General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

New to Palo Alto

Hi all

I am a firewall engineer and I am completely new to Palo Alto firewalls. Would any of you be able to recommend any training, certification I should start with?

 

Thank you in advance. 

 

M

cve-2009-3555

Hello

 

When scanning management interface or enabled https layer3  interface it shows the related vulnerability,

 

is there a way to fix.version is 6.1.10

 

https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3555”

 

thanks.

 

PanIst by L3 Networker
  • 2525 Views
  • 2 replies
  • 0 Likes

Custom DNS name

We have a DNS name genieo that is not being recognized and is not included in the signatures. Two things first is there a way to identify it with a custome signature with the object/anti-spyware  and then be able to send it to a sinkhole?

jdprovine by L4 Transporter
  • 3459 Views
  • 10 replies
  • 0 Likes

Related with QoS...

Hi,

I'm trying to understand a QoS functionality, let's see if anyone can help on this case.

I have a webserver on a DMZ and want to asure 15Mb from inside to outside, that is, in case of congestion in DMZ, priorize the Http traffic (respond http reque...

ilnanu by L1 Bithead
  • 4962 Views
  • 8 replies
  • 0 Likes

FTP connections jumping rule

Hi,

 

we have 2 rules. the first one filtering by application FTP 

and the second one with the same source/destination like the rule above and using any/any permit.

 

We run ftp connections. all these FTP connections should match in the first rule fi

...

Captura1.JPG
Capturasegunda.JPG

Policy for AD authentication across zones

Trying to narrow it down and determine the minimum set of applications/services that need to be allowed for a user to login into a Windows 7 client in one zone and authenticate against a Server 2008R2 AD Domain Controller in a different zone? The Win

...

Port 4443

It has been noted that our global protect portal is reachable from the internet using port 4443 and is presenting a self signed cert which is seen as a security vulnerability. Can you let me know if port 4443 is necessary in terms of GlobalProtect co

...

Resolved! Changing Profiles assigned to security Rule

just in the process of switching to a vulnerability profile which is not shared to vsys specific vulneability profile. Is there an easy way to change a vulnerability profile in 250 security rules without having to manually visist every rule?

clewis1 by L3 Networker
  • 6069 Views
  • 3 replies
  • 0 Likes

Resolved! PAN-DB License not active

Hi guys,

 

Applied two licenses to my devices in HA for a one months extension for PAN-DB URL filtering. I applied it to the passive first successfully (shows as active), but now the current active doesn't have an active URL license.

 

I have followe

...

UAC & GlobalProtect

Hi All!

 

I am having an issue with globalprotect updater and UAC. It seems that when GP wants to update to a newer version it uninstalls fine, but then my users get a UAC prompt when it wants to update. Because they are not admin accounts the update

...

MathewG by L0 Member
  • 1648 Views
  • 0 replies
  • 0 Likes

Palo Alto Training Partner

Hello Community,

 

We're thinking of becoming a Palo Alto Training Partner. Can someone please let know the process in becoming a training and partner and any links.

 

Regards

Manage users connected to wire from layer 3

Hello i need for you help.

 

The client has device connected in virtual wire mode and wants to configure another interface on the device that will connect to your LAN where their servers are and can see users who connect to the virtual wire mode.

 

T

...

  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels