General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1967 Views
  • 0 replies
  • 0 Likes

url filtering flow

The url filterng flow is like below:

data plance -> management plane -> cloud.

 

I am seeing the category of ome sites is different than test url site of palo alto.

 

For Ex:

 In Palo alto firewall below command gives this output

 

show running url xxx

malawa

...

Resolved! HA peer split-brain recovery?

Hi Guys,

 

l came across this nice article where Mivaldi explains what is peer split-brain

 

https://live.paloaltonetworks.com/t5/General-Topics/What-is-Peer-Split-Brain/m-p/19825#U19825

 

I have a question. 

We don't have HA1 backup link configured and our

...

Resolved! What is Peer-Split-Brain?

Hey all,

 

I want to start off saying I love Palo Alto's, they are AMAZING!

 

With that out of the way, I wanted to say I recently got a Device RMA'd and the process went amazingly smooth, and I actually was able to completed a HA peer PA-500 in less

...

Zewwy by L3 Networker
  • 23108 Views
  • 7 replies
  • 0 Likes

Resolved! HA PA-5050 Alerts

Hello All,

 

Guys could you help with this. PA-5050 Active/Passive setup. Received an alerts. Details below:

 

Active:

 

2016/08/25 01:02:28 info ha session 0 HA Group 1: Completed session synchronization with peer
2016/08/25 01:02:25 info ha session 0 HA G

...

Resolved! Using Users instead of Groups in Policies - Help please

Hello all,

 

I'm new to PA but I'm really enjoying it...anyway, I've read everything I could find aboud group mappings, and one very good link is https://live.paloaltonetworks.com/t5/Featured-Articles/Getting-Started-User-ID/ta-p/69321 .. but it only s

...

zearth by L1 Bithead
  • 4485 Views
  • 8 replies
  • 0 Likes

How to Allow File Downloads from a Specific URL

Hello all,

Is there a way to allow file download/upload from a specific URL? We currently block most file downloads/uploads however we have specific website that users upload and download attachments toover https.

 

Thank you all for your help!

security policy order not working.

I have a policy from trust to untrust any any allowed. I have cloned this policy and put on top of this with  address -test and deny 2 applications. This address is an ip for eg. 192.168.1.26 which is reserved in dhcp. But I can see apps being access

...

No direct access to local network

Hi team, 

 

Good day!
As I have understood, this feature will provide compulsary full tunnel and all my traffic will be set to inspection by firewall. I won't be able to access anything local. 

 

Can anyone confirm. 

yadsingh by L2 Linker
  • 4862 Views
  • 2 replies
  • 0 Likes

best design for a small network

Good morning, We just got a Palo Alto Firewall for a small testing lab with several virtual servers and clients. The firewall will be then connected between the lab and our ISP gateway. Most of the network traffic will be internal, since the clients ...

Perseus by L1 Bithead
  • 3618 Views
  • 4 replies
  • 0 Likes

VRRP other devices

Hello Guys,

I´m new in the world Palo Alto, my company partner is now Palo Alto.

 

I have not found documentation, but it is possible to utilize protocol VRRP in PA-5050 with equipment other manufacturers?

 

Thank you.

Default Management Ports in PAN OS 7.1

Hi all

 

The standard guide for configuring a PANW Firewall to allow access to HTTPS/SSH etc from the outside has been this link: https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Change-the-Default-Management-Port/ta-p/62333

 

But with

...

Resolved! www.myhomeenergy.org.uk

Hi guys,

 

Can anyone do me a favour and navigate to http://www.myhomeenergy.org.uk on IE through a Palo. 

Does this work for anyone, or do you get a "Page not displayed"?

 

Kind regards

Jack

DNS Sinkhole Intended Destination

I've configured a DNS sinkhole in our PAN firewall, and it's helped our department identify machines that are trying to reach out to malicious domains and such. Is it possible to identify the original, intended, destination that the user was attempti

...

Resolved! Scanning AntiVirus through SMB

Hi guys,

 

As a "test" I have isolated one of my test servers so that all traffic flows through the PA-500.

On this test machine I installed IIS and set-up a simple ftp and website

This website folder is also accessible via a share.

 

The policy rules to a

...

  • 24205 Posts
  • 117 Subscriptions
Top Liked Authors
Labels