General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Threat Vector, a Unit 42 Podcast, is Now on LIVEcommunity!

We have some exciting community news to share: Threat Vector, a Unit 42 podcast, is now on LIVEcommunity!

 

Threat Vector is your compass in the world of cyberthreats. Listen to this biweekly podcast to learn about unique threat intelligence, cutting

...

jforsythe by Community Team Member
  • 305 Views
  • 0 replies
  • 0 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3649 Views
  • 2 replies
  • 14 Likes

Resolved! GlobalProtect : MAC adresses and Armis integration

Our ISO organisation has bought many passive listening Armis IOT devices in our computer centers to better identify IOT devices connected to our network.

 

Armis uses the MAC addresses of detected devices as the unique key to allow to create rules, ale

...

Resolved! HELP - VPN IPSEC - SUBNET OVERLAPPING

I require a help
I have to perform a nat in the tunnel, because my network conflicts with that of my other site:
Site 1
192.168.50.0/24
site 2
192.168.50.0/24
Serial connection from site 2 to site 1 to a specific server
192.168.50.0/24 -------- 192.168.50.2

...

policy based forwarding issue on palo alto.

Folks,

A policy based forwarding rule that we have created does not work. This pfb rule is create in vsys3 so we are not sure if any other configuration is needed.

 

When we try to see the running configuration for all pbf rules this is what it shows:

 

a

...

nson2139 by L3 Networker
  • 1831 Views
  • 1 replies
  • 0 Likes

Resolved! Vwire Active Active with ASA HA Pair

I have a n HA pair of ASA and will be implementing an HA pair of PANS between the Core and ASAs. I can send a topology if necessary. Currently have a Cisco 3750 layer 3 connected to two separate Cisco 2960s via a trunk link. The2960s are aslo inter-c

...

Firewall Logs Backup

Dear Team,

 

How to take logs from active standby firewalls i am going to migrate the firewall from 5050 to 5220 so i will lost old firewall logs once i added new firewalls to panorama.Kindly suggest how can we take the logs for future purpose and sugg

...

Global Protect gateway timeout

We are connected via Global Protect are having issues where the session gets disconnected overnight. Is there a way to override this setting only for one user ? Does below settings change will affect all users 

 

We are using split tunnel.

 

Could you pl

...

Capture.JPG

Resolved! How to remove SSH weak algorithms?

An internal PCI vulnerability scan has revealed the following issues with the PAN-820 appliance:

1. SSH Weak Algorithms Supported: Tester has detected that the remote SSH server is configured to use the Arcfour stream. RFC 4253 advises against using A

...

file download slow

Hi,

My speedtest shows 50 Mbps bandwidth remainig

.But when downloading files i am getting very low speed . To isolate the problem bypassed PA, then speed was ok .

Traffic shaping is enabled on PA.

Web browsing is  ok 

How to fix this problem 

Thanks

simsim by L4 Transporter
  • 5146 Views
  • 5 replies
  • 0 Likes

Resolved! Jquery vulnerability on Management Interface web server

Hi team

We received this vulnerability in the report by our vendor for our PA

"

According to the self-reported version in the script, the version of JQuery hosted on the remote web server is greater than or equal to 1.2 and prior to 3.5.0. It is, theref

...

shubhamG by L1 Bithead
  • 11182 Views
  • 3 replies
  • 1 Likes

Auto commit failed after upgrade to 8.1.0

We upgraded the passive firewall on our Active/Passive HA firewalls from 8.0.19 to 8.1.0.
After installing the 8.1.0 image, firewall rebooted. After that, ethernet interfaces as well as HA ports didn't go UP.

 

We also got an error, that the auto-commit

...

Resolved! export "application seen" to csv/pdf ?

Hi folks,

following situation: one of my customers has a rule that allows any traffic from trust to untrust.

the rule detects over 400 application with more than 2 terrabytes of data in the last 30 days.

is the any kind of way to export the "seen apps"

...

Custom Response Page

Hi All,

 

Hoping someone can help. I need a custom response page for URL Filtering. I know I need to use Javascript but that is not my forte so hoping can provide the inform for me. I need to produce two distinct page responses depending on the IP addr

...

a.jones by L3 Networker
  • 5316 Views
  • 8 replies
  • 0 Likes
  • 24184 Posts
  • 100 Subscriptions
Top Liked Authors
Labels