General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 779 Views
  • 0 replies
  • 0 Likes

PaloAlto and Cisco Scansafe Proxy

I have a PaloAlto PA-200 with very simple configuration. I configure the PA-200 Management interface to get update the Antivirus, Threats, WildFire and URL Filtering. The proxy server is Cisco scansafe. I can update software, dynamic updates, lice...

dtran by L4 Transporter
  • 2326 Views
  • 2 replies
  • 0 Likes

Resolved! Apps and Threats 578-3263 *URGENT* *SOLVED*

We have had a few issues with customers and their network when upgrading to the latest Apps and Threats update.

 

Can anyone comment on this at all?


A few examples of issues are that decryption is not working, and communication to the LDAP server was

...

What's new in MineMeld 0.9.7

Release Date: 2016-03-24

 

How to update: Updating MineMeld

 

Nodes

- Miner for ProofPoint ET Pro feeds

- Miner for PAN-OS syslog messages, let you extract indicators from PAN-OS logs according to a set of rules

 

UI

- now you can add a new static i

...

Screen Shot 2016-03-29 at 10.55.39.png
Screen Shot 2016-03-29 at 10.54.55.png
lmori by L7 Applicator
  • 7228 Views
  • 7 replies
  • 0 Likes

Monitor hits against captive portal?

When using user ID and captive portal, when an Auth attempt fails because of the captive portal, how can you get notified? We have spent hours troubleshooting broken apps because the captive portal was preventing access but we have no indication of...

btrotter by L1 Bithead
  • 3729 Views
  • 5 replies
  • 0 Likes

ISE syslog for UserID

I am trying to parse ISE RADIUS logs to help map wireless users to IP addresses. I have the Palo configured as follows but I am not getting any info from ISE. I am not that familiar with ISE and did not set up that end but have been told that ISE is

...

ISE settings.PNG

Resolved! Captive Portal with Vwire.

Why does below document advise we need a L3 interface  for captive portal? We are running solely vwire and I still get on form when testing. I do have repsonse pages setup as well

 

https://live.paloaltonetworks.com/t5/Configuration-Articles/Configur

...

Resolved! Two factor issues after upgrading to GlobalProtect 3.x

Hi,

 

After doing an upgrade from GlobalProtect 2.3.4 to 3.0.1 we're having issues with users not being able to do two factor authentication in combination with SSO.

 

The software we're running is SecurEnvoy, which has been working fine up to the cl

...

as-mg by L3 Networker
  • 4033 Views
  • 2 replies
  • 0 Likes

External CA Certificate Options Greyed Out

Hi guys,

 

I've followed the documentation on how to generate a CSR (https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Generate-a-CSR-Certificate-Signing-Request-and-Import-the/ta-p/53593) but when importing the certificate I'm only

...

Resolved! Correlated Events Action

Hello,

 

How Palo Alto choose action for correlated events? For example we have several medium severity events with summary Host visited known malware URL. In some events action is alert and some events action is block-url.

ToniE by L2 Linker
  • 3943 Views
  • 2 replies
  • 0 Likes

Resolved! Hardware refresh HA pair of 2050's to 3020's

I need to refresh some 2050's HA pairs for 3020 HA pairs.  This shoud be a pretty simple prcedure but I cannot find any instructions on how to perform this upgrade.  Beside the fact 2050's don't have dedicated HA interfaces, are there any other gotch

...

Unused Rules

There is a feature to highlight unused rules. If a rule goes from used to unused does that feature show it as unused and if so how long does it take to show it as unused?

jdprovine by L4 Transporter
  • 6114 Views
  • 11 replies
  • 0 Likes
  • 23986 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels