General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

VM Trial License

Hi
I am trying to obtain a TRIAL LICENSE for a VM. I am using EVE-NG and need to set up a training lab. I dont want to associate it with'

our current Palo Altos. How can i go about obtaining one?

                                                       

...

mzedalis by L0 Member
  • 385 Views
  • 1 replies
  • 0 Likes

Resolved! NTP Server for internal network

Hi,

 

Is it possible to configure a PA-3220 firewall to work as NTP server for my internal network devices?

In this scenario the firewall would synchronize with an external source and would be used by the internal devices as a NTP server.

 

Thanks!

Borala by L0 Member
  • 6619 Views
  • 3 replies
  • 0 Likes

GRPC status UNAVAILABLE in intelligent offload

Hi All,

 

Has anyone else come across an issue where a process called 'pan_grpcd' is using upwards of 85% of the CPU on a PA-VM.

 

The VM is running version 11.0.2 and i can see an error in the system logs - 'GRPC status UNAVAILABLE in intelligent of

...

ElliotM by L2 Linker
  • 1012 Views
  • 4 replies
  • 0 Likes

Asynchronous Security Zones?

Is there an issue with asynchronous routing if the traffic passes through different security zones? We have our PAs setup with subinterfaces for our respective VLANs. So we have:

Eth1/3.10

Eth1/3.20

Eth1/3.30

Eth1/3.40

 

These subinterfaces connect to

...

PA-440-LAB purchase without going thru my employer

Anyone know where and how I can purchase the PA-440-LAB bundle without going thru my companies account and vendor? I did that with the 220 and it was a nightmare. I want to setup an individual PA account for support and licensing and acquire the lab

...

millc5 by L0 Member
  • 2582 Views
  • 2 replies
  • 1 Likes

high latency after HA failover

Hello team,

 

I have an HA active/passive with a couple of PA-3250. After failover from active to passive there are a high latency for all the connections and some Http/https sessions cannot be established. I see in the traffic logs many aged out sessi

...

Carracido by L3 Networker
  • 2538 Views
  • 4 replies
  • 0 Likes

Multiple SAN on SCEP profile

Hi,

Is there a way to define multiple SAN names in SCEP profile?
We are trying to use SCEP for management access certificates for PAs in HA but with one certificate for both with both hostnames in SAN fields.
I don't see a way to enter more than one, I

...

CITNetwork_0-1700576009821.png

Meraki behind PA - Unfriedly NAT

Hello community,

 

another person with the problem. I know, I know. Finding a solution to this problem is obviously not easy.

 

I have a problem with a Meraki cluster behind a PA cluster.
The problem is the familiar “Unfriendly NAT”.
I just can't figur

...

No Logs for matched rule

Hello everyone,

 

We are facing a strange problem with one of our PA-220.

I created a rule to allow all traffic between 2 different zones with our default log settings. The problem is that I only see a hand full hits and nothing in the traffic log.

Y

...

Website Access Issue from one of branch office

Hello All,

We have PA-850 implemented across the sites (4 sites), there is a URL www.crunchydata.com is not accessible from one of Branch Office in US, while there is no issue accessing same URL from other branches. However

- i have checked and confi

...

  • 24279 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels