General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Disable Local Account when NAC is reachable

Is there a way to disable the local account when an external authentication method is reachable? Only being able to log into the local account if it cant reach the external authentication server?

Claw4609 by L4 Transporter
  • 1339 Views
  • 1 replies
  • 0 Likes

I'm having a problem with PXE Boot.

We are having issues with our new Palo Alto 2050.

We are using a DHCP server in 2050 with a PXE to iSCSI system.

Use another firewall/router with the built-in DHCP server - the system works fine.

HA2 Question

If HA1 is going through switches, can HSCI still be used or should HA2 be used?  The firewalls are racked next to each other.

AWS S2S VPNs not re-establishing?

Having issues with a fair amount of AWS VPN tunnels that will go down due to path or ISP issues but they don't come back up unless I manually bounce them on the PAN side.  Configuration is standard with DPD set to 10/2 and using PBF monitoring the fa

...

drewdown by L4 Transporter
  • 1751 Views
  • 1 replies
  • 0 Likes

Resolved! NATing down an IPsec tunnel

I've got a PA-850 with fairly typical many-to-one NAT outbound to the internet, and some IPsec tunnels. Due to one partner that I'm connecting to with IPsec using 10.0.0.0/8 on their network (don't ask), I need to NAT my 10.28.1.0/24 subnet to 172.28

...

Resolved! UserID agents tab in version 10

Hi,

I was checking the useridagents in the typical site (DEVICE-USERID->AGENTS) in version 10 and i can not find this tab.

 

how to configure a new userid agents in version 10 and later?

 

 

BigPalo by L4 Transporter
  • 1620 Views
  • 1 replies
  • 0 Likes

Resolved! Access errors while adding firewall to panorama

Hi everyone,

When we add our firewall to panorama, we faced with some issues. Access problems occurred due to LDAP profile password and PSK in IPsec tunnels. We had to back to our old configuration and delete firewall from panorama. As we know there

...

Certification badges from Credly?

Hello everybody,

 

  perhaps this is a silly question, but... This morning I received a bunch of emails from "admin@credly.com" saying that I've earned some badges from Palo Alto Networks. Inside the messages I can find links to "accept" my PCNSE, PC

...

grenzi by L3 Networker
  • 1883 Views
  • 1 replies
  • 0 Likes

User Group limits on firewall

Hello,

 

Recently I got error below on PA 850 device(8.1.13)

-User Group count of 1098 exceeds threshold of 1000

 

The log is straight forward, number of group is exceeding the limit, but I have some question.

 

1. I have one more device,PA-3220, which look

...

yhlee1 by L2 Linker
  • 4744 Views
  • 2 replies
  • 0 Likes
  • 24212 Posts
  • 99 Subscriptions
Top Liked Authors
Labels