10-13-2021 07:38 AM - edited 05-25-2023 09:31 AM
The LIVEcommunity is Palo Alto Networks’ official online technical community with more than 190,000 members. Our community is full of employees, partners, and peers who help each other troubleshoot issues, find answers, and make the most of their products—proving that thousands of minds working together are far more powerful than a lone engineer.
In short: LIVEcommunity harnesses the knowledge of cybersecurity and IT professionals across the globe to put insightful, helpful resources at your fingertips. We hope that LIVEcommunity will be your first stop when it comes to the adoption of Palo Alto Networks products.
Here’s a quick introduction to LIVEcommunity's most-visited areas:
The LIVEcommunity discussions area is your go-to source for troubleshooting and answers. There is a general discussion area, as well as product-specific areas, where you can go to ask questions, share answers, and exchange knowledge and support related to Palo Alto Networks products. It is not only a great place to find solutions, but to network with peers as well. Don’t worry—our experienced Solutions Engineers and Cyber Elite experts are on board and ready to help, so jump right in.
The LIVEcommunity blogs area is where you’ll find information about recent and upcoming events, new products features, and updates, and other current happenings relevant to Palo Alto Networks and the cybersecurity community.
LIVEcommunity Product pages are information-rich areas, each dedicated to a different Palo Alto Networks product or tool.
These pages are where you’ll find all related discussions, blogs, articles, webinars, how-to videos, and other information about your product—all in one place. Simply click the Products dropdown and select the product you’d like more information on to head to its dedicated resource page.
We have stadalone PA-3220 its showing system alert every one hr, we do not have panorama for log collector.
System Alert - high : Number of hints on disk has exceeded 5000 due to log forward
Opa, estou conhecendo mais sobre Palo alto e estou com uma dificuldade para fechar vpn ipsec no meu LAB.
A vpn nao fecha.
PA-A
ETHERNET1/1
Local ip - 100.0.0.1/24
Peer - 30.0.0.1
Rede local - 10.0.5.0/24
Rede Remota - 10.0.4.0/24
------------------------------------
PA-B
ETHERNET 1/1
Local ip - 30.0.0.1/24
Peer - 100.0.0./24
Rede local - 10.0.4.0/24
Rede Remota - 10.0.5.0/24
-------------------------------------------------------------------------
Phase 1 e 2 esta de acordo.
Rota statica apotando para o tunel, com as redes remota.
abaixo segue meu lab
Olá @Marcos1991
Sobre as VPNs, as polices estão criadas para permitir comunicação entre as zonas de segurança? Há NAT de saída para "Internet"?
Vejas se estas docs lhe auxiliam:
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClGkCAK
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CllzCAC
Parabéns pelo LAB!
Sim, as regras estavam criadas e o nat tbm.
tem algum comando que posso soltar, meu monitor nao esta liberado.
Olá @Marcos1991
Algo que pode testar é a liberação de portas de VPN udp, já precisei em algum momento utilizar-se disto.
Utilize o command test vpn para "reiniciar" as phases.
att.