General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 89 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 793 Views
  • 0 replies
  • 0 Likes

Resolved! LDAP auth for the WEB UI access clarification

Hi All,

 

Why do we need step 3 mentioned in the KB below for the WB UI authentication with LDAP?:

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGuCAK

 

 

Why do we need to create a local user? Won't Palo be an LDAP proxy (gra

...

LDAP.PNG
myky by L3 Networker
  • 7431 Views
  • 7 replies
  • 0 Likes

I cannot delete a virtual wire interface

Hello,

 

I've already looked at similar topics here, but it did not help me.

 

I'm supposed to set up a DHCP server on ethernet1/2 and to do it, I need to set up ethernet1/2 as a layer3 interface on the CLI first.

 

Initially, I tried these commands:

...

Variables is DNS Proxy rule?

Hi, 

 

My question would be, is it possible to use template variables to set primary end secondary dns for DNS proxy rules in Panorama?

 

I can set a static entrys' IP address value to a variable defined in the template, but can't find the way to do the

...

Resolved! global counter tcp_case_2

I am running a set of vm-series VMs on Azure. From time to time there is packet loss for traffic going through one of these VMs, I am trying to find a metric to monitor that.

I could not find a metric exposed through SNMP, but looking at the global c

...

frigault by L1 Bithead
  • 321 Views
  • 2 replies
  • 0 Likes

Resolved! A question about ECMP

Hi,

    I saw a function named ecmp on palo alto NGFW, I think that it can make outbound traffic load balance on two or more physics line or logic line. And I also saw there was a inbound interface information in the session table of firewall.

   So

...

Resolved! SNMPv3 read-only permission

hello all,

 

i'm trying to create snmpv3 user account with read-only permission but when i went through the option on GUI there was nothing about specifying the permission whether it's read-only or read & write.

 

i would really appreciate the help.

Question regarding Signal messaging application

Currently have a PA-440 at home and trying to setup Signal messaging application.  I know the application is cert-pinned and therefore cannot be decrypted.  To get it to work, I added to the SSL Exclusion Decryption list the following hosts/domains p

...

CONFIG logs and syslog

Hi there,

 

we're shipping our logs to a centralized syslog instance. That works great for all types of logs from the PA with the exceptions of the CONFIG logs.

The CONFIG logs are submitted at all, with the problem that the interesting parts "before-ch

...

GlobalProtect 6.3.3

Our vulnerability scanner for the last couple weeks has been reporting vulnerabilities for GlobalProtect that are remediated with an upgrade to 6.3.3, but other than the vulnerability acknowledgement from PA mentioning it I do not see any evidence of

...

C.Osborn by L0 Member
  • 2060 Views
  • 3 replies
  • 1 Likes
  • 23992 Posts
  • 115 Subscriptions
Top Liked Authors
Labels