General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 377 Views
  • 0 replies
  • 0 Likes

New to Palo Alto

Hi all

I am a firewall engineer and I am completely new to Palo Alto firewalls. Would any of you be able to recommend any training, certification I should start with?

 

Thank you in advance. 

 

M

cve-2009-3555

Hello

 

When scanning management interface or enabled https layer3  interface it shows the related vulnerability,

 

is there a way to fix.version is 6.1.10

 

https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3555”

 

thanks.

 

PanIst by L3 Networker
  • 2806 Views
  • 2 replies
  • 0 Likes

Custom DNS name

We have a DNS name genieo that is not being recognized and is not included in the signatures. Two things first is there a way to identify it with a custome signature with the object/anti-spyware  and then be able to send it to a sinkhole?

jdprovine by L4 Transporter
  • 4005 Views
  • 10 replies
  • 0 Likes

Related with QoS...

Hi,

I'm trying to understand a QoS functionality, let's see if anyone can help on this case.

I have a webserver on a DMZ and want to asure 15Mb from inside to outside, that is, in case of congestion in DMZ, priorize the Http traffic (respond http reque...

ilnanu by L1 Bithead
  • 5773 Views
  • 8 replies
  • 0 Likes

FTP connections jumping rule

Hi,

 

we have 2 rules. the first one filtering by application FTP 

and the second one with the same source/destination like the rule above and using any/any permit.

 

We run ftp connections. all these FTP connections should match in the first rule fi

...

Captura1.JPG
Capturasegunda.JPG

Policy for AD authentication across zones

Trying to narrow it down and determine the minimum set of applications/services that need to be allowed for a user to login into a Windows 7 client in one zone and authenticate against a Server 2008R2 AD Domain Controller in a different zone? The Win

...

Port 4443

It has been noted that our global protect portal is reachable from the internet using port 4443 and is presenting a self signed cert which is seen as a security vulnerability. Can you let me know if port 4443 is necessary in terms of GlobalProtect co

...

Resolved! Changing Profiles assigned to security Rule

just in the process of switching to a vulnerability profile which is not shared to vsys specific vulneability profile. Is there an easy way to change a vulnerability profile in 250 security rules without having to manually visist every rule?

clewis1 by L3 Networker
  • 6811 Views
  • 3 replies
  • 0 Likes

Resolved! PAN-DB License not active

Hi guys,

 

Applied two licenses to my devices in HA for a one months extension for PAN-DB URL filtering. I applied it to the passive first successfully (shows as active), but now the current active doesn't have an active URL license.

 

I have followe

...

Palo Alto Training Partner

Hello Community,

 

We're thinking of becoming a Palo Alto Training Partner. Can someone please let know the process in becoming a training and partner and any links.

 

Regards

Manage users connected to wire from layer 3

Hello i need for you help.

 

The client has device connected in virtual wire mode and wants to configure another interface on the device that will connect to your LAN where their servers are and can see users who connect to the virtual wire mode.

 

T

...

Resolved! ECMP and circuit load

I have not been able to find an answer to this in the searching I have done. Does ECMP take into account the current load on the paths before choosing a path? We are using 'balanced round robin' on our metro-e links between locations, we have two pro

...

ldavie by L2 Linker
  • 2855 Views
  • 2 replies
  • 0 Likes
  • 23835 Posts
  • 112 Subscriptions
Top Liked Authors
Labels