General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4324 Views
  • 0 replies
  • 0 Likes

Resolved! Firewalls accessing Panorama: best practice

Hi, I'm looking for a best practice when deploying Panorama accross multiple sites that do not really have any interconnections (and have quite a few overlapping subnets). From what I understand, the firewalls themselves initiate the connection towards the Panorama instance (VM appliance in this case). The VM instance has one ethernet link. ...

Arne-VDH by L3 Networker
  • 5287 Views
  • 2 replies
  • 0 Likes

how many LDAP servers

How many LDAP servers can be defined in the LDAP server profile? I have 4 currently and am being asked if there is a limit. Thanks

jclingan by L0 Member
  • 4316 Views
  • 2 replies
  • 0 Likes

Panorama: dynamic updates to clients

Hi, I've added two VM-100's to Panorama and placed them into a device group. Connectivity is okay, deploying templates goes fine, but for some reason when I try to configure Panorama to shedule dynamic updates to the VM's, they don't show up in the list of devices to push it to, see: http://imgur.com/a/7hEbi Which probably easy/silly step did ...

Arne-VDH by L3 Networker
  • 5913 Views
  • 5 replies
  • 0 Likes

7.0.4 upgrade

Just wondering if people have finally bit the bullet and updated to 7.0.4. I'm still on 6 at the moment just waiting for the right version with minimum bugs that people are willing to use. I'm not using Panorama or SSL decryption so I'm getting tempted. Not sure if I should wait until 7.0.5 though.

pmc by L2 Linker
  • 4115 Views
  • 2 replies
  • 0 Likes

Integrating Panorama with existing PAN Firewalls?

I've inherited an environment where Panorama was an afterthought for 60+ PAN firewalls. Finally convinced management to buy Panorama after we terminated the reason for this mess and had to change passwords on 60+ firewalls individually. The problem I'm running into is that almost every firewall has different polcies, objects, network profiles...

Resolved! Bottom Custom Reports

So PAN systems come with a lot of awesome custom report options, but I want to find policies that aren't being used very much, perhaps let's say 0 hits in 7 days. I'm attempting to do this in a much more simplistic and preferable-to-read fashion by sorting by count and grouping by rule. The issue is that I cannot sort by count ascending, everyth...

PCI Vulnerabilities Report

Dear Friends, panos, panagent HULK hshah Steven Puluka hyadavalli mmmccorkleI have a doubt regarding PCI vulnerabilities scan and enable the signature for the same. when security team scan our WAN interface. he found below 1. SSL Certificate - Self-Signed CertificateVULNERABILITY DETAILSCVSS Base Score: 9.4CVSS Temporal Score: 6.9Severity: 2QID:...

Satish by L4 Transporter
  • 15642 Views
  • 16 replies
  • 0 Likes

Resolved! shell request failed on channel 0

Trying to do an SCP copy to a server, but I can't get past "shell request failed on channel 0". Using Solarwinds, and it says Authenticated user "username" from IP "ipaddress", but it always fails from the firewall. Any ideas?

craymond by L4 Transporter
  • 22029 Views
  • 4 replies
  • 0 Likes

PA object naming schema/convention?

Was about to create a naming schema for PA firewalls objects, but I am wondering if someone already has something I can model mine on so I don't have to reinvent the wheel.

Snake by L0 Member
  • 6380 Views
  • 4 replies
  • 0 Likes

Import ssh key

Is there a way to import an ssh key into a firewall?For instance, I run the following commands:ssh-keygen -t rsa (The public key is now located in /home/demo/.ssh/id_rsa.pub The private key (identification) is now located in /home/demo/.ssh/id_rsa)ssh-copy-id user@myfirewallWhen I run the ssh-copy-id command, I asks me to login and I get this:Un...

Resolved! ISP Failover Email Alert

Recently we configured ISP failover on two PA500s using PBF for the primary ISP and the virtual router for the backup ISP. We would like to setup some kind of email notification, or alert when this failover occurs. I've looked through the Admin Guide to try to figure out the best solution and the forums and haven't found a solution yet. What wou...

Resolved! Monitoring Accessed URL's

Hi Everyone,We have the URL filtering license, I am trying to log all websites that a user access, however, I noticed PA only logs websites which the user fails to access due to a URL filtering policy, ie only websites that are blocked from the user because they fall under a blocked category.Is there a way to log user access to all URL's.Thanks

rsaber by L1 Bithead
  • 6200 Views
  • 3 replies
  • 0 Likes
Labels