Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

2 PA-850s and 1 PA-440

Hi,

I received a quote from a supplier for 2 PA-850s with Wildfire , Partner enabled premium support and GlobalProtect subscription.
Then for the PA - 440 - Wildfire , GlobalProtect , advanced Url filtering , advanced threat protection and premium supp

...

Calc66 by L1 Bithead
  • 2054 Views
  • 5 replies
  • 0 Likes

User-ID with Azure AD

Hey all, I've set up User-ID with on-prem AD servers a few times - quite straightforward.

 

My question is, how do I set up User-ID when my customer uses Azure AD (with no on-prem servers)? I need to someone get the user-to-IP mappings on the firewal

...

VPN internet access

I have set my VPN access with no split tunnel so the users gets their internet access through the access through the VPN. Even though I cloned the security rule to the internet from the one used when you are onsite, it does not give the same access t

...

Resolved! Palo PA-450 High Availability ports

Hello everyone, wanted to deploy a pair of PA-450s in HA and I understand there are no dedicated HA ports on this model so we need use data ports - I could not find a deployment guide for the PA-450 to address HA specifically and I assume you could u

...

bormanb by L0 Member
  • 2542 Views
  • 3 replies
  • 0 Likes

TCP-RST-from-CLIENT

Hi Friends,

 

We have a requirement we have cloud server Oracle cloud

When ever user from LAN tries to access the resources over the cloud user is able to login but unable to access any resources.

While checking in logs it is showing tcp-rst-from-cli

...

Screenshot (207).png
Screenshot (209).png
Satyak by L3 Networker
  • 2796 Views
  • 2 replies
  • 0 Likes

HSCI port - 5410

Hello All, 

 

I'm trying to spec the SFP's for PA-5410's & per the below documentation.

 

https://docs.paloaltonetworks.com/hardware/pa-5400-hardware-reference/pa-5400-series-firewall-overvi...

 

The HSCI port is a 40G port & Palo Alto Networks recom

...

snmp configuration question

as we all know , snmp can be configure at Setup -> Operiations ->SNMP Setup

the snmp community string default is "public" 

I would like to ask

1. this is the read-only string or the read-write string ?

2. do we set the read-only string for the device

...

IPSec VPN Negotiation Issues

Dear Members,

Greeting to All!

 

Curranty, I'm using site to site multiple VPN configuration with Palo alto Firewall to different vendor site. All of the tunnel is working fine VPN ok.

My main problem is inside of my firewall public internet down the

...

Url access error

Hello Team, I am getting this error in the EDL, also confirm URL and certificate are correct.
Gone thorough this kb : https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-release-notes/pan-os-9-1-release-information/known-issues/known-issues-related-t

...

SKumarDoli_0-1685509176196.png

Query: SAML Integration Failed

Is there have a way or integration to use a thrid party MFA solution to login to the palo alto firewall as administrator?

 

Do SAML profile can be added to authentication sequence?

 

Furthermore, if the saml profile cannot be added to the authenticat

...

  • 1057 Posts
  • 41 Subscriptions