General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 243 Views
  • 0 replies
  • 0 Likes

PCI Vulnerabilities Report

Dear Friends, panos, panagent HULK hshah Steven Puluka hyadavalli mmmccorkle

I have a doubt regarding PCI vulnerabilities scan and enable the signature for the same. when security team scan our WAN interface. he found below

1. SSL Certificate - Self-S

...

Satish by L4 Transporter
  • 11799 Views
  • 16 replies
  • 0 Likes

GlobalProtect Data File

I can't get the GlobalProtect Data File to download. I have it scheduled to update hourly for a couple of days already but nothing. If i click 'check now' I don't get any version to download. I didn't find anywhere to download it manually.

 

Dynamic

...

santonic by L6 Presenter
  • 3202 Views
  • 6 replies
  • 0 Likes

Bulk upload of set commands in PAN-OS

Hello All,
I'm working on a migration that requires me to breakout one large SRX config into a PAN-OS config while implimenting multiple VSYS instances.  I am managing the configuration via Panorama, so I've got a base config out of the migration tool

...

dan731028 by L3 Networker
  • 5297 Views
  • 1 replies
  • 0 Likes

Resolved! CLI - invalid syntax errors when pasting in config

Good evening

 

I often have to configure a hundred new address objects at a time and then add them to an address group.

 

I prepare the config by using Excel to combine columns with different values until I have the string of txt that I can paste int

...

RobSmith by L1 Bithead
  • 8517 Views
  • 4 replies
  • 0 Likes

PA-500 Url Filtering

Hello,

i have another problem with policies...

 

I used AD to filter people which can access the appropriate site. 

 

And I have rule in order:

1. Allow facebook (when I give access to whole facebook application)

2. Allow Youtube (when I use url filt

...

ITBT by L1 Bithead
  • 2902 Views
  • 3 replies
  • 0 Likes

configuration of the NAT rules to DMZ zone

Hello, 

In our office we have two servers in a DMZ zone (10.10.10.3 and 10.10.10.4). In the PA-500 I created a DMZ zone that's related to a vlan in the switch . This switch i related to the serves (10.10.10.3 and 10.10.10.4). 

The servers are in DMZ

...

NAT-cisco.JPG
RCHAIBI by L2 Linker
  • 7020 Views
  • 13 replies
  • 0 Likes

Wildfire Alerts

Has anyone else noted a materical change in 'dubious' Wildfire alerts in the last 24 hours?

 

We have seen a material shift - as if a new detection engine/function has been enabled (and may possibly be a bit too sensitive).

apackard by L4 Transporter
  • 4564 Views
  • 8 replies
  • 0 Likes

Download Managers

Haveing alot of problems with Download Managers.

 

We use continue/forward on alot of downloads including exe's but the problem we are running into is when someone downloads an installer that in turn tries to pull down other files from offline, They

...

DNS big text threat seems to bypass security rule

I have a strange circumstance here, I think. I've received several threats in my threat log for "DNS Answer Big TXT Record Response Anomaly" Threat ID 31580 (not sure if that's relevant or not, it just seems an odd similarity)

 

So yesterday I had a

...

mkeller by L1 Bithead
  • 1618 Views
  • 1 replies
  • 0 Likes

Resolved! Usefull CLI commands to work with logs

Hello

 

I spend a lot of time playing with logs, ie.

less mp-log ikemgr.log

How to:

- go to end of this file?

- search forward/backward keyword

- scrool up/down

 

and you problably know many other userfull keywords. Please share with us who are not well trai

...

_slv_ by L4 Transporter
  • 55423 Views
  • 6 replies
  • 1 Likes
  • 23626 Posts
  • 107 Subscriptions
Labels