General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! SFP Compatibility PA3050

Hi

 

We have a PA3050, and we have 4 SFP like this: SFP HP X121 1G SPF LC LX 

So we would like to use 2 SFP to do a aggreagete link in PA.

 

Is this SFP compatible with PA3050?

 

thanks a lot

SFP + modules for PA 5220

Hello we have PA 5220

and we need to connect SFP+ modules.We have Finisar SFP plus module but it does not work

Can you recommendme any third party SFP+ module which is sure to work

Radmin_85 by L4 Transporter
  • 9544 Views
  • 9 replies
  • 0 Likes

Resolved! Palo Alto is not reading full URL

We have an in house mail server which have different URLs to access its web mail and administration center. We want to block administration center access from Internet. I tried using URL Filtering but Palo Alto is not reading full URL and only showin

...

Filter default route

WE have configured OSPF between a Palo Alto firewall and the CORE to which it is physically connected, within this CORE there are several VRFs that interconnect with the firewall (VRF1, VRF2, VRF3). Is there a way to filter the default route in the P

...

BigPalo by L4 Transporter
  • 2387 Views
  • 2 replies
  • 0 Likes

why policy for captive portal redirection has no hit counts

We are using MFP for port 22.

we have CP configured and also we have rule in PA to allow traffic for CP url on specific port.

But we see no hit counts on this rule

 

If i remove the rule then CP redirection does  not work?

 

Can someone please explain this

...

MP18 by Cyber Elite
  • 2544 Views
  • 4 replies
  • 0 Likes

Resolved! Restrict Amazon-Cloud-Drive-Upload

Is there any way to restrict amazon-cloud-drive-upload for certain websites? 

 

For example, say the website is www.mywebsite.com  (public IP 1.1.1.1) and has an applet that allows users to upload files.  When the user attempts to upload the files, the

...

MikeC by L3 Networker
  • 3169 Views
  • 2 replies
  • 0 Likes

Traffic showing from same zone

This is not a new setup. It was working fine before.
No change was made recently.
Firewall logs show traffic hitting the right policy, however from the same zone (NET to NET) instead of  SZ104-ITSupport to LAN.
How to fix this issue?
 
 
 

Rule.jpg

Resolved! [BUG] EDL using wrong Service Route

Hello everybody!

PAN OS build 9.0.3-h3.

 

According to the PAN documentation the "External Dynamic Lists" (Object-> External Dynamic Lists) )are supposed to use "External Dynamic Lists Service Route" (Device-> Setup -> Services -> 'Service Route Configu

...

PA_ServiceRoute_EDL.PNG
PA_ServiceRoute_URL_Updates.PNG
PA_ExternalListsO365.PNG
husetech by L2 Linker
  • 5239 Views
  • 5 replies
  • 0 Likes

Communication performance issues between zones

Hi

I have a firewall configured with different zones (users, servers-prod, servers-dev). At network configuration level, 4 network interfaces are linked to 1 aggregate  group and under this aggreate group, I have on subinterface linked with each secui

...

Global protect VPN

Hi,

We are using Global protect VPN. Whenever we connect the VPN  with office network the system gets slow and we run any command it takes a lot of time to run.

Whenever we connect the VPN  with an open network the commands and the websites are working

...

Giri512 by L1 Bithead
  • 2975 Views
  • 4 replies
  • 0 Likes

WiFi calling will not work

Has anyone already got wifi calling via PA to run? I see in the session log the connections udp 500 and 4500 but wifi calling does not work on my iPhone 8. I have already excluded my AP, that's not the reason. At home router with itss integrated AP i

...

Resolved! IPv6 IPsec Site -to-Site VPN Phase-I issue

Hi ,

If anyone there who have a solution for this IPv6 IPsec Site -to-Site VPN Phase-I issue, I checked all the Phase-I and II parameters and took help from PAN TAC engineer as well. they don't have an answer for this. I am getting an this error. Your

...

Resolved! GlobalProtect 5.0 for iOS 12 and User Certificates

I have several customers (and my homelab) that leverage user certificates issued from Active Directory Certificate Authorities as a second authentication factor.  Since upgrading to the new 5.0 client for iOS, the client errors out on connection to t

...

  • 24195 Posts
  • 100 Subscriptions
Labels