General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4112 Views
  • 0 replies
  • 0 Likes

Any way to remove the config/commit lock button in a custom admin role?

Hi all, I'm wanting to set up a "Monitoring and Reporting" only role on Panorama. I've gone throughe and disabled commit/validate as well as all of the tabs except Dashboard, ACC, and Monitor. The thing is I've noticed the commit/config lock button is still present and clickable. Is there any way to remove this on accounts I want to be read-on...

jsalmans by L4 Transporter
  • 2148 Views
  • 2 replies
  • 0 Likes

Resolved! Syslog Miner Prototype Age-out Policy Prevents Engine from Starting

We've been working on getting the syslog miner working to block IPs from the threat logs. However, we want them to stay on the block list for longer than the default 1 hour. From reading through the prototype customization documentation, I think I should be able to configure a prototype somethink like this: source_name: panos.syslog age_out: ...

mboehlke by L1 Bithead
  • 4644 Views
  • 3 replies
  • 0 Likes

Resolved! Debug TAC commmand

Hi I have a pair of lab boxes and looking to test the debug TAC -login and TAC-response commmands. My understanding ia usually TAC provided a password to unlock the data is it possible to get a test password for my company to use? We do not require TAC support but just looking around at different feature and what's there to view.

Resolved! Difference between Aggregate and Classified DoS Protection

Hi Folks,I tried a lot to get my head around Aggregate and Classified DoS Protection. For some reason, i haven't been able to understand the difference. Tried looking into the knowledge base, but nothing helped me. Could someone please explain in short what the difference is.Thanks in advance.Regards,

Resolved! External email attachments

Hi everyone,We allow our users to check personal email externally(gmail/yahoo/etc). I'd like to prevent them from downloading attachments from these external emails if possible. Can this be done and how? Reason being, downloading attachments directly to the desktop bypasses our other lines of defense. We'd like to force them to forward said mess...

Crash28 by L1 Bithead
  • 4861 Views
  • 4 replies
  • 0 Likes

Idea to use Palo Alto for IDS replacement

I have a idea to use the Palo Alto Firewall Vulnerability Protection Profile has a IDS sensor. Here is the idea I have what to run this by anyone. Also need help to know if this will work. Vulnerabilityvulenerability Protection ProfileCreate a RuleRule Name: IDS TestThreat Name: anyAction: AlertHost Type: ?Category: brute-force, DOS, scancreate...

Intermittent SSL

SSL traffic stops after about 45 minutes and is restored in about the same time frame (maybe longer). Firewall is not configured to decrypt. HTTP traffic has no problems. Just deployed (test network) low use firewall (3050) running 7.1.7.

Tom-T by L1 Bithead
  • 5164 Views
  • 9 replies
  • 0 Likes

Drop_update

Hi, I've just created a new node and I'm seeing events such us: DROP_UPDATE on aggregator type. My miner has all domain list but the aggregator has this meessge with "drop_update", do you know it??? Why??? Thanks a lot

SantiBT by L2 Linker
  • 5778 Views
  • 5 replies
  • 0 Likes

Resolved! Proper procedure for updating an extension

I tried this and it seemed to work, just want to be sure it is the right procedure. 1. Disable/delete existing extension wheel 2. Upload/activate updated extension wheel Is there any negative impact on the nodes using the prototypes and classes of the removed extension between steps 1 and 2?

MineMeld not updating Office 365 IPs or URLs

Hello Everyone, Two days ago I installed MineMeld so that we could use it to "mine" the Microsoft maintained XML for the latest Office 365 IP addresses and URLs. The first night It appears it worked as expected. However, I have not been able to get it to run again. When I try to do a run now, I get an error that states: Error Hupping Node:...

NickD. by L0 Member
  • 4864 Views
  • 1 replies
  • 0 Likes

Upgrading Panorama

Hi Guys, I'm planning my panorama upgrade from 6.1.8 to 7.1.x, before starting with process, i want few doubts to be cleared. 1. My firewalls are still on 6.1.8, as per the PaloAlto documentation, after upgrading Panorama, it won't effect firewalls and keeps collecting logs. 2. While upgrading, during upgrading activity my firewalls will lost co...

Resolved! Firewall bypass due to Java/Python FTP Injections

Hi. Reading the article below on firewall bypass I was wondering if Palo Alto Networks by default blocks active FTP connections. http://blog.blindspotsecurity.com/2017/02/advisory-javapython-ftp-injections.html That would mitigate the threat. Anyone an idea?

quizizz.com mobile website will not display pictures - app-id blocked as snapchat

We have teachers trying to use the website quizizz.com and the kids can't view the pictures on their phones, the questions come through but not the images. The desktop version works fine. When I check the firewall logs, it shows an app-id block for snapchat. I am not using snapchat on any of the test devices. Has anyone else had this issue w...

pko by L1 Bithead
  • 3135 Views
  • 1 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels