General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Best Practice policy 7.1

I am attempting to implement best practice internet gateway in the 7.1 admin guide. One on the steps toward the end is creating Temporary tuning rules to see what applications are communicating over non-standard ports. I have rule above the tuning ru

...

web-browse log.PNG

active/active vpn query.

Hi Team,

Case no: 00567829

I have a customer, who have active/active set up.
He had configured a vpn with the floating ip.

The vpn is working fine. No issues with that but he is getting system alert message on the active/secondary device about the phase1

...

Resolved! Save Credentials Global Protect

Hey Guys,

 

I'm running the latest software with 7.1.5 and Global Protect 3.1.1, and I'm missing the feature to save the credentials. In the agent settings I configured the Save User Credentials to Yes, but neither the username nor the password is real

...

oheigl by L1 Bithead
  • 2812 Views
  • 3 replies
  • 0 Likes

Resolved! Why the chart not continuous?

Dear all,

 

My customer have issue when checking report. Boss ask him why the chart not continuous? Who can help me explain at the red circle? Why and when it will continuous or not. So many thanks and hope get reply soon.

not continue.png
luancb by L1 Bithead
  • 4946 Views
  • 10 replies
  • 0 Likes

Investigation of possible threats

My company has a PA3050.  I am new to this device.  It is currently setup to mirror/monitor port on current Cisco firewall.  The device is reporting that it is finding suspicous files and various other vulnerabilities.  There is concern that this is

...

phxcpv by L1 Bithead
  • 2591 Views
  • 6 replies
  • 0 Likes

copy production panorama policies to lab panorama

Hello Expert

 

I have Panorama VM and managing 6 LSYS on two different PA firewalls. I would like to export security rules from Panorama and import into another Panorama in my lab for policies testing. What type of configuration I need to export from P

...

Resolved! active/passive HA setup with existing production firewall

I have a second PA-500 I need to add to an existing production PA-500 for active/passive HA. I have read the admin guide for HA setup, but it appears to be for two pre-production firewalls. Are there any special precautions I need to take into accoun

...

Bvance by L2 Linker
  • 4189 Views
  • 3 replies
  • 0 Likes

Resolved! Applications for Internet web browsing?

Hello

 

I am not doing SSL decryption on PA, then all internet web-browsing would be boils down to SSL and web-browsing applications, right? So in security policy if I want to allow internet web browsing then allowing applications SSL and web-browsing

...

Resolved! unknown-tcp and web application

Hello Experts

 

Just want to know, 

 

1- If PA can not identify the web application then it will classify it as SSL/Web-browsing or unknown-tcp?

2- unknown-tcp and unkown-udp is only for client/server application?

 

Regards,

 

GR

User support on PA devices

Hi All,

 

Can I have an information how many users does PA-4060 PA-3020 PA-500 support for "normal" usage.

We have some deployment soon and we need this information.

 

Thank you in advance.

Ivan

ibogovic by L0 Member
  • 2434 Views
  • 4 replies
  • 0 Likes

Resolved! Custom Application and TAC

Hello 

 

Can I request to TAC to create custom application or I have to do by my self? I found this but I guest it is for public application not for internal.

http://researchcenter.paloaltonetworks.com/submit-an-application/

Resolved! Hardening the security rule for service ports

Hello Experts

 

In my firewall configuration, many security rules have specific application but service ANY. I would like to harden service part as well. Once I veiw the logs for particular security rule to check service ports, there are many pages, I

...

  • 23701 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels