General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 350 Views
  • 0 replies
  • 0 Likes

Zero-Trust Strategy for Prisma

Hi all

I have been tasked with providing a Zero-Trust strategy document to management, related to how to implemenet this on our Prisma Access solution. 

I am looking for some examples that I can pull from that anyone has done this already for.

I have

...

D.Maas by L1 Bithead
  • 131 Views
  • 2 replies
  • 0 Likes

Palo alto interface DHCP

I have configured DHCP on 4 interfaces, each DHCP on a different subnet. I connected each Palo alto port to a unique switch with the understanding that all devices connected to particular PA port will get ip addresses only from the corresponding DHCP

...

Python: panos opstate

I'm having tremendous success automating security policy updates with the panos Python library, but I'm currently stuck on obtaining the hit counts of rules programmatically. 

 

I'm able to access all attributes of the SecurityRule objects, but the o

...

dawonk by L0 Member
  • 82 Views
  • 1 replies
  • 0 Likes

Redistribution UIA not working...... INTERNAL ERROR

Hi,

I configured a PA in order to redistribute UIA mappings to another FWs. All the config is OK but its not working.

 

I can see this in the FW redistributing:

 

(active)> show redistribution service status

Redistribution info:
Redistribution service

...

BigPalo by L4 Transporter
  • 92 Views
  • 2 replies
  • 0 Likes

UIA user normalized issue

Hi,

We have 2 cluster firewalls with the same config for UIA and Group mapping.

 

If i look for an IP. show user ip-user-mapping all | match IP

I cant see a different behavior.

One cluster shows user as use@domain and groups where this user belongs -

...

BigPalo by L4 Transporter
  • 42 Views
  • 0 replies
  • 0 Likes

Configure SAML for GloblaProtect and use groups to filter

Hi,

I would like to configure SAML for my GP authentication and  I would also like to be able to assign IPs by user groups and configure rules for these remote users by user groups. 

Does anyone know if this is possible? how can match users received

...

BigPalo by L4 Transporter
  • 393 Views
  • 3 replies
  • 0 Likes

Global Protect application blank screen

Hello Members,

 

Can anyone help me to solve the global protect blank screen issue on my PC, as for others it normally works fine.

 

I am using Windows 11 and I have already removed and re-installed the GP App but still it shows a blank screen and I

...

SamiPTfA by L1 Bithead
  • 26294 Views
  • 23 replies
  • 0 Likes

ACC not displaying

PANOS version: 11.0.3-h3

We are experiencing a recurring issue with the Application Command Center (ACC) on our Palo Alto firewall. Every 2–3 days, the ACC becomes unresponsive or stops updating properly. The only way to restore functionality is by m

...

Action of allow  but of Type policy deny

Hi

panos 11.2:

 

I am using SSL Inspection for all inbound traffic on my web sites.

Certain TLS connections with TLS inspection enabled did not work. Looking at the traffic log the connections shows an Action of “allow” but of Type “deny” with Sessio

...

chens by L3 Networker
  • 719 Views
  • 13 replies
  • 0 Likes

Query on URL category change

We submitted the request to Palo Alto to have the URL category and risk changed and that was recategorized to 'low-risk' now. My question is will Palo Alto might identify the site as malicious again based on our activity in the future and change the

...

Drawbacks enabling Jumbo Frames (PA-5400 series)

Hi Community,

we are thinking about enabling Jumbo frames globally on PA-5430 firewall that is connected to Nexus and Catalyst.
- Nexus for high performance & storage with MTU 9216.
- Catalyst for all the standard stuff with MTU 1500.

Are there any limit

...

  • 24057 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels