General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Threat Vector, a Unit 42 Podcast, is Now on LIVEcommunity!

We have some exciting community news to share: Threat Vector, a Unit 42 podcast, is now on LIVEcommunity!

 

Threat Vector is your compass in the world of cyberthreats. Listen to this biweekly podcast to learn about unique threat intelligence, cutting

...

jforsythe by Community Team Member
  • 89 Views
  • 0 replies
  • 0 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3331 Views
  • 2 replies
  • 14 Likes

Resolved! Check error on interface

Hi,

 

I was playing around with CLI and typed the command:

>show system state filter sys.s1.* | match crc

 

Then got this details:
sys.s1.p5.detail: { 'bad_crc': 0x157352, 'fragments_pkts': 0x1247, 'mac_rcv_error': 0x228b09, 'pkts1024tomax_octets': 0x13e0f

...

MineMeld Docker

I started building out a very simple dev (read: unhardened) docker build for MineMeld here: https://github.com/swannysec/MineMeldDocker

 

Looks like it won't start up correctly inside a container and I think it might be related to the use of UNIX soc

...

rsyslogd dependencies problem

Hi Luigi,

 

I was testing stdlib.localSyslog to correlate paloalto logs with indicator following this article https://live.paloaltonetworks.com/t5/tkb/articleprintpage/tkb-id/MineMeldArticles/article-id/11

 

But I was unable to make it work. After a

...

uam by L1 Bithead
  • 5295 Views
  • 3 replies
  • 0 Likes

Link types for HA

I have a client who wants to split their PA3020 HA cluster between 2 datacenters.   What are the limitations for the HA1/HA2 interfaces in terms of distance, and network latency for active/passive HA to work cleanly.  On a 3020 can HA1/HA2 functional

...

rswart by L0 Member
  • 1826 Views
  • 1 replies
  • 0 Likes

BGP Multiple ISP VR Requirements

I'm attempting to wrap my head around a very critical piece of setting up BGP between 2 ISP's concerning how many Virtual Routers are required.

 

I currently have 1 ISP (A) up and running on BGP just fine and my other ISP (B) will be converted to BGP o

...

Application Filter Traffic Reports

Is it possible to view traffic related to a specific application filter through the "Monitor" tab? For example, if I setup an application filter for the "gaming" subcategory, can I view the related traffic without specifying each application individu

...

Resolved! Best Practice policy 7.1

I am attempting to implement best practice internet gateway in the 7.1 admin guide. One on the steps toward the end is creating Temporary tuning rules to see what applications are communicating over non-standard ports. I have rule above the tuning ru

...

web-browse log.PNG

active/active vpn query.

Hi Team,

Case no: 00567829

I have a customer, who have active/active set up.
He had configured a vpn with the floating ip.

The vpn is working fine. No issues with that but he is getting system alert message on the active/secondary device about the phase1

...

Resolved! Save Credentials Global Protect

Hey Guys,

 

I'm running the latest software with 7.1.5 and Global Protect 3.1.1, and I'm missing the feature to save the credentials. In the agent settings I configured the Save User Credentials to Yes, but neither the username nor the password is real

...

oheigl by L1 Bithead
  • 2576 Views
  • 3 replies
  • 0 Likes

Resolved! Why the chart not continuous?

Dear all,

 

My customer have issue when checking report. Boss ask him why the chart not continuous? Who can help me explain at the red circle? Why and when it will continuous or not. So many thanks and hope get reply soon.

not continue.png
luancb by L1 Bithead
  • 4580 Views
  • 10 replies
  • 0 Likes

IPSEC VPN - Multipoint-to-multipoint, multipoint-to-point

Watched this video, but was unclear if this was supported?

 

https://www.youtube.com/watch?v=E6mTb4gftg0

 

I've got two datacenters and 10 remote offices. I want the DC's to be connected via IPSEC VPN (easy enough). I want the remote offices to be connec

...

rpugh1 by L0 Member
  • 1570 Views
  • 0 replies
  • 0 Likes

Investigation of possible threats

My company has a PA3050.  I am new to this device.  It is currently setup to mirror/monitor port on current Cisco firewall.  The device is reporting that it is finding suspicous files and various other vulnerabilities.  There is concern that this is

...

phxcpv by L1 Bithead
  • 2349 Views
  • 6 replies
  • 0 Likes
  • 24125 Posts
  • 100 Subscriptions
Top Solution Authors
Labels