General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Suspicious TLS Evasion Found(14978)

Dear Team,

 

I have configured the web service behind PA. and attached the security profile . i can see in the thread logs the thread is generating "Suspicious TLS Evasion Found(14978)".

i have gone through the below KB but didn't understand

 

https://kno

...

Jafar_Hussain_0-1631539667011.png

RDP with another account deleting the local mapping

Hi,

 

We use GP to connect to our company. So when i open a RDP to internal server using administrator user, my local mapping change also to administrator. We are using agentless for userid. 

 

What option do we have in order to keep the local mapping? i

...

BigPalo by L4 Transporter
  • 1586 Views
  • 1 replies
  • 0 Likes

WildFire EU connection timeouts

Some of the customers are experiencing following errors with PAN devices (updates OS 8.x) that use WildFire EU (about 5-10 per day at random times):

 

Event: 'wildfire-conn-failed'

Severity: 'medium'

Description: 'Failed to perform task multiple times re

...

VVlada by L0 Member
  • 7882 Views
  • 6 replies
  • 0 Likes

IP for Cluster HA Active Pasive

Hello,

We have a 3200 series HA cluster active/passive version 9.1.10.

The requirement is to access through a single ip always to the active node.

That is, I have an IP for the active node and another for the passive node but I want to configure a singl

...

Alpalo by L4 Transporter
  • 2153 Views
  • 2 replies
  • 0 Likes

GOOGLE MAPS WHILE BLOCKING OTHER GOOGLE SERVICES

Does anyone have any ideas on how to permit access to Google Maps but block access to all other Google services? I have tried using a rule matching the Google-Maps application however it requires google-base which allows many other Google services. I

...

j.moore by L2 Linker
  • 8308 Views
  • 12 replies
  • 0 Likes

Single-homed interface configuration VPN?

Dear all, 

 

Wanna get rid of my existing VPN gateway (single-homed interface configuration) in DMZ (already have another two-tier FWs in between) in replacing with new PA-series without changing the network topo. Only client-to-site VPN is required.

 

A

...

Can't access management console

I made a big mistake and not sure how to correct it.  We have a Palo Alto Firewall.  I wanted to white list an IP address so my PCI Scans would not fail.  I found an article but it seems it lead me a totally different direction.  It had me put the IP

...

bobvaal by L0 Member
  • 3258 Views
  • 3 replies
  • 0 Likes

Resolved! HA Link and Path Monitoring

Hello everyone

 

We have configured active-passive HA on a pair of 5220

 

I have configured link monitoring

 

I need to migrate the HA links of the FW , all except the backup HA1 management one.

 

What would be the best procedure to prevent them from becomin

...

Alpalo_0-1631634199084.png
Alpalo by L4 Transporter
  • 2245 Views
  • 1 replies
  • 0 Likes

Now Open: Papers for the Ignite'21 Conference

Hi everyone,

 

I wanted to let you all know that Palo Alto Networks is now accepting Papers for the Ignite'21 Conference! 

 

Palo Alto Networks is looking for speakers and presenters with highly technical backgrounds who can share their experience an

...

jdelio by L7 Applicator
  • 2419 Views
  • 1 replies
  • 2 Likes

Custom report analyse trafic on object

I want to check all my object addresses with zero traffic to clean up my flow rules.

Can I replace my sources and destination IP with an "all IP" setting ? 

Can you help me ?

section "Query Builder" does not work (see image)

 

 

 

navaro06 by L1 Bithead
  • 3298 Views
  • 7 replies
  • 0 Likes
  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels