General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Discussions

Decryption Port Mirror

Hi to all,


in My Devices > Request Licenses appeared, in the last few days, a new "Decryption Port Mirror (requires PAN OS 6.0.0 or higher)" .

Is anyone able to explain what is about? Probably I have to wait till end of the year new PANOS 6.0 but a sne

...

NGS_SOC by L3 Networker
  • 3497 Views
  • 4 replies
  • 1 Likes

Custom Vulnerability (.DMG)

Hi All,

PanOSS 5.0.10

The following site (amongst others) hosts a malicious file that I want to block: Download Genieo. The file is a .dmg and I want it blocked to my Mac user estate. Rather than block the URL I thought I would give Custom Signatures >

...

nickcx1 by Not applicable
  • 3113 Views
  • 2 replies
  • 1 Likes

Resolved! Problem with SSL youtube app

Hi,

From yesterday we have issues with the app categorization. We have a QoS profile defined for youtube with a max bandwith of 5mb.

When we browse any https URL the PA appliance categorizes as "youtube-base", with an url categorization of "any":

This i

...

ecardona by L1 Bithead
  • 4004 Views
  • 6 replies
  • 0 Likes

Resolved! Which are the PAN-DB URL categorization rules?

When an URL is categorized as malware by PAN-DB, I can´t find the reasons of  such decision.

Why has it been categorized as malware?

Is there any way to know more about such decision?

I will be grateful if you can explain me this decision.

G.A.

Resolved! ftp and PAN-OS 6.0 problem

Hi Team!

I have a problem with ftp application in PAN-OS 6.0 after upgrading from 5.9.

Passive ftp is stop working correctly.

Temporary resolved by creating an application override rule.

Any ideas?

Thank you

Oleksandr by L3 Networker
  • 6046 Views
  • 11 replies
  • 1 Likes

known and UNknown BUGS

Hi All,

Have You any information about known and unknown (if it possible of cos'      ) bugs that not published at the time?

Alex

Oleksandr by L3 Networker
  • 2159 Views
  • 3 replies
  • 0 Likes

Resolved! SYN-Flood packets dropped by unknown rule

Hi everybody,

we got a lot of syn-packets which were dropped  by the rule any-allow. But we haven't this rule, so is it a inbuilt rule and

why do i need a DoS-Rule to be protected against Syn-Floods if there is a builtin rule.

Cheers klaus

kdd by L4 Transporter
  • 5116 Views
  • 14 replies
  • 0 Likes

Resolved! Decryption policy Issue

Hi All,

I'm just trying to configure decryption. because I'm facing Issue while blocking applications(not all the applications got blocked as the policy supposed to do).

First of all, I'm using Trusted CA, and here you are the steps I followed To gener

...

How to block the real IPs from CDN?

Is there any function that can makes the PA block the traffic of the real IP instead of CDN IPs?

We deployed the PA NGFW on the external side of our web server and enabled the Threat Prevention function. Because we are using the CDN, so from the web s

...

SteveY by L1 Bithead
  • 3972 Views
  • 6 replies
  • 0 Likes

How many are brightcloud's updating interval?

Hello

The anti-virus signature is released on every day.

The application signature and other threat signature without anti-virus is released once a week.

So How is brightcloud url filtering database updating??

I don't know how make the schedule of url-fi

...

Labels