General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

vulnerability id 31327

Hello,

 

Start 10/13,  I have been getting medium threat alert for vulnerability id 31327 (Attempted Antivirus Detection Bypass via Malformed ZIP Archive).  I beleve it is my iOS devices connect to apple store to download app updates.  Anyone else sees

...

Screen Shot 2016-10-22 at 7.13.09 AM.png

SNMP and ARP

Is there a way to pull the ARP table from a firewall using SNMP?

We have tools that utilize the ipNetToMediaPhysAddress (OID repository - {iso(1) identified-organization(3) dod(6) internet(1) mgmt(2) mib-2(1) ip(4) ipNetToMediaTable(22) ipNe…) on othe

...

hkp by Not applicable
  • 6520 Views
  • 5 replies
  • 0 Likes

Resolved! New DNS configuration issue

Hi All,

 

I have coinfigured a new DNS server on Palo Alto device. However, it is still sending queries to the old DNS servers.

Please help.

 

Regards,

Raghav

 

Raghav_B by L2 Linker
  • 6241 Views
  • 15 replies
  • 0 Likes

set up TCP ports timeout

Hello Community,

 

I need to know if it is possible?

 

 change the timeout for the following TCP ports to 4 hours (14400 seconds)

TCP 1521
TCP 2101
TCP 1601-1630
TCP 2101
TCP 18400-18430

 

Best Regards

Andres Padilla

Apadilla by L3 Networker
  • 2116 Views
  • 3 replies
  • 0 Likes

Dynamic virtual routers

Can interfaces be assigned to two different virtual routers so that for example if a particular static route stops working it will "dymanically failover" to the other virtual router which has another static route for the interface?

 

 

Sorry I'm pretty

...

PPoE with Static IP Block

Need to set up a small office with a PA-200 using PPoE. Simple enough...but the ISP has allocated a /29 static block (5 usable IP addresses). We currently have a few 1to1 NATs in place for an SMTP relay and web server so being able to use the entire

...

Identifying user rules UserID

Hi,

 

We are expecting several issues with user identificatiom. We see connections identifying users but suddently the connections stop identifying. 

 

I attach an screenshot

 

UserID captura.jpg

PA-200 RULES

Good afternoon. I have a PA-200 and would like some help! Where can I create a rule below within Palo Alto. FORWARD -s 10.0.0.0/16 -d 192.168.1.0/24 -j ACCEPT FORWARD -s 192.168.1.0/24 -d 10.0.0.0/16 -j ACCEPT I am new to my company and I do not know...

API for clearing session

Can some one share some light on creating some API to do below steps:

 

1) identify an application or port ( for ex: 5555 or backup app) when this traffic apprears on one egress interface , need to clear the sesion for this specified traffic.

 

( situati

...

Number of session

Hi,

Palo alto suddenly stops client going internet .

resolving dns stops  ( dns forwarder  just giving timeout instead of  the dns query result ) .

Does it mean maximum  number of session has saturated? 

How can we know maximum number of session reached

...

sib2017 by L4 Transporter
  • 2197 Views
  • 5 replies
  • 0 Likes

Wildfire SMTP - Malicious objects not blocked

Hi,

 

We recently had our FW setup by an external security company.

 

Yesterday we had a malicious email attack which got past our email scanning service. Although Wildfire identified the attachments as malicious, they were sent on to the recipients (aro

...

Capture3.PNG
Kuiper by L1 Bithead
  • 2801 Views
  • 5 replies
  • 0 Likes
  • 24254 Posts
  • 99 Subscriptions
Top Liked Authors
Labels