General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Panorama Packet Capture: "File Not Found"

I noticed when trying to open a packet capture in the GUI by clicking the green "down" arrow I get the following error message: "File Not Found". This happens for every capture I try to open with the green arrow in PANORAMA. The packet capture opens fine if I go to the firewall itself and not panorama.

Packet Capture File Not Found.PNG

Resolved! URL Categories - match different categories

HelloHow do the PA decide which categorie it should use, if a web site matches 2 categories.Example: I have checked "www.paloaltonetworks.com" at Brightcloud. The result, it matches "Business and Economy" and "Computer and Internet Security".So I created a special rule set to deny both categories from a specific client. Result: site blocked.Now ...

TRisec by L1 Bithead
  • 8365 Views
  • 3 replies
  • 1 Likes

Resolved! Create new output

Hi, I am new to Minemeld, we are running with the classic O365 Minemeld config on MM version: 0.9.34. I have a requirement to extract the data for Skype only. Is it possible to create an output from just the 'office365_skypeBusinessOnline' node, if so how is this done, thanks ?

paul_w by L2 Linker
  • 4272 Views
  • 2 replies
  • 0 Likes

URL Filtering - Allow access to sites or categories by AD Group

I am a complete newby here. We are migrating from Websense to PA URL Filtering. I would like to duplicate policies so I can allow certain people access to specific web sites or categories, but continue to block everyone else. This should be seamless, not requiring the user to enter a password each time they want to go to the site. I would hope i...

FreAlan by L0 Member
  • 2971 Views
  • 2 replies
  • 0 Likes

Monitor threat - URL/FileName

Hi,in monitor threat I can't view URL/FileName in details.I want to view the SQL injection with the full URL (comprehensive of the query string).Is there a way to see it?

s_quasar by L3 Networker
  • 3088 Views
  • 4 replies
  • 0 Likes

Minemeld stuck after reboot

I deployed serveral times Minemeld and everything is running fine. But when I reboot Minemeld I got stuck in the boot procedure. First it hangs for 120 seconds: Cloud-init-nonet[14.62]: waiting 120 seconds for network devices. after 120 seconds: Stopping Handle aaplying cloud-config Waiting for network configuration... waiting up to 60 more se...

minemeld-01.png
minemeld-02.png
minemeld-03.png
minemeld-04.png

Global connect client connected but no IP address assigned

I have this odd situation, global connect client successfully establish the connection with portal but in network area there is no IP address on virtual PAN network card. This is only happening with new users. Old users seems to have no problems.I Have GP version 3.0.0-74 and PA-500.Is anyone else having same isue? Every suggestion would be appr...

External Block List for matching objects in security and decryption policies

Hi, We have few use cases around dynamically block list (dynamic update for us) however we would like to use it to identify and "allow" apps rather than "block". Considering it is just a group with objects which are dynamically populated based on url, i think it will work. We would like to provide ssh-proxy exception based on the dbl. Strangly e...

Trusted MFA Gateways

What to type? What format? The doc doesn't say... I'm testing MFA in non-http traffic, and have enabled "Inbound Authentication Prompts from MFA Gateway" But what to type here: In Trusted MFA Gateways, specify the list of authentication gateways a GlobalProtect client will trust for multi-factor authentication. When a GlobalProtect client receiv...

gtomte by L3 Networker
  • 3794 Views
  • 1 replies
  • 0 Likes

Issues with Group Mapping

Hello, We just recently moved to PA-500 and we are running 7.1.6. I was able to successfully add my LDAP to my group mapping however when I try to select my security groups instead of showing "Domain\GroupName" it is showing the AD distinguished name like cn=administrator,cn=users,dc=acme,dc=com. And maybe this is the reason why my url filtering...

Captive portal Redirect not working for some android devices.

Hi, I have captive portal setup in guest zone .The setup is working fine for some mobile devices (android) and laptops where the users are presented with captive portal login page once they try to browse inernet. Some mobile android devices are facing the problem that captive portal is not presented when they try to browse.They can not use inter...

Clientless VPN - pass creds to applications

Hello, one of our customers want to use PA as SSO for their applications.Have you any idea if it is possible ?We can use Kerberos or LDAP for clients authentication to PA but what about pass it to the application ?

Palo Alto Networks Firewall detected a url that i havent visited

Myself sai, working as cyber threat analyst. When I am working on one issue, I have checked the risk report of the url - www.weddingsonthefrenchriviera.com in Virustotal, IBM X-force website, URL Query. However in palo alto web interface it is showing that i have accessed the url. I havent accessed the url, i have just checked its risk report. P...

Global Protect - Minimize Panel

I'm working on a pre-logon configuration for GP. After it connects, the panel maximizes. Is there a way to keep the panel from maximizing without removing the app from the system tray? I don't want users having to close the window after it connects.This is GP 3.1.6.

  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels