General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

globalprotect fails to connect on windows 10

GlobalProtect doesn't connect on my new windows 10 laptop (64 bit). I tried reinstall/reboot several times, but it didn't help. The PanGP Service log shows : 21:49:49:463 Debug(1241): Session 1, domain name XXXXX.(T4740) 05/12/16 21:49:49:463 Info (1276): Enumerate session: user xxxxx\xxxx logs in on session 1(T4740) 05/12/16 21:49:49:463 Debug...

ravindra by L0 Member
  • 8019 Views
  • 6 replies
  • 0 Likes

GlobalProtect 3.1.4-7 + N600 Wireless Dual Band Gigabit Router (TL-WDR3600) problems

Regards, have GlobalProtect 3.1.4-7 + N600 Wireless Dual Band Gigabit Router (TL-WDR3600).When using wifi everything is OK.When using LAN (UTP cable) VPN connection trough GP is interupcted periodicaly for couple of pings and then restored back. Im losing my nerves with this one.If connected trough LAN without Router (direct to the modem) everyt...

Kris555 by L1 Bithead
  • 4491 Views
  • 4 replies
  • 0 Likes

Upgrade to latest 7.0.x or 7.1.x?

Hi, we are planning to upgrade our 3020 A/P Cluster to latest PANOS (7.0.x or 7.1.x). Currently we are runing 6.1.13. We want to do more SSL Decryption (Inbound & Forward Proxy). What are you thinking is the best and stable release for 3020 A/P Clusters and SSL Decryption? Is there a official site where we can check the palo alto recommended...

iweltag by L2 Linker
  • 5167 Views
  • 7 replies
  • 0 Likes

Thinking about blocking executable file downloads - Gotchas?

In our environment, we have eliminated the scourge of people being local administrators on computers, with the exception of administrative accounts assigned to some of the IT personnel. I'm thinking about blocking the DLL, DMG, EXE, MSI, and PE file types for everyone but IT personnel. Are there any caveats or big gotchas related to doing so? ...

Resolved! Source Based Custom URL Lists

All, Does anyone know a way to setup source-based Custom URL Lists containing domains as an alternative to using source-based IP addresses and address groups? I don't think it's possible in any of the current versions of PAN-OS but i am looking at options. For example, if i want to limit inbound SMTP to our edge Exchange server from the Microso...

Switch from Static to Dynamic Address Object Groups

Hello all, we are running into an issue where we are unable to change static address object groups to dynamic address object groupsWe have an M500 and several PA7050 and the objects are managed under the "shared" device group for all the PA7050's. We have added tags etc. to the address objects and on the panorama they show up with their dynamic...

GlobalProtect VPN usage reports?

I'd like to generate a scheduled report of all the GlobalProtect VPN users connected in the last 24 hours. Is this possible to create in Pan OS 7.1?

Maxstr by L3 Networker
  • 5219 Views
  • 4 replies
  • 0 Likes

Resolved! Office 365 - Polling issue

Hello, I have noticed an IP address which is published by Microsoft and not “mined” by minemeld: 40.112.64.16/28 in Office Identity. I don’t this this IP range in published IPv4 feed (I have imported default configuration published in Live). How do we collect the informations? How can we follow which information has been mined and sent to th...

Windows Updates across a Site to Site VPN

I have a WSUS server. I have a Site to Site VPN from a PA-3020 at a hosting facility to a Cisco ASA on my corporate network. The PA-3020 is running 7.1.4. When I try to run updates from the servers in the hosting facility, it shows as ms-update in the Traffic Log. The Session End Reason is “tcp-rst-from-server”. I am allowing all traffic on...

Resolved! Static Route via CLI

I have a firewall with multiple Vsys/VRs. Need to add a static route from one VR to another and I know I can do it via GUI, however I like to use the CLI if possible. So would this command add the static route from one VR pointing to another? set network virtual-router VR-Inside routing-table ip static-route 10.10.10.10/32 nexthop next-vr VR-I...

  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels