General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 267 Views
  • 0 replies
  • 1 Likes

Static Route ECMP Monitoring upstream

Hi All, 

 

Probably a quick question. I am attempting to implement ECMP with two static routes. Such as:

 

ECMP on

e1/1 = 192.168.255.9/29

route 10.0.0.0 255.255.255.0 192.168.255.11

route 10.0.0.0 255.255.255.0 192.168.255.12

 

My question is, if 19

...

Resolved! Multiple Captive Portal

Hi, We are catering Palo Alto to different schools. Is there a way or is it possible for Palo Alto to have different captive portal page per school? Example, school A will have different design of captive portal and school B will have another design...

Permit or Block Traffic based on Path within URL

Is there a way to block or permit traffic based on the path in a URL through custom URL Categories or any other means Palo Alto has? I have found you can filter based on domain and sub domain. however, when i try to specify the path after the domain

...

Response Page on Internet Zone

Hello Community,

our customer has a Cluster of PA-3020 with PANOS 7.0.2.

We have enabled Application Block Page and the Internal users can view it properly.

Customer has a rule to permit Web-browsing traffic from Internet to DMZ.

 

 

When users try

...

image001.png

Resolved! X-Forwarded-For on Traffic and Threats logs

Hi Community,

I wanted to know if you are able to see the IP of XFF on the Traffic and Threats logs.

Do you know if there are any configuration to enable it or if it will be supported on the next releases?

 

Thanks in advance.

Jacopo.

XML API

hi , i enter follow . but occurs error (Malformed Request)

https://10.21.63.99/api/?type=config&action=set&xpath=/config/devices/entry[@name=%27localhost.localdomain%27]/vsys/entry[@name=%27vsys1%27]/rulebase/security/rules/entry[@name=%27rule1%27]&e

...

PAN could generate system log about max session and cps?

Hi.

I want to know about system log.

When Max Session fully exhausted, system log could be generated?

When CPS limit reached, system log could be generated?

PANOS 5.0 could generated a system log for high DP CPU.

I want to know description of system log

...

Roh1 by Not applicable
  • 3040 Views
  • 3 replies
  • 0 Likes

Resolved! Bottom Custom Reports

So PAN systems come with a lot of awesome custom report options, but I want to find policies that aren't being used very much, perhaps let's say 0 hits in 7 days. I'm attempting to do this in a much more simplistic and preferable-to-read fashion by s

...

question for block amazonaws

Hi I recently got many amazonaws.com IPs listed in my attacker list from my daily report as below. How do I block all traffic from amazonaws, and I cannot find it from my traffic monitor and why? Please give me some hints?

 

52.5.42.249 ec2-52-5-42-2

...

Bin by L1 Bithead
  • 3684 Views
  • 2 replies
  • 0 Likes

How to generate SNMP Trap for testing purposes on PAN OS?

Hello

 

I'm on PAN OS 6.1.8 and I try to test my reporting/alerting system.

Is it a way to generate trap from PAN os from CLI/GUI?

 

 

P.S. This doc https://live.paloaltonetworks.com/t5/Configuration-Articles/SNMP-Trap-for-Port-or-Link-status/ta-p/56

...

_slv_ by L4 Transporter
  • 3864 Views
  • 1 replies
  • 0 Likes

RADIUS authentication and multi-vsys configuration

Hello,

i have a pair of 5020, with multi-vsys environment and i want to be able to separate admin access based on vsys and read-only/read write access. I successfully configured following admin access scenario, using external RADIUS server:

separate

...

  • 23632 Posts
  • 107 Subscriptions
Top Liked Authors
Labels