General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 758 Views
  • 0 replies
  • 0 Likes

Resolved! How to add/delete host keys

Hello,

I was testing out different SCP servers to export logs from the PA firewall, but I got this message after my third SCP server:

<user>@PA2050> scp export logdb to <user>@10.200.168.158:logdb
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@

...

sonet by L2 Linker
  • 9185 Views
  • 2 replies
  • 0 Likes

Resolved! IKEV2 w Cert - Wildcard peer for DN does not work.

Can someone please give me the format you are using for the peer id using DN with a wildcard. CN= ??

 

I try 

CN=*

CN=lab-fw-vyos-*

 

The DN in the logs coming in from the peer is

lab-fw-vyos-testsite

 

when I try CN=lab-fw-vyos-testsite it works but

...

NSutfin by L2 Linker
  • 437 Views
  • 4 replies
  • 0 Likes

Question regarding Signal messaging application

Currently have a PA-440 at home and trying to setup Signal messaging application.  I know the application is cert-pinned and therefore cannot be decrypted.  To get it to work, I added to the SSL Exclusion Decryption list the following hosts/domains p

...

Custom Logs / Path Monitor Alert

Hello!

 

I may be trying to do something impossible, but it seems like the configuration elements are all there.  We have a static default route to our ISP that is set with path monitoring so that we failover to a backup route when the gateway is unr

...

building a lab with PA-440 or VMs

Hello everyone,

 

I have some knowledge about PaloAlto NGFW but now I intend to focus and get some certifications. For that I bought a PA-440 which runs 11.2.5 and I intend to buy a second one which doesn't have an active license and running 10.2.3-h

...

No internet after changing ISP

PA-440, OS 10.1.14, Standalone

We just changed the ISP, the static IP in interface (WAN), updated the Virtual Router as well, NAT, PBF, Security Policy was checked, IKE Gateway.

But we couldn't browse the internet. The firewall management GUI is also

...

Dars_Em by L1 Bithead
  • 369 Views
  • 7 replies
  • 0 Likes

Configure SAML for GloblaProtect and use groups to filter

Hi,

I would like to configure SAML for my GP authentication and  I would also like to be able to assign IPs by user groups and configure rules for these remote users by user groups. 

Does anyone know if this is possible? how can match users received

...

BigPalo by L4 Transporter
  • 131 Views
  • 1 replies
  • 0 Likes
  • 23984 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels