Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Welcome to the Next-Generation Firewall Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4512 Views
  • 0 replies
  • 1 Likes

Resolved! DoS Block Table API

Good Morning! I am looking to create a Powershell script to list and clear IPs that have been added to the DoS Block-Table. I have tried this through Powershell PoshSSH and OpenSSH but can't get neither to work fully. I looked around for the API to accomplish this but haven't been able to find it. So my question, is there an API to list and ...

Path error issue when performing SCP from CLI of Paloalto NGFW.

Hello, I'm currently trying to transfer Stat-dump to NAS using scp by specifying a desired period.I think the connection has been made since the NAS user authentication step has been completed through the CLI command.However, an error occurs saying that the path I've never seen before does not exist.The following is the error.Could not chdir to ...

"Use Default Browser" option not showing in Strata cloud manager

Hello Team, We have client firewall managed with strata cloud manager. We were trying to use the default browser for SAML authentication. When we checked that option on firewall under GlobalProtect Portal > Authentication >"Use Default Browser" it worked. But we had to do that locally, because we do not see similar option in strata cloud m...

Jagdeep1 by L2 Linker
  • 808 Views
  • 0 replies
  • 0 Likes

Issue with Intermittent Blocking of ChatGPT URL-Not-resolve

Hi Team, I’ve noticed that in my environment, the chatgpt.com URL is intermittently categorized as unresolved and is being blocked. For your reference, I am attaching a snapshot highlighting this behavior. Please let me know if additional information is needed to address this issue. PAN DB- Connectivity is there @Adrian_Jensen @mshama...

RoneyRajan123_0-1738049273140.png

Device transfer query

Hi All, Facing below error while registrating the device. " Device and support code do not match support account. Please contact super user to send you a registration link for approraite support account." Also what could be the steps to device transfer from one domain to another Example palo@xyz.com to alto@uvxyz.com

FQDN resolution mismatch

I have a connection to a destination FQDN allowed via Palo Alto firewall PA 440.Palo alto shows a different IP to the FQDN than one on the host machine when I do a nslookup. Connection to the destination is getting reset Please advise on the steps and procedure to resolve this issueError on the browser: ERR_CONNECTION_RESETWhere can I see this o...

PA-1410 - secondary IP unreachable

I have an issue where the secondary IP-address is unreachable on PA-1410.The deployment looks like.2 PA-1410 HA (active/passive) Aggregated layer 3 interface with sub-interface (vlan tagged) Management profile allow ping only Firewall policy is allowing ping in- and outbound Advanced Routing is enabled I tested the troubleshooting tool ping wi...

Factory 5220

There are two drives on the 5220. The factory reset for version 10 says to select maintsys-root1 and reset. Why not root0 as well. The device has two drives so wouldn't maint-syroot0 need to be ran as well? It looks like the drives are setup in a raid that mirrors the drives (not sure exactly). With this being said I don't know the different way...

DJDN12 by L0 Member
  • 826 Views
  • 0 replies
  • 0 Likes

License and dynamic update query

Hi All, I have panorama integrated Palo Alto devices and need help on below query1) Can we perform dynamic update of Palo alto from devices itself instead of panorama. Does this practice unsync the Palo Alto from panorama ? 2) panorama having only management license but when I do check dynamic update it shows latest update. Should I move to upda...

  • 1794 Posts
  • 60 Subscriptions