Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Welcome to the Next-Generation Firewall Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4687 Views
  • 0 replies
  • 1 Likes

Resolved! GlobalProtect Portal provides 404 message

Best regards Team We upgraded a 3250 device from version 10.1.10 to version 10.2.4-h2. Once we performed the update, a problem arose with the GLobal Protetc portal, since if we look for it in the browser the message provided is 404 not found (see image). However, the ping to the portal is successful, likewise, if users try to connect from the VP...

Resolved! Flat Network across PA-415

Hello All, I have spent ages and days and a few weeks setting up a PA-415 to work with a group of LAN ports into one network set into a VLAN configuration using the on-board DHCP server. One of the engineers in this forum assisted me extensively and helped me build the settings. I found this idea/solution in this community and the only way to gr...

Ghost session after VPN down/up

Hello, I have an issue with many sites working with PA440 series. When the tunnel VPN fail down and comes up, some devices like printers, phones and access point can't connect normally to the network until that we clear old session related to the affected device. In printer we have job blocked and offline, access point also offline. Once we cl...

Mamoudou by L2 Linker
  • 2656 Views
  • 2 replies
  • 0 Likes

Question about REST API in PAN OS

Hi everyone, I have a question about REST API in PAN OS. 1. When a query is generated using rest api in pan os, what is the process/daemon that handles this task? And how can I check it (from CLI or GUI)? 2. How many CPU/memory resources are consumed (used) when processing REST API queries? 3. If I want to use REST API, what should I con...

Generate Certificate to be Signed by Public CA for Global Protect VPN

Hi All, We would like to use our GlobalProtect VPN using certificate signed by Public CA. As the CA team is requesting to generate CSR from Palo Alto Firewall , can I follow below article to generate? https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClSxCAK And we have two ISPs connected to PaloAlto Firewalls and we ...

EvanRaci by L1 Bithead
  • 3223 Views
  • 2 replies
  • 0 Likes

Resolved! PA-415 Multiple interfaces into one VLAN

Hello ALl, I am hoping somebody can help with my configuration as I seem to be stumbling and hitting a brick wall the whole week. The firewall is a PA-415 running SW 11.0.0 Ethernet 1/1 is set as a WAN interface. Ethernet 1/2 = no configuration Ethernet 1/3 = no configuration Ethernet 1/4 = 192.168.4.1 / 24 [Set as default LAN, layer 3] Ethern...

Custom URL filtering policy

we created two custom policies where some listed URLs or domains will allow on specific workstations and others will be denied. After implementing these policies we found that listed allow list URLs or websites can be accessible but end users only can see the website content without Images. We had a support call with PA team but didn't resolve t...

a_Islam by L0 Member
  • 1918 Views
  • 3 replies
  • 0 Likes

PA-820 Interface configured but down

As the title states. I have an interface on PA-820 that shows "configured but down". This is really silly but I know the interface was "switched off" by another network admin. Under Advance --> LinkState is set to Auto already. There is some other setting that put the interface in a non-workable state which I just cannot find it.

ITBrute by L0 Member
  • 5283 Views
  • 3 replies
  • 0 Likes

System Alert opaque: failed authentication for user ''. Reason: User is not in allowlist. auth profile 'GP', vsys 'vsys1', From: "public IP"

Hi, I've been receiving many system alerts with the message: opaque: failed authentication for user ''. Reason: User is not in allowlist. auth profile '', vsys 'vsys1', From" "Public IP" eventid: auth-fail It looks like these public IP's are trying to access our internal network by coming through Global Protect App. Coming from many differ...

roma by L2 Linker
  • 5026 Views
  • 1 replies
  • 0 Likes
  • 1605 Posts
  • 61 Subscriptions
Top Solution Authors