General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 611 Views
  • 0 replies
  • 0 Likes

Resolved! Remote Management of PA-200 through SSL-VPN

I would like to be able to reach the web management interface and the CLI of our PA device, while connected through the Global Protect VPN. The networks are on separate segments, and I have access routes and rules in place to allow the traffic to the

...

How do I set up VPN for Windows and IOS devices?

I'm trying to figure out how to allow users to VPN into the Palo Alto, and I was wondering what my options are?

I attempted GlobalProtect, but it really was not clear on how to allow users to download the client for the first time. I'm not sure that I

...

blandis by Not applicable
  • 2494 Views
  • 2 replies
  • 0 Likes

Publicly Routable DMZ for Microsoft Lync 2010 Edge Servers

Hello all,

I'm hoping you can help me with a problem that has me stumped.  I'm trying to configure our PA 5020 to support a Microsoft Lync 2010 server edge environment being load balanced by an F5.  Per Microsoft, in order to do this the IP addresses

...

mss by L0 Member
  • 2298 Views
  • 1 replies
  • 0 Likes

Resolved! Monitor NAT Traffic?

Can anyone think of a method to monitor the NAT Translation?  The back story is this... We have remote access points that point to a public IP address and then get NAT over to the private address of the wireless controllers.  When we migrated to the

...

mcw015 by Not applicable
  • 21274 Views
  • 1 replies
  • 0 Likes

Getting Syslog in through PA 500

I have a router just outside my PAN 500, ver 4.0.5. I need to get syslog information in from it for my PCI requirements. Here is my setup:

The following objects are defined:

INT-NPM               Syslog server, IP address 172.15.10.8

TWC-RTR            

...

u7483 by Not applicable
  • 2744 Views
  • 3 replies
  • 0 Likes

Can the Paloalto be used as a ftp proxy?

I currently have a PA-2050 acting as a firewall to a collection of private networks (with private IP addresses). Several of these "inside" hosts do need access to external IP addresses/hosts. Specificially to ftp information out and in.

Is it possible

...

quist by Not applicable
  • 3092 Views
  • 1 replies
  • 0 Likes

Very strange problem with connection

Very strange problem
Hi,
have paloalto PA-500.
I have three internet providers.
I have many branch offices (40).

my case

4.1.0 software
from all branch office we ping WAN1, WAN2, WAN3 is OK

the weekend I did upgrade the software to version 4.1.3
from all bran

...

PBR IN HARDWARE?

Hello!

just a little question on PBR!

PA4020 support PBR in HARDWARE? Which Limitation For PBR?

thks,

ALLE

alle by L3 Networker
  • 4898 Views
  • 10 replies
  • 0 Likes

UID Agent Not Recognizing Docked Laptops

Last week we depolyed a PA500 for the first time and are seeing an issue with certain computers.  The issue is affecting some users who have laptops and are using them on a docking station.  When they are docked the computer essentially has two NICs

...

polgarm by Not applicable
  • 3274 Views
  • 2 replies
  • 0 Likes

Cannot get DMZ access to work

I have a PA 500, running 4.0.5 and I have two zones that are 'special' : PCI and DMZ. Both are setup identically but only one works. Here is how it is:

Zones: Rest1 (Tunnel.1), DMZ (1/8), External (1/1, 1/7), Internal (1/1, tunnel, Tunnel.2), PCI (1/6

...

u7483 by Not applicable
  • 6489 Views
  • 7 replies
  • 0 Likes

PA 500, Hairpin routing and front ending certs

I am trying to implement a Exchange 2010 setup and the consultant is asking if the PA can handle HairPin routng and if it can front end the certs for the Exchange systems. I haven't a clue and google results were less than clear,  so am turning to th

...

u7483 by Not applicable
  • 2462 Views
  • 1 replies
  • 0 Likes

Resolved! PA-5020 NAT Limitations ?

All,

We're in the process of doing a Checkpoing to PA conversion and we think we've found a possible show stopping issue. On our Checkpoints we have a large number of NATs that we need to port over. Our vendor runs through the conversion tool and gene

...

steveo by L3 Networker
  • 3583 Views
  • 5 replies
  • 0 Likes
Labels