General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 392 Views
  • 0 replies
  • 0 Likes

tap zone and ddos profile

Hi,

I have created tap zone and created policy under security policies .
In my ddos profile there are two policies one for trust zone another one for untrust zone

if I create another policy for tapzone , is it a good creating another ddos policies for

...

sib2017 by L4 Transporter
  • 1569 Views
  • 1 replies
  • 0 Likes

Minemeld 0.9.7

Hi,

whats new with 0.9.7 ? just noticed that Minemeld has been upgraded to 0.9.7 roughly 3 days ago.

 

Thanks

bartoq by L3 Networker
  • 2569 Views
  • 1 replies
  • 0 Likes

Resolved! another 'free' VPN

I was just able to install 'hexatech' free vpn from the Apple App store and with a couple of clicks COMPLETELY bypassed my Palo Alto firewall! This program uses a variety of random IPs. It seems to like port 9010, though it uses others. Short of enab

...

cloughr by L2 Linker
  • 2480 Views
  • 1 replies
  • 0 Likes

Resolved! Zone Protection

HI

I have a question related to zone protection. I am having a company doing vulnerability scanning on my system and I want to be able to disable zone protection only for the IP's of the scanner. What would be the best way to acomplish this? Any help

...

it.unit by L1 Bithead
  • 5773 Views
  • 7 replies
  • 0 Likes

Content 571 Customer Advisory

Application and Threat Content version 571 was removed from the Palo Alto Networks support site at approximately 0230 PM PST on 24-MAR-2016, after discovering an issue with this content update and Panorama stability related to the Correlation Objects

...

Unknown.png
maurisy by L4 Transporter
  • 23691 Views
  • 13 replies
  • 3 Likes

Resolved! New release of PANOS

Hello Community,

 

Do you know when PA release a new version of PANOS, maybe 7.1 or 8.0 ?

 

 

 

Apadilla by L3 Networker
  • 4038 Views
  • 4 replies
  • 0 Likes

latest stable version of PAN OS

Hi All,

 

I am looking for the latest PAN OS version that is being used( any pointers why it is good would be a plus)  , i am looking to update my firewalls and Panorama. also any good links on how to absorb existing running firewalls in the panorama

...

Harshit by L3 Networker
  • 3806 Views
  • 6 replies
  • 0 Likes

I don't see a facility to schedule a reboot.

Hi

I would really like to be able to schedule a reboot at a future time. We are in the process of migrating sites to Panorama from a a local configuration.

The config has to be deployed through the single link into the office. This link is a BGP peer.

...

port 2000 and NMAP

I'm having an issue where any traffic through palo alto using destination port 2000 will create a tcp handshake and no more traffic will pass. I've talked to support and no traffic is being dropped by the firewall. i've added a rule to allow tcp 2000

...

Mat_FA by L1 Bithead
  • 6523 Views
  • 5 replies
  • 0 Likes

Automatic VPN Failover

Dear Friends, IF 1 ISP link goes down of operator END we unable to automatically forward to another ISP link. please suggest how to do this. i am using PAN-3020 with 1 ISP and Operator END cisco with 2 ISP. Regards Satish

Satish by L4 Transporter
  • 3687 Views
  • 6 replies
  • 0 Likes

GlobalProtect Portal Banner Message

Would anyone have a simple example that would allow me to put a warning banner below the login table on the GP Portal page?  I'm no HTML expert and have tried to follow some of the posts and documents here, but am not having any luck.  I have made su

...

dan731028 by L3 Networker
  • 2165 Views
  • 2 replies
  • 0 Likes

Resolved! SSL Decryption

Hello

 

We have recentley tuned on SSL Decryption for some users.

Since then we are getting some SSL sites that cannot be accessed due to cypher mismatch. It is something we were exepcting, but not the amount of URL this is happneing for.

 

My questi

...

RC-BHF by L2 Linker
  • 2251 Views
  • 2 replies
  • 0 Likes

Multi-VR routes and security policies issues

I have an issue where we have mulit-VRs in place 1) default and 2nd) VR that is utilized for DMZ and untrust routes

 

Both VR's share a common zone name "public" for example. 

 

I have issues routing where for instance I have my internal network segm

...

CZaloba by L0 Member
  • 2941 Views
  • 2 replies
  • 0 Likes

Global Protect DNS Suffix Not Propogating to Client

Hi,

 

I have a strange issue where my Global Protect SSL Client connects to the firewall with no issues.  I get the IP, the routes and the DNS servers but I don't get anything listed in the DNS Suffix entry.  I have configured the DNS Suffix correctl

...

MHaran by L1 Bithead
  • 6866 Views
  • 5 replies
  • 0 Likes
  • 23842 Posts
  • 112 Subscriptions
Labels