General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

LDAP-S Authentification failed (LDAP-S with TLS1 ?)

Hi,

 

while using LDAP-S (port 636) on a PAN Firewall for a connection to an active directory on a Windows Server 2019 I have the problem that the Firewall just can't connect.

 

If I try the "test" command for testing the authentication profile I get thi

...

maximum length of TACACS User ID

We use TACACS+ server for admin authentication.

 

Is there a limit on the length of an ID?  I have one that is 40 characters (we use email IDs).

 

Getting an auth-success log message for this user, but then a Critical "create-admin-acct-error" message:

 

F

...

cdwing by L1 Bithead
  • 1874 Views
  • 2 replies
  • 0 Likes

PRTG monitoring thresholds

Hello, i am implementing PRTG and monitoring my PAs. We can monitor CPU, Disk free and Memory. My question is which should be the thresholds and how to react?

PaloAlto_LiveCommunity.PNG

interest in a MineMeld ESXi 6.5 OVA?

I have a working OVA of MineMeld installed on Ubuntu 18.04 server. One of the guys here where I work put in a ton of hours getting it installed and working. Is anyone interested in getting a copy.

If so does anyone know a good repository to put it?

Mattk by L2 Linker
  • 2048 Views
  • 1 replies
  • 0 Likes

How do I run multiple commands?

How do I run these commands with one command/automation?? (instead of one by one manually)

 

!taskComplete id=7
!taskComplete id=33 input=no
!taskComplete id=138 input=Spam
!taskComplete id=237 input=Spam
/incident_set phishingcategory=Spam incidentcategor

...

Stuefen by L0 Member
  • 2003 Views
  • 1 replies
  • 0 Likes

Device State from Multiple Devices

I have a question and I am hoping I am not the first person to have asked it, and that there is a script out there somewhere.

 

I am trying to get the device state from multiple firewalls and need to somehow put it in a script.   I do leverage the sc

...

PA220 and IoT Security Policy Recommendations

Hello everyone.

I am trying to get the policy recommendations from IoT Security to work.

After following the detailed onboarding instructions, everything seems to be properly set-up on both the firewall and the IoT Security portal.

 

All licenses are act

...

LarsPS_0-1642407559759.png
LarsPS_1-1642407652985.png
LarsPS_2-1642407711012.png
LarsPS by L0 Member
  • 1533 Views
  • 1 replies
  • 0 Likes

Alert on Policy Rule Modification

Hello Everybody,

 

I would like to know if there is a possibility to be alerted in case of modification of a rule.
For example: if a rule is modified, an email is automatically sent to a specific person

 

Thank you

 

Valentino

GWLB AWS - HA what to do if both appliances go down?

We are deploying two PA on AWS using GWLB and we are wondering what would happen if for any reason both aplliances go down , since all traffic (inbound , outbound and inter-vpc) is going through the FWs , do you know a quick bypass or fail-open solut

...

Cgca1620 by L0 Member
  • 1431 Views
  • 1 replies
  • 0 Likes

Resolved! Step to change standalone for both device

Hi All,

 

All our PA is managed by Panorama and there are a couple of HA pairs in our environment. we just want to change one of the HA pair to standalone.

 

Currently our set up is active passive. We would like change to standalone on both device. Is th

...

management interface & service route configuration

Hello
I am new in palo alto, I did a self-training
I would like to have more details about the relation between the management interface and the service route configuration
I have a little bit stuck on when to use the route configuration service
I think

...

Toufik by L0 Member
  • 3407 Views
  • 2 replies
  • 0 Likes

Azure Tag in Security policies

Hi There,

 

How we could create dynamic security policies from Azure tag. In the Azure Market place I do see this statement.
"policies that are dynamically updated based on Azure tags assigned to workloads, allowing you to reduce the attack surface are

...

  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels