General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Session Lookup for inter-virtual communication

Hello Experts

 

I was just wondering how firewall session is created for inter-vr communication. I have scenario like this:

 

Interface eth1/1 (Trust-VR) Trust Zone ---LAN (10.10.10.0/24)

Interface eth1/2 (Untrust-VR) Untrust Zone ---INTERNET

 

In Trust-VR,

...

Resolved! Dual ISP and returning traffic

Hi,

 

this is the scenario:

 

- ISP1 : only for GlobalProtect

-ISP2 : only for Internet access

 

ISP1 has distance 10 and metric 10

ISP2 has distance 10 and metric 15

 

in this scenario the ISP1 interface responds to Global protect gateway/portal no problem. A

...

myrdin by L2 Linker
  • 2595 Views
  • 2 replies
  • 0 Likes

Palo - Security Vulnerability Reporting - Feedback

Just some feedback to the Palo Alto team.

 

 

This is the first time I've seen it reported this way, but the recent CVE reporting I think could be been conveyed better.  The text was crammed together and written in a Menlo 8.5 script so it wasn't the ea

...

Palo_E-mail.PNG

REST Question

I'm trying to setup a script that will clear the VPN ike-sa and ipsec-sa connections for a particular tunnel. Does anybody know what I need to actually select the name of the connection. It currently looks like below

 

<clear><vpn><ike-sa><gateway></ga

...

BPry by Cyber Elite
  • 1108 Views
  • 0 replies
  • 0 Likes

Resolved! URL Test site - Down?

http://urlfiltering.paloaltonetworks.com/testASite.aspx
I am having issues getting to the test site.

Are the servers down?

Resolved! VPN SSL Two factor authentication

Hi,

i'm looking for a solution for VPN, that will support authentication in Active Directory and will support Two Factor authentication with OTP.

I read that GlobalProtect can provide me all features.

My questions:

is there any Palo Alto native VPN clien

...

Anahaym by L0 Member
  • 2439 Views
  • 3 replies
  • 0 Likes

Different DHCP Subnets on same Interface

Hello everyone,

 

one of my customer has the following specific requirement.

 

PA500 version 7.1.0

Inside Interface IP: 10.0.1.1/24

 

Firewall should act as DHCP Server and assign IP Addresses in the following Scopes only via inside interface.

 

Scope: LAN De

...

Two Subnets For Two Group Of People

Hi,

Can one help me how to configure two groups of people that use GP as a VPN client?

let say I have user 1-5 needs to access my inside firewall with subnet 192.168.1.0/24

and I have users 6-10 needs to access my inside and couple of the IPsec tunnel t

...

PAN-DB cloud list loading failed

I've been getting alerts from all my PAN firewalls starting last night at 8:51pm EDT that they can't connect to the PAN cloud to update the PAN-DB URL database.


Anyone else seeing the same or a similar issue?

  • 24104 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels