General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 468 Views
  • 0 replies
  • 2 Likes

Resolved! My PA-1410 logs for single day, why? how to solve?

Hello Team,

                 My new PA-1410 logging is not more than a single day when checking the traffic logs.

Previously I had PA-3220 I could checked months of logs.

whats wrong here in the PA-1410 loggin settings?

 

manager@PA-1410-Main(active)

...

Resolved! Regarding Security Advisory CVE-2024-3393

Hello Team,

   I have recently upgraded my pa-1410 firewall to panos ver. 11.1.4-h7, because its preferred version so far.

Today I have received this advisory link ...

https://securityadvisories.paloaltonetworks.com/CVE-2024-3393

I have DNS Security

...

Websites stopped working after update

Hello,

We have updated 10.2.6-h3 to 10.2.8-h3 earlier and recently to 10.2.10-h9 but in both times we had to do rollback to 10.2.6-h3 because our websites stopped working.

 

Everything else seemed to work except inbound traffic to these applications.

...

ToniE by L2 Linker
  • 128 Views
  • 2 replies
  • 0 Likes

Inbound TLS/SMTP inspection (to FortiMail)

Hi,

I'm wondering if anyone happens to be doing successful inbound inspection of SMTP/TLS to a FortiMail appliance? Or any other mail server for that matter.  I've run in to a brick wall when it comes to renegotiation. The Palo is serving the correct

...

Screenshot 2021-02-04 at 14.43.04.png
pkaren by L1 Bithead
  • 2793 Views
  • 2 replies
  • 0 Likes

Mulit-Vsys setup with Wildfire

Hi Friends,

 

We are planning for a multi-vsys PA setup, where one vsys will have only L3/L4 policies and second vsys will be in L2 bridge mode with Threat prevention features only.

Vsys1 will only scan L3/L3 policies while vsys2 will scan traffic fo

...

PaloAlto Passive Firewall Monitoring in HA Setup

Hi everyone,
Greetings!

I’m currently using OpManager to monitor a Palo Alto firewall in an HA Active/Passive setup, and the Link State of the interfaces on the passive device is set to auto.
While OpManager is able to correctly pull interface details

...

USER111 by L0 Member
  • 21 Views
  • 0 replies
  • 0 Likes

Cortex XDR

 How to Create a child tenant in cortex XDR?? 

 

I created the Parent Tenant and its activated but there is no option to create the child tenant!!

Cortex XDR Cortex XSOAR 

AAlsaadi_0-1735493194074.png
AAlsaadi by L0 Member
  • 149 Views
  • 0 replies
  • 0 Likes

PA-VM sysd_construct_sync_importer

We got a customer that runs into this issue recently, it's a known issue (not public) for versions 11.0.0, 10.2.3, 10.2.2-h1 (and also to us 10.2.3-h2, 10.2.2-2).

When you run into this, means that there's a hardware issue, please go to TAC in order

...

Palo FAIL TO LOGIN.png
Gabeeh by L0 Member
  • 7987 Views
  • 8 replies
  • 3 Likes

PA-1420 QinQ

Does the PA-1420 support QinQ tagging terminating at the Firewall? We have a L2 connection with an ISP to Azure and they require QinQ tagging. We do not have an ISR or other router to do it for us at this time.

 

Thanks,

Steve 

smzr34 by L0 Member
  • 16 Views
  • 0 replies
  • 0 Likes

upgrading PAN-OS

Hi 

 

I want to upgrade the 8.1.x to the latest version , after two upgrade stay on 8.1.24. I tried to move to 9.0.X but failed. Could you please let me know how I can upgrade to 9.x? (As information that I have find need the Preferred release It mea

...

Deep Packet Inspection and SSL Certificate

Hello, newbie here. One of our clients asked me: 

 

"We have an exchange server which is on site.  We need to renew the ssl certificate, I was told that if the Palo Alto firewall performs deep packet inspection, we need to supply the ssl certificate

...

N.MANTUA by L0 Member
  • 185 Views
  • 1 replies
  • 0 Likes

Export Codes - HS/ECCN/CCATS

Hi, 

 

I'm looking to obtain the export codes for some Palo Alto Network products.  Can anyone point me in the right direction to obtain these?

 

Thankyou, 

db2505 by L1 Bithead
  • 8051 Views
  • 25 replies
  • 0 Likes
  • 23707 Posts
  • 110 Subscriptions
Labels