General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Join the Fuel User Spark Event on March 19: Dealing with Threats !

 

Join us at the Fuel User Group Spark Event on March 19!

 

Get ready to ignite your cybersecurity knowledge and connect with industry experts at our upcoming Spark event hosted by the Fuel User Group. Whether you're a seasoned professional or just

...

kiwi_0-1709893724672.jpeg
kiwi by Community Team Member
  • 646 Views
  • 5 replies
  • 3 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3318 Views
  • 2 replies
  • 14 Likes

Ubuntu_OpenLDAP with PAN-OS User id

Hi All,

 

Is there any document which will show how to configure Ubuntu based OpenLADP as a user id agent with Palo Alto firewalls.

 

How to add the LDAP server into Server monitoring profile. 

 

 

Resolved! Vip(DNAT not working)

This is my topology. From 30.0.0.10 i would like to access the server 192.168.0.2 with the help of PA wan interface IP(30.0.0.1)
I have created DNAT and Ssecurity policy .

 

 

Object Prenat IP is 30.0.0.1/8 and Webserver Ip is 192.168.0.2/24, when

...

ArunKumar7_0-1707441279489.png
ArunKumar7_1-1707441365240.png
ArunKumar7_2-1707441401377.png

Resolved! PA-220 to PA-440 Migration Recommended Process

I need to migrate 2 stand alone PA-220s to PA-440s.  The current PA-220s are running PAN-OS 10.2.4-h2.

I would like to know the recommended process for doing this.

Can I backup the configuration and system state and restore it on the PA-440?

Do I use

...

Resolved! Refund for Palo alto NGFW purchased on AWS

We have been trying to reach Palo Alto branch of refund.

We have tried all the contact information for refund.

They are not answering to both email and phone calls. 

 

We have removed the palo alto stack

 

If anyone knows how we can contact Palo Alto

...

E1T1Tech by L1 Bithead
  • 418 Views
  • 3 replies
  • 0 Likes

VPN Fail Over

Dear Team,

 

We Have PA Firewall With Single ISP and Peer End Sophos FW With Dual ISP.

 

Here I need to configure VPN Fail over. What are the step i need done PA side? 

 

Regards

Karthikeyan 

SIP Invites timing out for certain calls

Hi all,

 

I've have a sip voice issue for a few weeks that I am a bit lost on. For a bit of background, we have a cloud phone system we just moved over to around a month ago. A cloud phone system links up to Webex softphone for our call center to rec

...

Restrict Microsoft365 tenant

Hi,

 

To restrict access to specified Microsoft 365 tenant (allow company M365 tenant only), I have tired to follow below link for configuration.

Using HTTP Header Insertion For Sanctioned Access To Office365 ... - Knowledge Base - Palo Alto Networks

...

ECMP, interface, zone and security policy question

Hi guys

I am quite new to Palo Alto NGFW. We have on-prem PA-32xx on 11.0.3.

I am having trouble with static route ECMP for redundant IPSEC tunnels to AWS.

Previous guy configure both tunnel in different zone (lets say AWS1 zone and AWS2 zone) and th

...

Port forwarding

Hi,

I need same help with port forwarding (Im new in this)

I want to forward external port 5078 from static public IP address to port 5060 on local IP address 192.168.168.200

 

If possible help step by step thank you very much
 
Best
Danijel
 

NET123 by L1 Bithead
  • 332 Views
  • 3 replies
  • 0 Likes

Resolved! Device Administrators

Hello,

 

Can a "Device Administrator" unlock users in "Authentication Profile"?   Don't want to give user "Super User" unless there is no other choice.


Thanks

Rich

rcraxton by L1 Bithead
  • 440 Views
  • 6 replies
  • 0 Likes

User-id Agent Windows defender firewall issue

We have the PA User-ID agent installed and configured on a Windows 2019 DC.

 

The problem arises when I enable the "Domain Networks" defender firewall the agent losses the connection to the PA firewall under "Connected devices" in the agent view. Dis

...

Strachf by L1 Bithead
  • 942 Views
  • 2 replies
  • 0 Likes

Resolved! ECMP Strict Source Path

Hello.

 

In ECMP settings there is Strict Source Path option to enable. But I can't find any descriptin about this option anywhere. Anyone knows what exactly does this option do? 

santonic by L6 Presenter
  • 17302 Views
  • 9 replies
  • 2 Likes
  • 24126 Posts
  • 100 Subscriptions
Top Solution Authors
Labels