General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4136 Views
  • 0 replies
  • 0 Likes

Resolved! Securing YUM

Currently there is a requirement for all our remote linux servers (Which have static IPs and numbers around 250) to have access to various public YUM servers. The public YUM servers (I am told) cannot be defined statically because they constantly change. Our Corporate Security Policy does not allow web-browsing from servers, such as our remote l...

Feature Request experience

Hello, How many of the community members have submitted feature request(s) and implemented ? How long did it take for the FR to get implemented ? Thanks for sharing,

panos_syslog IP indicator - withdraw

I am trying to create an IPv4 indicator list based on PAN-OS threat logs. Below is the rule code attached to the syslogminer class stdlib.syslogMiner. RULE: age_out: default: last_seen+30d interval: 1800 sudden_death: falseattributes: confidence: 50 type: IPv4conditions: - type == 'THREAT'config: share_level: green fields: nu...

MineMeld real-world usage to reduce threats?

So far I'm using MineMeld to pull Dshield and Spamhaus feeds to use to block inbound connections to our internet facing servers. Whilst there are loads of miners I'd love to know which ones people have found "safe" enough to use on production inbound and outbound traffic/rules and how much of an impact it's had - with 70 or so miners to choose...

Global Protect Windows 10

Hey experts!I have a new Windows 10 notebook and Global Protect Client 2.3.4-4 installed.However, the connect button is greyed out.I read on the Palo Alto site that the recommended minimum agent version is 3.0.3.So is the problem my 2.3.4 version? Doesn't it work with Windows 10?

MPI-AE by L4 Transporter
  • 5315 Views
  • 7 replies
  • 0 Likes

Create a miner to mine from Autofocus MineMeld

Hi, with the release of PANOS 8.0, Autofocus will have a minemeld build in. May I know if we can have a on premise minemeld to fetch the feeds from the Autofocus Minemeld? I tried to grab the minemeld feeds but it shows me unauthorized access. Do we need to have a api keys for this? Would there be plugin for this? Thanks

Resolved! zone name limited up to 15 charaters

Hello, Does anyone else think the 15 characters limit on zone name is a bit short? I submitted a FR and got rejected by PM already. since FR is based on customer feedback / vote. I hope other partners or customers had the same feeling to voice up and let's their SE know we want zone name longer than 15 characters!

Panorama - Logging and Reporting Settings

I'm rather confused by the quota settings. I've had my Panorama for about 3 years and was asked to produce a report today and with 500GB of storage I relealized that my history was only about 5 days to produce a user activity report. I would have sworn that wasn't always the case, so I'm not sure what happened. I've been adjusting the quotas, an...

bbilut by L3 Networker
  • 4759 Views
  • 4 replies
  • 0 Likes

URL marled as category "ANY"

Hello, My customer has a PA-500 with URL filtering, since we have attach an url profile to security rules all websites are blocked with category "ANY".Furthmore, no logs in "url filtering". Someone has already face this issue ?Thanks for your help.

Capture.JPG

Looking for a way to allow an application without allowing all dependencies with no commit warnings

Issue background:We have a policy for Application Whitelist of allowed applications on the internet firewall. SourceForge-Base is one of these applications. SourceForge-Base had dependencies on SSL, Web-Browsing, and SSH. We allow SSL and Web-Browsing, but do not wish to allow SSH to the entire outbound internet. Our users traffic works fine...

Resolved! 7.1.2 Unable to reach GlobalProtect portal

Hey guys, I am trying to get the GlobalProtect piece of the FW to work, I followed word for word from the 7.1 admin guide and still no luck. When I go to monitor I see the source coming from the external-untrust zone (which is correct), but the to zone shows (internal - trust). If I am reading this doc correctly, the VPN should terminate on the...

Capture1.PNG
Capture2.PNG

Virtual Wire with Response Pages

From what I can tell, it isn't possible to set a Management Profile on a virtual wire? We wanted to take advantage of a response page for URL filtering but cannot seem to do so due to virtual wire. Thanks,

greeng by L2 Linker
  • 2761 Views
  • 2 replies
  • 0 Likes
  • 24340 Posts
  • 124 Subscriptions
Labels