General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 433 Views
  • 0 replies
  • 2 Likes

Two Factor Authentication over SSH

I have my Panorma appliance configured to use Radius with 2FA for the management interface and for the web interface that works great.  It prompts for the one time password and authenticates.  But when we try to SSH to the appliance we are not prompt

...

clear user-cache ip command

I know how to clear user to ip mapping using clear user-cache ip <ip address>,

I want to know how i can do it via Gui. I need to give access to one of the users to be able to perform this task.

About FSCK on Panorama

Hello

 

My customer use two M-100s. 

One is used to Panorama and another is used to log-collector.

I upgraded two M-100s from 6.0.9 to 6.1.10.

I used manual upgraded way because environment what can not access to internet.

1. panorama was upgraded to

...

Resolved! How to activate new cert for GUI on 7.0?

Hi all,

 

On 6.1 and prior, I could choose 'Certificate for Secure Web GUI' under Device tab > Certificate Management > Certificate.

On 7.0, I can't find this option.

 

I generated SHA-2 self signed certifacate on the box.

Then, how can I use this ce

...

emr_1 by L5 Sessionator
  • 2257 Views
  • 2 replies
  • 0 Likes

Resolved! Custom Captive Portal Agree to terms checkbox only?

I would like to setup a captive portal on my guest wifi, but I am not interested in capturing info for user ID, I just want to force the users to see a terms of use that they have to click through before connecting.

 

I have looked at the custom temp

...

Tech101 by L1 Bithead
  • 2923 Views
  • 2 replies
  • 0 Likes

multiple shared gateway deployment

Hello folks ,

 

I was wondering if multiple shared gateways (on one firewall ) is allowed . I found a matrix that was saying some PA models support up to 8 shared gateway but inside admn guide it tells us only one shared gateway is possible in the en

...

Drive Mapping with Global protect

Hi Community, 

 

I just needed to run a niggling issue with some of you as we are experienicing with our global protect. 

 

We have global protect to do pre-logon connection to the global protect gateway. Once the user is authenticated we except driv

...

Resolved! packet capturing pa

 

Hi,

in packet capture , what is  actually firewall stage type ? .

Why thers is  rx and tx separate ?

sorry for asking a fuzzy question ?

Thanks

 

 

sib2017 by L4 Transporter
  • 6308 Views
  • 8 replies
  • 1 Likes

How to properly configure POP3 AV and malware inspection

Dear Live Community,

 

I was wondering how I have ro configure pop3 traffic inspection in order to protect my network from malware and viruses in mails sent to me. My Linux server pulls various mail servers in the internet using fetchmail every coupl

...

daubsi by L1 Bithead
  • 2203 Views
  • 1 replies
  • 0 Likes

Help with "Deny All, with whitelist of domains"

I have been trying to test out a new policy that will need to be implemented by our security team. This involves a Deny All rule, with a rule right above it that allows a list of domains. These domains include SaaS services, Cloud, and other domains

...

kaboom by L0 Member
  • 2495 Views
  • 3 replies
  • 0 Likes

Resolved! Radius/TACACS Question

Is it possible with 6.1.x to where if  a user  wanted to change  radius/tacacs password (before it expires or just because the want a new password) they can . Or if a user locks him/her self out and needs to change password. Is there a profile for th

...

Resolved! PA200 Failures

We started deploying Palo Alto in our environment about 6-7 months ago.  We're up at 19 PA200s in production (we also use Panorama).  Since we've been deploying these, I've had 6 units fail at 4 different sites.  The failure is always the same, basic

...

sshshowintunknownup.PNG
sshshowint.PNG

URL Category

We use PA URL Category to block access to some sites i.e. Social media etc.

I would like to export all the category names and their respective settings block / allow / alert etc. to an Excel or Text file.

 

Can this be done, if so how

RC-BHF by L2 Linker
  • 1858 Views
  • 2 replies
  • 0 Likes

Blocking WORD docs which contain macros

In the course of a regular day, it is not uncommon to receive regular legit word documents from people via email.  However, increasingly we are getting documents pretending to be resumes, and the .doc file contains macros.  Our version of Word 2013 t

...

cenders by L3 Networker
  • 3092 Views
  • 3 replies
  • 0 Likes

Resolved! HA failover when failing a little more?

Hello,

 

sorry, if I missed something obvious... but I need your help, because I have no lab environment where I could answer my question by just testing....

 

I have two PA-200 with HA Lite.

 

Both have an outside interface connected to a switch:

Fi

...

OCEDTRA by L1 Bithead
  • 3838 Views
  • 4 replies
  • 0 Likes
  • 23698 Posts
  • 110 Subscriptions
Top Solution Authors
Labels