General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

ISP failover in PanOS 7.0.4

Hi, 

 

We are moving from Juniper ScreenOS SSG firewalls to PanOS 7.0.4, 3020 clustered firewalls. 

 

On our Junipers we make use of a feature called track-ip for Interface failover between ISP's...This basically works by pinging a far device on the

...

Resolved! Dynamic Block List Question.

 

Hello Community,

 

Blacklist (such as IP Void or SpamHaus) with a suggestion that we should block that IP.  

I'm hoping there's a way that we can leverage such a blacklist - for example, to have a rule in the FW that references an existing Blacklis

...

Apadilla by L3 Networker
  • 5482 Views
  • 8 replies
  • 0 Likes

Resolved! Agentless USER-ID - no matched record

Good Day

 

I have a PAN-5050 configure for agentless USER-ID to a W2K8 AD. We were getting user ids/ips in the logs but now we're not. The server-monitor is connect and now errors or failures to connect. When I do the cli commands (show user userids,

...

burtond by L2 Linker
  • 2840 Views
  • 4 replies
  • 0 Likes

Resolved! Botnet report full of cloud.typography.com entries

My weekly botnet report is full of entries like: 

"Repeatedly visited (32) the same malicious URL cloud.typography.com/"

 

I've checked this URL in the database and using the CLI, and it shows as computer-and-internet-info

Several tools I've used to

...

holtcg by L1 Bithead
  • 4505 Views
  • 2 replies
  • 0 Likes

Resolved! Deny & Allow

I have a rule that allows the administrators remote desktop access to our physical domain controller. While reviewing the traffic logs I can see that the PA is show allows and denies for the exact same traffic from my PC to the domain controller usin

...

jdprovine by L4 Transporter
  • 1791 Views
  • 2 replies
  • 0 Likes

Resolved! Renew digicert certificate

Hi,

The certificate we use for GlobalProtect needs to be renewed and I have just paid the renewal and received the file from digicert.. 

 

In my PA500's Device Certificates the expired certificate has two lines:  The second line's certificate name ha

...

Palo Alto daily admin tasks

Hi,

 

I am a somewhat newbie to PaloAlto firewall. I was wondering if someone could give some good guidance into what "Daily" tasks look for a PaloAlto Admin? What should they be monitoring on daily basis? Is there a nice checklist of things that sho

...

Chintan by L0 Member
  • 3137 Views
  • 2 replies
  • 2 Likes

System stats

Is there a way to run a report to see if CPU is getting spiked over a 24 hour period of time

jdprovine by L4 Transporter
  • 1594 Views
  • 1 replies
  • 0 Likes

Resolved! VWIRE Physical Connecivity to Current Virtual Firewall

Hi,

 

I am trying to get my head around VWIRE and how it supposed to work.

 

We have the following scenario

 

SWITCH -> VIRTUAL FIREWALL (ON SHARED HOST) -> INTERNET

 

We are now looking to do

 

SWITCH -> PALO ALTO -> VIRTUAL FIREWALL (ON SHARED HOST

...

indysogi by L2 Linker
  • 2266 Views
  • 2 replies
  • 0 Likes

Logging query - Missing logs from implicit deny rule

Hi all,

 

Doing some testing with a PAN-OS v6.0.0 VM-100. The command ‘set system setting logging default-policy-logging 300’ is configured so I am seeing log entries for traffic that is being blocked by the implicit deny rule for inter-zone traffic.

...

Downloads stuck at 0%

Hi All,

 

Firewall is connecting to update server. it retrieves all the recent PAN-OS versions and all dynamic updates(app ver). 

 

But when i start to download the software/dynamic updates, its connecting to update server and exchanging some packets

...

Javith by L3 Networker
  • 3108 Views
  • 1 replies
  • 0 Likes

HSM setup in PAN-OS 7 setup HSM partition missing

Hello all

I'm new in HSM configuration

I configured the   setup hardware security module. with a PANOS version 7 

the result was success  

and in the admin guide is wrote that you have to configured the Setup HSM Partition

but this does exist in the

...

HSM.png
Gregoux by L4 Transporter
  • 2751 Views
  • 1 replies
  • 0 Likes

Upgrade Panorama

hi,

 

I have cluster firewalls in versions 7.0.4 but my panorama is in 6.1.2. Ive never upgraded panorama. Any manual??

Should i install the imagen base 7.0.1 to go to 7.0.4 or just donwload?????? its the same that upgrade a palo alto firewall?? any

...

  • 24034 Posts
  • 102 Subscriptions
Top Liked Authors
Labels