General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Firewall policy for a web server with two websites

Hi Community,
I am new to this forum and also not an exprienced person on firewall policies. So I thought to put my question on the forum. This is what I try to achieve, I have a group of web servers with one virtual IP serving two websites (HTTPS). E

...

Customizing Welcome Pages

Has anyone had success with putting in a close button in the welcome page when clients connect? While the button works and closes the page in the global protect app, it doesn't close the global protect popup window itself.

This is first time configuri

...

claing by L0 Member
  • 1244 Views
  • 0 replies
  • 0 Likes

Resolved! Add locally managed FW to Panorama

Hello everyone,

 

I want to add clusters of locally managed FW to Panorama without modifying any local policies and objects. Can I do so and add them to a device group in the future?

 

Thanks,

SSL Interception and CDNs

Looking for your guy's feedback on potential issues you've seen with SSL Interception and CDNs?  I know there's a potential for thick clients like Dropbox to break if you crack SSL for the domains used there.  Are there any other concerns to keep in

...

Withdraw mesage source

Hi everyone,

 

I am currently working on connecting MineMeld with our SIEM solution. I however ran into a question.

 

When receiving an update message it states which sources the IOC originated from, also if there are multiple. example: (binarydefense an

...

Forseti by L1 Bithead
  • 3157 Views
  • 2 replies
  • 0 Likes

Resolved! Globalprotect 3.1.1 compatibility with PAN-OS 6.1.12

From the release notes for Globalprotect agent 3.1.1:

 

Minimum supported version

PAN‐OS 6.1 and later releases for GlobalProtect gateways
PAN‐OS 7.1 for GlobalProtect portals

 

We're on PAN-OS 6.1.12 and have portal and gateway on the same device. Does th

...

dieter_b by L4 Transporter
  • 3613 Views
  • 3 replies
  • 0 Likes

Resolved! Vulnerabilities detected during scan

Hi all, 

 

I ran a vulnerability scan on my Palo Alto this afternoon, and I am receiving the following vulnerability:

 

 

 

I am a little confused as to why I am receiving it since I have one TLS/SSL Service Profile (using TLSv1.2 strictly) that is setup t

...

Screen Shot 2016-10-11 at 6.56.17 PM.png
mmclimans by L3 Networker
  • 2088 Views
  • 1 replies
  • 0 Likes

PA-200 and ARP

I have a duplicate arp entry in a PA-200 I cannot get rid of. I have no clue where it is coming from. Its not HA just a standalone 200 on a single /24. I have looked at every device on the network and I cant figure it out. Any suggestions?

Replacement PA-500

Does anyone know where I can buy a replacement PA-500? I have one that failed on Saturday (won't power on) and PA Support is dragging its feet on approving a replacement. They said:

 

I have submitted the RMA request and you are entitled to next busine

...

Cramer by L1 Bithead
  • 3529 Views
  • 6 replies
  • 0 Likes

Resolved! ECMP link monitor 7.1.4

We had an issue with our secondary ISP last night that ECMP didn't handle passing all traffic to the promary ISP as the interface was still up.Does anyone have a suggestion on how to monitor the ISPs and down the link that is having issues? Current c

...

nwetech by L1 Bithead
  • 2830 Views
  • 3 replies
  • 0 Likes

Panorama ISP redundancy

Hey

 

I have a situation that my main site has 2 ISPs i configured the remote PA to talk with panorama thought the External Interface in order to maintain connectivity even if i have problems with the internal network on the remote site.

 

I would like t

...

minow by L4 Transporter
  • 1679 Views
  • 1 replies
  • 0 Likes

PAN-5060 Fans running at Full Speed

My 5060 fans are running at full speed at all times. I attempted to run the follow command "set system setting fan-mode auto" in Operation and Configure mode and it will not work. Getting the "invalid syntax" error.

 

Any thoughts???

DHCP Relay source Interface

Hi all,

 

We're having some difficulties with DHCP Relay on PA 7.0.5.  Our setup looks like this:

 Client <-> L2 SW <-> PA <-> L3 SW <-> DHCP Server

 

We use a VLAN sub-interface on the PA as the default gateway for that subnet and I configured DHCP Relay

...

  • 24340 Posts
  • 101 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels