company and I ended up with all the network access and policies that I can't edit, and i'm afraid to touch the disconnect from panorma without asking first... If I disconnected, will the policies becames local ann I can edit them? or what's the best scenario? I'm database developer that inheri...

JasonY by L1 Bithead
  • 5651 Views
  • 6 replies
  • 0 Likes

Resolved! 7.0.8 to 7.1.8 upgrade - H.323 not working

Dear All, We have recently upgraded as the title suggests, and since upgrading our Polycom Group series video conference units are not working correctly on H.323 protocol. When we connect to either a public video bridge or direct to another Polycom device, we are unable to hear the caller ont he conference. This was previously working in 7.0.8...

Threat and general reports

I am new to the Palo Alto and I'd like to generate threat and monitoring reports. Are there any webcasts on generating custom reports? Thanks

jac101 by L2 Linker
  • 2702 Views
  • 2 replies
  • 0 Likes

PAN-OS 8.0 Decryption Issue with Firefox and Chrome

After uprading my lab to pan-os 8.0 The forward Decryption failed when using Firefox and Chrome.IE 11 en Edge still works. For example when i go to www.google.com, Chrome displays: www.google.com uses an unsupported protocol. ERR_SSL_VERSION_OR_CIPHER_MISMATCH Firefox: Advanced info: SSL_ERROR_NO_CYPHER_OVERLAP In ...

password recovery

Hi, I pressed "M" while booting and i am not getting the console after that. Kindly someone help me to resolve this issue. Regards Suresh Kumar8197826493

Resolved! Custom Application ports secure at Layer 7?

Hi folks, We have created an Application override and custom Application for SIP and RTP traffic. We also have Security/NAT rules that allow only this application (ports 5060, 5061, and 6000-8000) access to an internal VM with public IP directly. As I am still learning PA, wanted to ask. Since we are using an Application (and override) that we...

SIP1.jpg
SIP2.jpg
pasbcrule.jpg
PAnatrule.jpg
OMatlock by L4 Transporter
  • 8063 Views
  • 12 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Liked Authors
Labels