General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 257 Views
  • 0 replies
  • 1 Likes

How to approve that PaloAlto is sending Netflow

Hi, Please I need Help !! 

 

I have installed Netflow integrator to collect netflow data from PaloAlto firewall.I have configured PaloAlto to send netflow data to the server Netflow Integrator.But there is no data is receiving .

How can I know that palo

...

Nessrina by L0 Member
  • 1656 Views
  • 1 replies
  • 0 Likes

Error Checking Credentials - Bad Request

We are no longer able to log into the Web GUI after upgrading from v0.9.16 to v0.9.24, it shows the error "Error Checking Credentials - Bad Request"

 

- the username and password are a copy and paste from before so the credentials are correct

- defau

...

Resolved! How to properly disable 3DES encryption algorithm?

We are currently being required to disable 3DES in order to pass PCI compliance (due to the Sweet32 exploit).

 

We have a decryption profile for all incoming traffic hitting our firewall and services behind it, where I have tried disabling 3DES.

However

...

3DES.png
as-mg by L3 Networker
  • 12731 Views
  • 6 replies
  • 0 Likes

App-ID with encrypted sharepoint app

Hello Experts 

 

Just want to ask something, If I am running sharepoint application on https like https://myintranet then firewall will classify this application into what? Just SSL or sharepoint as well

Resolved! Service port to application help

Hello Experts

 

We migrated Juniper netscreen firewall to PA. I am just struggling to make application based policies. User just send the ports to make security policies. Like:

 

1- Allow port tcp 1549 on mysql db

2- Allow https://ebs:8000

 

How I can handl

...

Active Directory Application

Hello 

 

I create the security policy to allow users to logon to domain by simply selecting the activedirectory application but it is not working? Should I need to allow additional applications ?

Panorama VM - looking up older logs takes a long time

We have a Panorama VM with a 2TB local disk 

 

Looking up recent traffic logs takes a short time

But looking up older logs takes quite a bit longer 

As an example it took 10 minutes to look up logs older than 2016/9/20 05:25:25

I used this as a filter ( t

...

Wildfire logs

Hello,

 

It's possible to see the logs of the wildfire with the free version of wildfire that is integrated with the threat Prevention license ?

 

I will be appreciated for your helps.

 

Thank you

Mariaa by L1 Bithead
  • 1975 Views
  • 3 replies
  • 0 Likes

Resolved! Too many open files error in engine log

Hi,

 

As of yesterday morning I'm getting an error in my MineMeld engine log that is indicating too many open files. Also, some of my input and output miners are not updating (they show 0 entries even though there are indicators in the input table in

...

Resolved! M-100 service routes

Hello, 

 

can I setup service routes for M-100 other than the mangemnet Interface? 

I want to use Eth1 or Eth2 instead of the Management Interface.

 

Please advise.

 

Thank you

Kaliman by L2 Linker
  • 2118 Views
  • 1 replies
  • 0 Likes

disable inbound url filtering for performance

Would it make sense to disable url filtering for inbound traffic to our servers for performance reasons ? Logging is hogging our resources (and that's a real problem on PA-2020). Would it make any difference ? We only host a few low traffic websites.

...

dieter_b by L4 Transporter
  • 2581 Views
  • 1 replies
  • 0 Likes

Resolved! ARP not advertising for NAT translation

Hello,

 

We have BGP routing on WAN interface with WAN IP and an additional subnet ip address which is advertised by the firewall to the ISP. When we create a NAT translation from a private IP address to a public IP address from this additional subnet

...

Farzana by L4 Transporter
  • 7030 Views
  • 3 replies
  • 0 Likes

Service to Application for more than 100 policies

Hello Experts

 

I have more than 100 policies on PA firewall with service ports and application any. Manually identifying the application for each rule from logs and creating the rule with specific application on top of that rule, is really time consum

...

  • 23628 Posts
  • 107 Subscriptions
Top Liked Authors
Labels