Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Welcome to the Next-Generation Firewall Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4508 Views
  • 0 replies
  • 1 Likes

Resolved! Slow Internet upload behind PA-850

Hi, Background : We have a pair of a HA PA-850 attached to a 200/200 Mbps Internet line When we do the speedtest direct attach to the service provider's CPE, we can get 179/190 Then we gone through another test behind the HA pair , the speed drops to 177/47 (there is no other equipment connected for the time being) We have cross-check:1...

JT_TBIT by L0 Member
  • 2716 Views
  • 3 replies
  • 0 Likes

URL Category - Custom URL Category Import not working.

When I try to import URL's per text file, Uploading runs forever and never completes. Has anyone else had this issue. We are on version10.2.2.H2. Please note you are posting a public message where community members and experts can provide assistance. Sharing private information such as serial numbers or company information is not recommended...

Nat 64 feature PA 460

Hello everyone, one of my customer have a PA 460 and he ask me If he can use NAT64 on it. In Palo Alto docs it seems that it depend on the panorama OS version and not on the compliance. But on the hardware documentation, it doesn't mention NAT64. I only have read access on his firewall for the moment so i cant check it by myself.

brtkcns by L0 Member
  • 1405 Views
  • 3 replies
  • 0 Likes

HA path group

I am trying to setup HA path group but as seen below between FW and ISP we have L2 switches. what is the optimum solution for path monitoring since L2 switch hardly goes down ? By the way Panorama manages the FW

EOdeh_1-1710534820057.png

Palo session application is undefined, traffic is dropped

HI All, We have PA5220, we have Pulse VPN in DMZ area, and when i try to connect vpn, i can see the sessions showing in PA, but application shows undefine, then i can not login the vpn after timeout. I also can not ping to VPN address(DNAT address). Would you please help check? Thank. I have attached the session picture int the attachment ...

abai by L1 Bithead
  • 1929 Views
  • 3 replies
  • 0 Likes

Resolved! Add Cold DR to a existing environment

Hello, I have a Panorama that manages several clusters with a dedicated device-group and template For one of them my customer bought a single firewall as a Cold DR to put in a different DC. Considering the following scenario:- Cluster-Intranet (active/standby) with member (Intranet01 and Intranet02) - new DR name will be IntranetDR Before the a...

Resolved! PAN-PA-445

Hello all, Could you please give me correct ECCN for firewall PA-445 or some look up tool list with all products where could I find ECCN? Thank you. Best regards,

smacura by L1 Bithead
  • 2200 Views
  • 3 replies
  • 0 Likes

Resolved! LDAP User based policy not working

Essentially, I aim to enable users to access the internet after being prompted with a captive portal and entering their LDAP username and password. Each user should have a separate policy. I have configured the LDAP server, portal, and other settings, but after entering credentials on the captive portal login page, the internet page does not loa...

Resolved! Multi Virtual System Capability option is missing

Hey community, I'm setting up a new PA-450 FW, which we will use in the future with Multi Virtual Systems Capability. So I wanted to enable it ahead to eliminate problems in the future, but it seems like I'm missing the option to enable it ( Device> Setup> management> edit General Settings). I attached a screenshot for reference. In t...

EDL and FQDN ID Tools

Community, I wanted to provide an announcement of a couple of open source tools that I have written and published for External Dynamic Lists (EDL) manager as well as a method for identifying domains in use for SaaS applications that can be used independently or in conjunction with each other. The primary project name for the EDL manager is K...

HA1 Interfaces PA-1410 + interfaces dell

Hi PA-1410 comes with it's own rj45 ports for HA1-A and HA1-B. For HA2 it has a dedicated port that needs a SFP. My question is the following: Can we add 1 Gbps SFP fiber modules to the firewall and configure them as HA1/HA2 or is it mandatory to use the dedicated one's with rj45? Besides this I wanted to check with you if Dell Twinax 10 Gbps ca...

Licenses

Hello All, Is there away i can get a free trail licenses for my own virtuall KVM lab in palo alto please? i cannot add any devices to panorama unless i have applied licenses to the palo alto firewalls any help i appreciated. Regards, SS

  • 1794 Posts
  • 60 Subscriptions
Top Solution Authors