General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Threat Vector, a Unit 42 Podcast, is Now on LIVEcommunity!

We have some exciting community news to share: Threat Vector, a Unit 42 podcast, is now on LIVEcommunity!

 

Threat Vector is your compass in the world of cyberthreats. Listen to this biweekly podcast to learn about unique threat intelligence, cutting

...

jforsythe by Community Team Member
  • 271 Views
  • 0 replies
  • 0 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3597 Views
  • 2 replies
  • 14 Likes

Failed to add correlation object 601x

This morning, I've received the following alerts from both of our PA-3050 firewalls:

 

Failed to add correlation object 6011

Failed to add correlation object 6012

Failed to add correlation object 6013

Failed to add correlation object 6014

Failed to add cor

...

Resolved! What PAN-OS version is support currently recommending?

What PAN-OS version is PAN support currently recommending for active/passive PA-3050s?  Last I checked (a few months ago), it was 7.0.8.  We're currently running this version, but it has a minor bug that is impacting us.  We were told by support a fe

...

What's new in MineMeld 0.9.28

Release Date: 2016-11-16

 

How to update: Updating MineMeld

 

Core

- stability and performance improvements in most of the Miners

 

API

- new authentication and authorization mechanism for output feeds. Disabled by default for consistency with previo

...

Screen Shot 2016-11-16 at 12.49.48.png
Screen Shot 2016-11-16 at 12.54.53.png
Screen Shot 2016-11-16 at 12.54.30.png
lmori by L7 Applicator
  • 2882 Views
  • 0 replies
  • 1 Likes

Error reading last checkpoint

Hi everyone,

 

I am facing an issue that floods my output SIEM a little to often. The issue seems to be that the miner node is unable to register where it left of during the last check. Any tips on solving this?

 

2016-11-14T08:54:30 (17269)base.read_che...

Forseti by L1 Bithead
  • 4728 Views
  • 5 replies
  • 0 Likes

Resolved! Check error on interface

Hi,

 

I was playing around with CLI and typed the command:

>show system state filter sys.s1.* | match crc

 

Then got this details:
sys.s1.p5.detail: { 'bad_crc': 0x157352, 'fragments_pkts': 0x1247, 'mac_rcv_error': 0x228b09, 'pkts1024tomax_octets': 0x13e0f

...

MineMeld Docker

I started building out a very simple dev (read: unhardened) docker build for MineMeld here: https://github.com/swannysec/MineMeldDocker

 

Looks like it won't start up correctly inside a container and I think it might be related to the use of UNIX soc

...

rsyslogd dependencies problem

Hi Luigi,

 

I was testing stdlib.localSyslog to correlate paloalto logs with indicator following this article https://live.paloaltonetworks.com/t5/tkb/articleprintpage/tkb-id/MineMeldArticles/article-id/11

 

But I was unable to make it work. After a

...

uam by L1 Bithead
  • 5313 Views
  • 3 replies
  • 0 Likes

Link types for HA

I have a client who wants to split their PA3020 HA cluster between 2 datacenters.   What are the limitations for the HA1/HA2 interfaces in terms of distance, and network latency for active/passive HA to work cleanly.  On a 3020 can HA1/HA2 functional

...

rswart by L0 Member
  • 1841 Views
  • 1 replies
  • 0 Likes

BGP Multiple ISP VR Requirements

I'm attempting to wrap my head around a very critical piece of setting up BGP between 2 ISP's concerning how many Virtual Routers are required.

 

I currently have 1 ISP (A) up and running on BGP just fine and my other ISP (B) will be converted to BGP o

...

Application Filter Traffic Reports

Is it possible to view traffic related to a specific application filter through the "Monitor" tab? For example, if I setup an application filter for the "gaming" subcategory, can I view the related traffic without specifying each application individu

...

Resolved! Best Practice policy 7.1

I am attempting to implement best practice internet gateway in the 7.1 admin guide. One on the steps toward the end is creating Temporary tuning rules to see what applications are communicating over non-standard ports. I have rule above the tuning ru

...

web-browse log.PNG
  • 24174 Posts
  • 100 Subscriptions
Top Liked Authors
Labels