General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 709 Views
  • 0 replies
  • 0 Likes

Resolved! Too many open files error in engine log

Hi,

 

As of yesterday morning I'm getting an error in my MineMeld engine log that is indicating too many open files. Also, some of my input and output miners are not updating (they show 0 entries even though there are indicators in the input table in

...

Resolved! M-100 service routes

Hello, 

 

can I setup service routes for M-100 other than the mangemnet Interface? 

I want to use Eth1 or Eth2 instead of the Management Interface.

 

Please advise.

 

Thank you

Kaliman by L2 Linker
  • 2286 Views
  • 1 replies
  • 0 Likes

disable inbound url filtering for performance

Would it make sense to disable url filtering for inbound traffic to our servers for performance reasons ? Logging is hogging our resources (and that's a real problem on PA-2020). Would it make any difference ? We only host a few low traffic websites.

...

dieter_b by L4 Transporter
  • 2737 Views
  • 1 replies
  • 0 Likes

Resolved! ARP not advertising for NAT translation

Hello,

 

We have BGP routing on WAN interface with WAN IP and an additional subnet ip address which is advertised by the firewall to the ISP. When we create a NAT translation from a private IP address to a public IP address from this additional subnet

...

Farzana by L4 Transporter
  • 7617 Views
  • 3 replies
  • 0 Likes

Service to Application for more than 100 policies

Hello Experts

 

I have more than 100 policies on PA firewall with service ports and application any. Manually identifying the application for each rule from logs and creating the rule with specific application on top of that rule, is really time consum

...

Resolved! IPSec and Panorama with Satellite sites

Hello, 

  

I'm in the process of preparing two PA200s for our satelite sites. We are using Panorama to configure all of our firewalls and I'm trying to keep all my configs in the templates but am torn when it comes to the VPN configuration. 

 

My main co

...

Data plane - usage

What would cause the data plane that has been running aroun 25% start running at 35-40%? Is there away to track down the reason

jdprovine by L4 Transporter
  • 5526 Views
  • 13 replies
  • 0 Likes

Resolved! Grouping security policies

Hello Experts

 

Can  we group the security policies like all AD related rules in one group. This functionality is there in Juniper NSM and checkpoint. I am wondering how I can achieve this in PA. May be through tags?

Resolved! Session Lookup for inter-virtual communication

Hello Experts

 

I was just wondering how firewall session is created for inter-vr communication. I have scenario like this:

 

Interface eth1/1 (Trust-VR) Trust Zone ---LAN (10.10.10.0/24)

Interface eth1/2 (Untrust-VR) Untrust Zone ---INTERNET

 

In Trust-VR,

...

  • 23972 Posts
  • 114 Subscriptions
Top Liked Authors
Labels