Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Welcome to the Next-Generation Firewall Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4513 Views
  • 0 replies
  • 1 Likes

Palo Alto PA 5220 running on 10.1.10 H2 is not mounting /dev/sd9 partition

When we booted up the firewall we're getting an error that AutoCommit failed to complete. This was seen while mounting the raid partitions, specifically /dev/sd9. After referring the documentation existing on Palo Alto community, in the link https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000wkxPCAQ&lang=en_US%E2%80%A9...

anfasks by L0 Member
  • 1290 Views
  • 0 replies
  • 1 Likes

Resolved! How check NGFW valid for April 2024 Cert Advisory

Regarding the Certificate advisory for April 2024 and November 2024, if doing option 1, have content update and doing a reboot. This being good enough for the April 2024 deadline. How can you verify on the Panorama or NGFW that you are valid? The commands in the advisory FAQ 9, only work if you do Option 2 and upgrade to the recommended hotfix....

IPsec tunnel PA-Forcepoint Up but no traffic passing through

Hi , I'm configuring an ipsec tunnel between PA-5410 (route based )and Forcepoint Firewall (policy based), and showing up but when i try to ping from LAN-to-LAN i could not recieve any trafic or logs . from system log, ""PSec key deleted. Deleted SA: 172........[500]-.............peer[500] SPI:0xA83E98C1/0x3D6DB38C.'"" and ( eventid eq 'ips...

SIP TRunk over PA6-440 not working

Hi we have just migrated from Cisco ASA to palo alto 440 firewall we have a SIP trunk between IP telephony server CUCM installed on our site and another installed on remote site the communication is done over a tunnel ipsec VPN from our site we can ping from CUCM locally to the remote the communication is full allowed between servers (i can see ...

Abdelhak by L1 Bithead
  • 1609 Views
  • 1 replies
  • 0 Likes

Resolved! Need Assistance for recover Customer Support portal account

Hi team, I hope all are doing great. I am facing a problem that is, We have PaloAlto firewalls and these firewall are licensed. But now we are unable to remember which email account was used for customer support portal account. Now we need to know which account was use for and also need to reset password of that account. This solution is ver...

Al-Amin by L2 Linker
  • 2137 Views
  • 2 replies
  • 0 Likes

Custom URL to match allow policy matches halfway through URL

Custom URL category containing one line similar to this: abc.com/string1-string2/string3-string4/string5 After the domain name are a series of strings with some dashes and forward slashes. String5 is meant to be a filename in the string3-string4 directory. The URL category matches in an allow rule for web-browsing port 80 traffic. No decryption ...

Resolved! 3260 Upgrade to 11.1.0

Hey Community, My environment recently went through some changes requiring it to be shutdown for a few months and be moved to a new location. It is now settled in and back up, however we still do not have internet yet and I want to start patching the many fixes we missed and to fix the ongoing certificate expiration issue. I have managed to down...

Block URLs with exceptions

Hello everyone, my name is Phil and I am in charge of the network structure in a municipal utility with 2 other people. We have 2 PA-3220s with software version 11.0.2-h2 and several PA-400s in use. We are faced with the following problem:We want to block the entire Internet for one user (Active Directory is connected to Palo Alto), except for 2...

  • 1794 Posts
  • 60 Subscriptions