Network Security
Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Network Security
Post questions, provide answers, share best practices, and connect with peers and experts in this area dedicated to all things Network Security.

Browse the Community

Next-Generation Firewall Discussions

Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

1748 Posts

VM-Series in the Public Cloud

The VM-Series is the virtualized form factor of the next-generation firewall. Use this discussion as a resource to discuss VM-Series deployments across public clouds like AWS, Microsoft Azure, Google Cloud Platform, Oracle Cloud, and Alibaba.

703 Posts

VM-Series in the Private Cloud

Use the VM-Series form factor to safeguard Private Cloud deployments. Use this forum to discuss deployments from VMware ESXi, VMware NSX-V, VMware NSX-T, KVM, Nutanix, Hyper-V, Openstack, and Cisco ACI.

109 Posts

CN-Series Discussions

CN-Series is the Palo Alto Networks' container native version of the ML-powered Next-Generation Firewall designed specifically for Kubernetes environments.

16 Posts

AIOps for NGFW Discussions

This forum is to ask questions, provide answers, and troubleshoot queries related to Palo Alto Networks’ AIOps for NGFW, the industry’s first AIOps solution for Next-Generation Firewalls.

155 Posts

Panorama Discussions

Post discussions about Panorama, a centralized network security management solution for all your Palo Alto Networks firewalls irrespective of their form factors or locations, in this forum.

827 Posts

GlobalProtect Discussions

GlobalProtect discussions offers topics about our network security for endpoints that protects your organization's mobile workforce. This area is dedicated to GlobalProtect discussions to help you answer questions.

2042 Posts

Strata Logging Service Discussions

Strata Logging Service (formerly known as Cortex Data Lake) enables AI-based innovations for cybersecurity with the industry’s only approach to normalizing and stitching together your enterprise’s data. Join the discussion now.

32 Posts

AI Runtime Discussions

Welcome to the AI Runtime Security discussion area! Here, you can engage in conversations about AI Runtime Security, explore new insights, and stay updated on ongoing discussions.

3 Posts

Strata Copilot Discussions

Welcome to the Strata Copilot discussion area! Here, you can engage in conversations about Strata Copilot, explore new insights, and stay updated on ongoing discussions.

6 Posts

Web Proxy Discussions

Welcome to the Web Proxy discussion area! Here, you can engage in conversations about Web Proxy, explore new insights, and stay updated on ongoing discussions.

15 Posts

Advanced SD-WAN for NGFW Discussions

Welcome to the Advanced SD-WAN for NGFW discussion area! Join us to discuss field topics, address customer and field concerns, share suggestions, community recommendations, new feature requests, or exchange best practices and design ideas.

16 Posts

Strata Cloud Manager

Strata Cloud Manager is our AI-powered solution that enhances network security management, prevents disruptions, and simplifies operations across SASE and NGFW platforms. The names for AIOps, NGFW, Prisma Access, and SD-WAN have been updated to Strata Cloud Manager in the product UI.

49 Posts

Quantum Security Discussions

Palo Alto Networks customers can now start to protect their encryption from the threat of Quantum computers, by migrating to Post Quantum Cryptography (PQCs). Ask your questions or provide insightful answers in the forum specific to Post Quantum Cryptography.

1 Posts

Cloud Identity Engine Discussions

Cloud Identity Engine is the industry's first cloud-native identity synchronization and authentication service providing a single, secure user identity across Palo Alto Network's on-prem and cloud product lines.

38 Posts

Activity in Network Security

Unable to block download and upload for chatgpt and messengers

Hi Friends, Recently i am trying to acheive an requirement where i want to allow messenger and chatgpt in my network but files uploading and downloading should be blocked. I tried configuring decryption and flie blocking profiles along with two seperate policies blocking chatgpt-base and messenger-base applications. I am able to decrypt the...

Satyak by L3 Networker
  • 33 Views
  • 0 replies
  • 0 Likes

About PAN-183404

Attention: Global TPM team, Hi, I have a question about PAN-183404.// PAN-OS 11.1.10 Known Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-10-known-and-addressed-issues/pan-os-11-1-10-known-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 59 Views
  • 1 replies
  • 0 Likes

About PAN-293673

Attention: Global TPM team, Hi, I have a question about PAN-293673.// PAN-OS 11.1.10 Known Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-10-known-and-addressed-issues/pan-os-11-1-10-known-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 52 Views
  • 1 replies
  • 0 Likes

About PAN-241694

Attention: Global TPM team, Hi, I have a question about PAN-241694.// PAN-OS 11.1.13-h1 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-h1-addressed-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 55 Views
  • 1 replies
  • 0 Likes

About PAN-263691

Attention: Global TPM team, Hi, I have a question about PAN-263691.// PAN-OS 11.1.13-h1 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-h1-addressed-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 63 Views
  • 1 replies
  • 0 Likes

About PAN-269535

Attention: Global TPM team, Hi, I have a question about PAN-269535.// PAN-OS 11.1.13-h1 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-h1-addressed-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 54 Views
  • 1 replies
  • 0 Likes

About PAN-299622

Attention: Global TPM team, Hi, I have a question about PAN-299622.// PAN-OS 11.1.13-h1 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-h1-addressed-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 55 Views
  • 1 replies
  • 0 Likes

About PAN-300837

Attention: Global TPM team, Hi, I have a question about PAN-300837.// PAN-OS 11.1.13-h1 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-h1-addressed-issues Q1)How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 55 Views
  • 1 replies
  • 0 Likes

Palo Alto FW manage by SCM - problem with HA

Dear Team, I experiencing a problem related to HA for my two Palo Alto 440 FW. I attach two FW to SCM, so SCM manage this two device. I configured HA Active/Passive for this devices and after that I lost connection to second (passive) FW. Like in screenshot: I thinking that this is related that second is a Passive and not generate any traffic...

beejrteek_0-1771334834480.png

About PAN-303627

Attention: Global TPM team, Hi, I have a question about PAN-303627.// PAN-OS 11.1.13-h1 Addressed Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-h1-addressed-issues Q1)How often does this issue occur? Q2)After this issue occurs, do the LACP interface failu...

MasaW by L2 Linker
  • 62 Views
  • 1 replies
  • 0 Likes

About PAN-305301

Attention: Global TPM team, Hi, I have a question about PAN-305301.// PAN-OS 11.1.13 Known Issueshttps://docs.paloaltonetworks.com/pan-os/11-1/pan-os-release-notes/pan-os-11-1-13-known-and-addressed-issues/pan-os-11-1-13-known-issues How often does this issue occur? Best regards,MasaW

MasaW by L2 Linker
  • 52 Views
  • 1 replies
  • 0 Likes

Stealth Rule Question

Hi everyone,Could someone please explain the correct way to create a Stealth rule in Palo Alto? My understanding is that it involves creating a rule that denies all traffic destined for the firewall’s public IP addresses.I’m also unsure whether this will impact IPsec tunnels or GlobalProtect connections that terminate on those same IPs. Addition...

ititsw by L0 Member
  • 86 Views
  • 2 replies
  • 0 Likes

Can you configure clientless VPN in SCM ?

I have the license installed and dynamic updates for clientless installed. We only have the Agent Licensing for GP and Prisma. We already have Global protect configured though SCM. But I cannot find anything about clientless vpn setup in SCM. I would have to overide my config directly on the firewall ?

E.Egger by L0 Member
  • 66 Views
  • 0 replies
  • 0 Likes

User ID mapping works on DC but not/intermittent on branches for Intune internal users.

Hi All,We have a PA-1410 at DC (with GlobalProtect) and PA-440/410 at branches.Microsoft Intune enrolled devices users authenticate via SAML-Azure AD, non-Intune users via LDAP on-prem AD. User-ID is learned on the DC firewall and redistributed to branches using existing redistribution profiles.Working fine for:Non-Intune internal/external netwo...