General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 678 Views
  • 0 replies
  • 0 Likes

Resolved! Rudimentary TCP Session and Monitor Question

I feel like I should already know this, but I just need a sanity check.

 

I have a rule that allows host A to B via tcp/900.  So host A starts to communicate via host B via that port.  The firewall allows it and a session is created.  Now, assume A a

...

mrcs by L0 Member
  • 2868 Views
  • 4 replies
  • 0 Likes

third party VPN clients with PanOS 7.0.3

I was curious if anybody else has seen this issue, or could perhaps try to duplicate it.

 

I have a problem with third party VPN clients after upgrading from PanOS 6.1.6 to 7.0.3 on our PA-3020s.  Specifically, the built-in IPSec VPN client on Mac OS

...

SSL Decrypt

Hi

 

We have a guest wifi that availave to all and sundry to be used by using their own equipment. We would like use SSL Decryption on this.

 

The main issues is that for guest device we have no control over this to be able to install the CA cert ont

...

RC-BHF by L2 Linker
  • 3226 Views
  • 2 replies
  • 0 Likes

Resolved! Search GlobalProtect Users on Portal and Satellites

I have several satellites and one portal.  I have a lot users connected to the satellites and portal.  

 

From a CLI console, I would like to query for GlobalProtect users from a centralized console.  Right now, it is a pain because I have to open a

...

mmclimans by L3 Networker
  • 2056 Views
  • 1 replies
  • 0 Likes

Resolved! AWS Servers trigger Vulnerability

We are seeing a high number of HTTP Non RFC-Compliant Response Found

Signature ID : 32880  CVE-2010-2561

 

All are logged from aws servers, evenly distributed across a large number of servers - 173 in one hour, each with 300-500 hits.  I have packet

...

djr by L4 Transporter
  • 4810 Views
  • 2 replies
  • 1 Likes

Import named configuration snapshot failure

I'm trying to import my production Panorama VM configuration into my lab Panorama VM and I am getting the following message, and I'm not entirely sure what it means:

 

upload -> config -> content Node can be at most 41943060 characters - current leng

...

dan731028 by L3 Networker
  • 3504 Views
  • 1 replies
  • 0 Likes

Global Protect Failed to open sub key

Hello All,

i have problem with my GP. I configured it and for 99% users work fine. But a few has communicate "resend credential" and stuck. 

In log file PanGPA.log i have:

(T6992) 12/01/15 11:24:08:539 Error( 129): Failed to open sub key 'Software\Pa...

ITBT by L1 Bithead
  • 3522 Views
  • 1 replies
  • 0 Likes

McAfee Evader - did You use it?

Hello

I'm courius that someone is using it for testing PA device? What was the resoults?

You can download this tool from http://evader.mcafee.com/

Do You know other tools like this?

With regards

Slawek

_slv_ by L4 Transporter
  • 5095 Views
  • 3 replies
  • 0 Likes

Global Protect DHCP Options

I have a PA-500. I have a basic configuration for Global Protect up and working - certificates, agent settings, etc. All is well. The client can route to internal resources as expected.

 

Now, the next step I need to take for these VPN clients in trans

...

mkeller by L1 Bithead
  • 4664 Views
  • 4 replies
  • 0 Likes

OpenVPN behind PaloAlto

Hi!

 

We can't get OpenVPN to work. Our Juniper-SA works well.

 

The setup is only working without Firewall:

Laptop (static IP 80.0.0.4) attachted to an switch and the OpenVPN server attached to the same switch (eth1, dmz)

 

 

Our Policies:

 

Monito

...

palo-config-policy3.png
palo-config-monitor.png
Morneweg by L1 Bithead
  • 7505 Views
  • 7 replies
  • 0 Likes
  • 23961 Posts
  • 113 Subscriptions
Top Liked Authors
Labels