General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

invalid syntax delete rulebase security rules (rulename)

Hello There,

 

I am running PA-OS 8.1.19. i attempt to delete a security policy via CLI, However, I get an error of Invalid Syntax. Does anyone know what did i miss.i looked at several docs and all indicate i am using a correct CLI command 

Login to the

...

KurdTech by L1 Bithead
  • 3436 Views
  • 6 replies
  • 0 Likes

Static Redistribution to BGP

Hi All,

 

I need some help/advice as I am unable to achieve the wanted results.

Scenario:

 

a) I have 2 PA firewalls sitting on separate DC operating independently.

b) I would like to add a static route on PA (DC1) and as long as the path monitoring for th

...

kanes39 by L1 Bithead
  • 1685 Views
  • 1 replies
  • 0 Likes

GlobalProtect icon disappears from taskbar in Windows 10?

We're having a problem with GP 4.0.6 and 4.1.1 clients on Windows 10 where the icon dissapears from the task bar. It doesn't happen all the time, but when it does it causes a fair amount of user frustration. With the 4.0.6 client, I could search for

...

uvdes by L2 Linker
  • 12774 Views
  • 6 replies
  • 0 Likes

Maximum Number of Objects reached

Hello,

 

We have detected in our 820 device the following alarm:

 

SYSTEM ALERT : critical : max registered-ip for the platform reached (1000)

 

Searching the objects, we have only 746. I'm not being able to find so much information about this.

 

Does anyone

...

AitorGD by L1 Bithead
  • 5018 Views
  • 4 replies
  • 0 Likes

Resolved! How to determine if high dataplane is an issue

Our Data plane CPU usage is constantly on or above 90%.

 

We have a PA PA-3020.   PANOS 9.1.6

 

It is usually High only during business hours and after hours it is back to normal.

It has not affected the firewall performance and any traffic yet.

However we

...

Resolved! API or cli Request App-id in which App Group?

Is there a way to see which application is in which app group using the API or CLI?

 

 

I can do a config-output-format set   and then show  the entire config- but that isn't efficient.    Without using the GUI, is there a good way to see what app-ids a

...

Sec101 by L4 Transporter
  • 3397 Views
  • 5 replies
  • 0 Likes

Management interface routing

I'm working on isolating the management interface onto its own network. The firewall will be the router for this traffic and the network switch it connects to will be L2 only. If my management IP is 10.10.20.10/24 and the gateway is 10.10.20.1 where

...

Phase 2 tunnel status

 

Please excuse me as I am still learning and am relatively inexperienced. I assume the phase 2 status can be red for following reasons (assuming IKE phase 1 is all correct and working) Authentication, Encryption, DH settings being incorrect/mismatche

...

ipsec tunnel status.jpg

FW in Palo IP changed

Hello -

I have an HA pair of palo's that were added to Panorama. The management IP for each of those palo's has changed and are now showing in a disconnected state. How can I correct this?

 
Thanks in advance.

require admin users being member of LDAP groups

Hello

We are using LDAP for authentication of the admin users (for Panorama as well as the firewall nodes).

Is it possible to adjust this, enforcing the user being a member of a specific AD group?

Last info found was regarding PAN-OS 8.1 (https://live.p

...

Setup VPN Global Protect DynDNS

Setup VPN Global Protect DynDNS

 

Dear community:

Good afternoon, is it feasible to be able to configure VPN access with Global Protect, on a Palo Alto with the following scenario:

Palo Alto with:
-Public IP Dynamically ( DHCP )
-Firewall configured with t

...

Metgatz by L4 Transporter
  • 3103 Views
  • 4 replies
  • 0 Likes

Resolved! Captive Portal w/2FA in Azure

Hi All -

Hopefully I make this clear.  

 

What I'm looking to do is set up Captive Portal with a push notification in Azure AD.  I can't seem to find any documentation around this, can someone give me the general steps or point me to existing documentat

...

Specific Action change on Individual Signature

Hi Experts,

We've configured a Vulnerability profile with the Action of Default. For the Windows Print night mare vulnerability (Version ID: 8424, signature ID:91333) and the CVE ID: CVE-2021-1675 I see the default action is marked as 'Alert' which wi

...

  • 24286 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels