General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 223 Views
  • 0 replies
  • 0 Likes

2 Factor with Palo Alto, best solution?

What does everyone have setup as far as 2 factor goes?

I have a consultant here and we're thinking about going to the Microsoft MFA server route. Seems ok but not very flexible for things other than VPN.

Any feedback on other solutions would be appreci

...

choff123 by L3 Networker
  • 3417 Views
  • 3 replies
  • 0 Likes

About Minimum Password Complexity

Hello,

I have questions about Minimum Password Complexity.

If "minimum length" is set to some value, all accounts of administrator and local-DB are limited by this value of minimum length.

But if "Require Password Change on First Login" is set to enable

...

Wildfire question

Hello, I have a general question about wildfire. We would like to have wildfire inspect email attachments and send suspect files to WF for scan and remediation. My question is....how does this work? Does the firewall hold the email and wait for a fix

...

Migration Tool 3: Missing Checkpoint NAT Rules

Hi All,

I found an interesting problem while migrating a firewall policy from a Checkpoint system.  Has anyone seen this problem before? 

Checkpoint NAT:

Checkpoint has a special kind of NAT that you can configure on an object I'm going to call the "Au

...

New Project - PAN-OS 7

Hello Everyone,

I'm starting a new project where I will be migrating Juniper Firewalls to PAN-OS.

I would like to hear an opinion if there is a point to migrate to 7.0 instead of latest 6.1.x.

I would appreciate complete and well explained suggestions.

T

...

Replace Panorama Virtual Disk

Hi All,

we are running a fresh installation of Panorama VM and need to allocate more space for logging & reporting.

This scenario is well explained in the Panorama Admin Guide on Page 163 ff. but we are wondering if it is neccessary to export and impor

...

Layer 3 Stops Passing - All PanOS versions incl. 6.1.3

I have opened this with TAC a while ago but I continue having issues with Layer 3 not passing through the untrust/internet interface at random times.  I have had this happen 5 to 10 times on different PA-200's.  Some have repeated.  I was hoping a fi

...

how to Evaluate PA 7.0.0 on v sphere VM100

Hi All,

Can some help me how  to Evaluate PA 7.0.0.

1.  I have installed VM 100 series with PA 7.0.0 on vshere environment.

2. I have PA 5050 with PA  6.0.10 in production  network.

3. How to check ACC on my VM 100 series with PA 7.0.0.

4. How traffic tra

...

KMallela by L2 Linker
  • 2280 Views
  • 1 replies
  • 0 Likes

How to convince PAN to know UID mapping for all vsys


Hi,

We use multi-vsys and XMP API for UID. It works fine for vsys1. We use this sintax for login:

<uid-message>

     <version>1.0</version>

     <type>update</type>

     <payload>

          <login>

               <entry name="user1" ip="10.1.1.1" timeo

...

segap by L1 Bithead
  • 2806 Views
  • 2 replies
  • 0 Likes

Resolved! New Logjam Attack

Hi,

a new leak was found in diffie hellmann...

http://arstechnica.com/security/2015/05/https-crippling-attack-threatens-tens-of-thousands-of-web-and-mail-servers/

https://threatpost.com/new-logjam-attack-on-diffie-hellman-threatens-security-of-browsers-

...

Hithead by L4 Transporter
  • 6418 Views
  • 4 replies
  • 0 Likes
  • 23617 Posts
  • 107 Subscriptions
Labels