General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4254 Views
  • 0 replies
  • 0 Likes

How to Migrate Panorama M-100 to VM?

hello Has anyone gone through the process of moving configuration from an M100 to a VM.I can import and load the file configuration, but when I try to commit I have the following error : deviceconfig -> setting -> management is missing 'storage-partition' when I force management setting in internal , I ve the following error: configured tr...

alle by L3 Networker
  • 4147 Views
  • 2 replies
  • 0 Likes

SMTP recipients per minute

Is there a limit on the number of smtp recipients per minute that can be processed by a PA? I've seen other firewalls with limits, depending on the size, so that the impact of worms can be negated.

RFalconer by L3 Networker
  • 4523 Views
  • 6 replies
  • 0 Likes

Resolved! LDAP Server as FQDN in LDAP Server Profile

Hello, When FQDN (port 636) is used in the Address field, user cannot connect. Gets error: LDAP auth server is down!What settings need to be applied so that LDAP server profile can use FQDN besides IP address? Thanks in advance.

Farzana by L4 Transporter
  • 7128 Views
  • 4 replies
  • 0 Likes

Resolved! 'ascii' codec can't encode characters

Hi! 0.9.26 is a great update - thanks for the hard work. Already using the CIF miner and enjoying the live UI updates. I'm seeing a a bunch of these errors in my engine log: 2016-10-28T21:31:15 (30348)amqp._callback ERROR: Exception in handling update on topic proc-URL-name-HighConfidence with params {u'source': u'proc-URL-name-HighConfi...

Question to app dependencies

Hi guys!I'm new to Palo Alto.Scneario:I make a new rule from an inside zone to the internet with the app gmx-mail.gmx-mail depends on web-browsing and ssl.Do I have to add web-browsing and ssl to this rule to make gmx-mail work?Or could I make another separate rule where I'm allowing web-browsing and ssl?Thanks, Alex

MPI-AE by L4 Transporter
  • 3040 Views
  • 5 replies
  • 0 Likes

Resolved! Layer 2 and Layer 3 interfaces connected to the same switch?

I'm currently working on a migration project from Sonicwall (SW) to Palo Alto 3020 (PA) and I need to buy myself some time. For now, I'd like to place the SW inside of the PA so that LAN-WAN traffic will enjoy the benefits of Wildfire, Antivirus, App-ID, and threat detection. Things get a bit complicated, though, due to the SW doing NAT, Ipsec s...

Can't seem to connect to Cisco ASA

Using the following Phase 1 settings: I keep getting this error:Received unencrypted notify payload (no proposal chosen) from IP x.x.x.x[500] to y.y.y.y[500], ignored...orIKE phase-1 negotiation is failed. Unable to process peer’s SA payload.Check the IKE Crypto profile configuration to verify that the proposals on both sides have a common encry...

Capture.PNG
dclaro by L0 Member
  • 4433 Views
  • 3 replies
  • 0 Likes

Surveillance system

Has anyone here used a surveillance system?? I'm in need of a security system, but I don't have any idea on how to select the best one. I recently happened to read an article http://www.fire-monitoring.com/ip-cctv-moving-future/ and thought it will be perfect? Has anyone here used it before?? Any first hand experiences with them??

ConMac by L0 Member
  • 2424 Views
  • 2 replies
  • 0 Likes

Skype for Business using App-ID?

Does anyone have a definitive list of which applications are required for 365 hosted Skype for Business to work please? I'm using MineMeld to product a dynamic block list of the 365 Skype for Business IP ranges published by Microsoft and I've settled on simply allowing any application to that IP range (which to be fair isn't a huge concern to me...

Multiple WAN Interface Setup, different zones

Hi all I'm struggling to configure a VM-200 with multiple WAN interfaces. I've read a few forum posts on the subject and I understand the suggestions (PBF, 1:1 vs 1:Many NAT, etc) but the situation I'm in is a little different. We are running the VM-200 on a cloud platform, which has provided us two WAN IP addresses. These addresses are contiguo...

Send OSPF default route with PBR

I have a network were what I would like to have happen is that the PAN device tracks its connection to the internet and as long as that is alive send a default route to its neighbor. If that fails i would like it to stop sending that default route since the neighbor also has a default route that goes out an mpls link

  • 24362 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels