General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

RAR file blocking through wildfire

Good day,Please advise how can we scan and block RAR files,as file blocking profile does not help in this file type's cases. Is it possible to solve the issue via wildfire subscription shown in the picture below?

Wildfire.png

Resolved! Enable Use of Hypervisor Assigned MAC Address

Hello, Is there a way to configure this feature from CLI ? https://www.paloaltonetworks.com/documentation/70/virtualization/virtualization/about-the-vm-series-firewall/enable-use-of-hypervisor-assigned-mac-addresses#23464 Thanks-azher

amughal by L0 Member
  • 3840 Views
  • 3 replies
  • 0 Likes

Troubleshooting commands for Connectivity issue between Panoroma Server and a Firewall

Hi All, Panorama server (IP: 10.10.10.5) is not able to manage a firewall that was recently deployed.which two of the following Toubleshoot commands can be used in CLI of the new firewall ?A. > test panorama-connect 10.10.10.5B. > show panorama-statusC. > show arp all | match 10.10.10.5D. > tcpdump filter “host 10.10.10.5”E. > deb...

IPSec Site-to-Site between PA-200 and PFSense one direction route only

Hi All!! I setup a IPSec site-to-site VPN between PA-200 and PfSense using this how to: https://blog.kingj.net/2014/08/24/how-to/setting-up-a-policy-based-ipsec-vpn-between-a-palo-alto-pa-200-and-pfsense/ P1 and P2 is ok and I can access network from PA-200 to PfSense but from network PfSense side to PAN network side I can’t access. Anyone have ...

Delete Sub-interface

Hey guys, sorry for the silly question, but I have never done this before: I would like to delete a sub-interface. Is there a special order I have to stick to? Delete all policies first where the zone is involved?Delete the zone first?Delete the interface first? Or does this not matter?

MPI-AE by L4 Transporter
  • 7195 Views
  • 7 replies
  • 0 Likes

l2 vs vw

Hi,What is the differnce between l2 mode and vw mode Thanks

sib2017 by L4 Transporter
  • 2970 Views
  • 3 replies
  • 0 Likes

Evaluation Licence for Palo Alto Firewall

Hi All, I am preparing for PCNSE7 exam and it is very much required to have hands on experience to pass the exam. Hence, I set up own LAB and I have installed Palo Alto image on top of VMWare Workstation. Most of the features are funtioning properly. But I need to test some features like URL Filtering, Spyware Protection and anylyze logs etc. Is...

Google adwords & geofilter

Hello,what APP-ID can we use for grant selectiv access for google robots for the adwords campaingn.At the moment we have geo Filter in Front of the WEB-Server and in this Situation "Google adwords" does not work anymore.(Perhaps there are als other solution to let this Service selectively in ? René

rkuhn by L0 Member
  • 3022 Views
  • 3 replies
  • 0 Likes

Idea searched to block NAT-Router

Hi, I have some clients who are installing a NAT-Router behind the Firewall to span their own WIFI. The NAT devices are from different vendors with different MACs. Has anyone an idea how to detect these NAT-devices irrespective of their MAC / IP-adress and how to deny all the traffic from these devices? My intent is to block all traffic, where I...

Ping identity with single sign-on, multiple users

Our support staff uses a single support portal login email and password to access our client's Palo Alto networks support. We have attempted to log in and are getting notified we need to download PingID. How would this work with multiple people using the same username? Can it be bypassed or how should we set this up for our support staff?

Resolved! VR override option. What is actually overridden?

Hi All, Looking into VR setting and could see some thins is overridden but not sure what is exactly. l didn't do this config before so not sure where to check these changes? OSPF cost? How can l find these changes in VR? Thx,Myky

OV.PNG

Resolved! interface flapping syslog severity info!

Hello, I am always wondering why an interface going down/up is being flagged by syslog as a severity : informational ! 2014/10/11 15:29:08 info port link-ch 0 Port 1: Down 1Gb/s-full duplex2014/10/11 15:29:08 info port link-ch 0 Port 2: Down 1Gb/s-full duplex How it is possible to modify this to critical and start...

Resolved! User-ID: gained access with run as admin

Hi all, several user have internet access and this depends on their user-id. some of them have admin-accounts and can run the ie as admin. the user logged into the AD as non-privileged user and this is controlled by the WMI-Process of the USER-Agent. But this construct didn't recognize when the user starts the IE with run as admin.is there a cha...

kdd by L4 Transporter
  • 9169 Views
  • 7 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels