General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1330 Views
  • 0 replies
  • 0 Likes

How to allowlist a file form wildfire-virus

We have a file (Filex.exe) that is throwing blocks of the following type

 

Threat Type
wildfire-virus
Threat ID/Name
trojan/Win32 EXE.crypt.aexg
ID
213019932 (View in Threat Vault)

 

How do I add this exclude this file from alerting? I

...

Verac22 by L1 Bithead
  • 23 Views
  • 0 replies
  • 0 Likes

About CVSS version

Hello PaloAlto Networks Team,

 

What version of CVSS is listed in Palo Alto Networks Security Advisories?

Please tell me which version it is, such as CVSS v3 or v4.

 

Regards,

IPSec HA Failover - Feature Request NSFR-I-26043

As of this post, Palo Alto Firewalls do not sync Phase 1 for IPSec Tunnels. If a remote end is using Dead Peer Detection, this will cause the tunnel to go down after a failover occurs and the remote end DPD hits its threshold. Since the Palo no longe

...

spapesh by L1 Bithead
  • 448 Views
  • 2 replies
  • 1 Likes

Resolved! PCNSE Learning plan under maintenance

I have a question from my CBTS customer: they have a Network Security Engineer who has been going through the Beacon training in preparation for his PCNSE.
At some point last month, the course he was working on was changed to "Learning plan under main

...

kbettich by L0 Member
  • 313 Views
  • 1 replies
  • 0 Likes

Resolved! Access Palo Alto HTML Files

Hello, our user want to deploy Palo Alto Firewall 3410 with Os 10.2.2, for security reason then they do the vulnerability assessment but using different device but with same OS 10.2.2.

 

And the result is that they found 2 vulnerabilityissues, low an

...

Add Palo alto HA (existing config) in Panorama. Doubts..

Hi,

 

I need to add a cluster A/P FWs in Panorama. I was checking this useful link: https://www.mbtechtalker.com/migrate-a-ha-pair-of-pan-firewalls-to-panorama-management-2/ and videos on internet.

 

I have everything under control, but I'm a little

...

BigPalo by L4 Transporter
  • 539 Views
  • 3 replies
  • 0 Likes

Fetch Device Certificate failure

Hello,

 

I am getting this error (Failed to fetch device certificate.TPM public key match failed.) on a PA460 (11.0.2-h2).

 

I tried multiple solutions without success :

  • This KB https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000
...

Meed by L0 Member
  • 16075 Views
  • 11 replies
  • 0 Likes

XSOAR virtualization support

Dear All,

I would like to request official documentation or a clear statement regarding the virtualization platforms supported for Cortex XSOAR on-premise deployments.

Specifically, I would like to know:

  • Which hypervisors (e.g., VMware ESXi, KVM, Hy

...

VPN Tunnel - Routing and Hidenat from FW public IP

I am a beginner on the Palo Alto firewall. When to do IPSEC and NAT 

 

I need to create a NAT rule that will allow traffic from 77.221.253.132 - the partner only has 1 public IP address and it is on their firewall.
If I make a route to the public IP

...

Resolved! Vsys migration

Hello All, 

 

What is the best approach to migrate a Palo Alto firewall configuration with VSYS to another Palo Alto firewall (As is)?

Resolved! Does anyone have any experience with Expedition

Greetings from Detroit Michigan!


I have been tasked with migrating our current PA-5220 pair firewalls to a new PA-3420 pair.  I have been led to believe that the "Expedition" tool will help with this task.  The problem simply put is that the document

...

R.Gage by L0 Member
  • 570 Views
  • 2 replies
  • 0 Likes
  • 24183 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels