General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

panos_syslog IP indicator - withdraw

I am trying to create an IPv4 indicator list based on PAN-OS threat logs. Below is the rule code attached to the syslogminer class stdlib.syslogMiner. RULE: age_out: default: last_seen+30d interval: 1800 sudden_death: falseattributes: confidence: 50 type: IPv4conditions: - type == 'THREAT'config: share_level: green fields: nu...

MineMeld real-world usage to reduce threats?

So far I'm using MineMeld to pull Dshield and Spamhaus feeds to use to block inbound connections to our internet facing servers. Whilst there are loads of miners I'd love to know which ones people have found "safe" enough to use on production inbound and outbound traffic/rules and how much of an impact it's had - with 70 or so miners to choose...

Global Protect Windows 10

Hey experts!I have a new Windows 10 notebook and Global Protect Client 2.3.4-4 installed.However, the connect button is greyed out.I read on the Palo Alto site that the recommended minimum agent version is 3.0.3.So is the problem my 2.3.4 version? Doesn't it work with Windows 10?

MPI-AE by L4 Transporter
  • 5487 Views
  • 7 replies
  • 0 Likes

Create a miner to mine from Autofocus MineMeld

Hi, with the release of PANOS 8.0, Autofocus will have a minemeld build in. May I know if we can have a on premise minemeld to fetch the feeds from the Autofocus Minemeld? I tried to grab the minemeld feeds but it shows me unauthorized access. Do we need to have a api keys for this? Would there be plugin for this? Thanks

Resolved! zone name limited up to 15 charaters

Hello, Does anyone else think the 15 characters limit on zone name is a bit short? I submitted a FR and got rejected by PM already. since FR is based on customer feedback / vote. I hope other partners or customers had the same feeling to voice up and let's their SE know we want zone name longer than 15 characters!

Panorama - Logging and Reporting Settings

I'm rather confused by the quota settings. I've had my Panorama for about 3 years and was asked to produce a report today and with 500GB of storage I relealized that my history was only about 5 days to produce a user activity report. I would have sworn that wasn't always the case, so I'm not sure what happened. I've been adjusting the quotas, an...

bbilut by L3 Networker
  • 4902 Views
  • 4 replies
  • 0 Likes

URL marled as category "ANY"

Hello, My customer has a PA-500 with URL filtering, since we have attach an url profile to security rules all websites are blocked with category "ANY".Furthmore, no logs in "url filtering". Someone has already face this issue ?Thanks for your help.

Capture.JPG

Looking for a way to allow an application without allowing all dependencies with no commit warnings

Issue background:We have a policy for Application Whitelist of allowed applications on the internet firewall. SourceForge-Base is one of these applications. SourceForge-Base had dependencies on SSL, Web-Browsing, and SSH. We allow SSL and Web-Browsing, but do not wish to allow SSH to the entire outbound internet. Our users traffic works fine...

Resolved! 7.1.2 Unable to reach GlobalProtect portal

Hey guys, I am trying to get the GlobalProtect piece of the FW to work, I followed word for word from the 7.1 admin guide and still no luck. When I go to monitor I see the source coming from the external-untrust zone (which is correct), but the to zone shows (internal - trust). If I am reading this doc correctly, the VPN should terminate on the...

Capture1.PNG
Capture2.PNG

Virtual Wire with Response Pages

From what I can tell, it isn't possible to set a Management Profile on a virtual wire? We wanted to take advantage of a response page for URL filtering but cannot seem to do so due to virtual wire. Thanks,

greeng by L2 Linker
  • 2850 Views
  • 2 replies
  • 0 Likes

Brightcloud URL filtering database download error

Hi all! I have a problem with the download of brightcloud URL filtering database. When i try to download the DB this message is shown:----------------------------------------------------------------------------------------------Download Status2017-02-06 01:05:21.733 +0100 Error downloading latest URL database-------------------------------------...

DKanta by L2 Linker
  • 3763 Views
  • 3 replies
  • 0 Likes
  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels