General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

syslog forwarding

I have  everything configured to send syslog information from the palo alto to one of our syslog server. My issue is that none of the security policy IP ranges allows me to send the syslog information for a specific IP address that is going out to th

...

jdprovine by L4 Transporter
  • 5300 Views
  • 14 replies
  • 0 Likes

Many users receiving Captive Portal

Dears,

We have been facing a lot of users identified by Captive Portal and not via UIA.

Does anyone could suggest any troubleshooting/best practices to avoid this kind of behavior ?

Thanks in advance!!

Resolved! Vulnerability assessment question

We're having a vulnerability assessment done, and want to make sure that the IDS/IPS part doesn't disable all attempts from the vendors IP addresses, just the application blocking/service blocking.

Can I whitelist the 4 IP addresses and put them in a

...

rivkin by L1 Bithead
  • 5928 Views
  • 12 replies
  • 0 Likes

Resolved! user Id issue with active- active HA

Hello Friends,

we have 2 firewall active-active HA mode. same LDAP configuration on both firewall. HA Active primary it working fine but secondary is not working. if primary goes down secondary work as a active, its also working fine. but it will not

...

Satish by L4 Transporter
  • 6047 Views
  • 4 replies
  • 0 Likes

Layer 3 switch behind Layer 3 PA-3020 interface

So I'm new to my PA-3020 and trying to get beyond my basic config has introduced a new problem for me.

I have a Layer 3 Cisco connected to my PA eth 1/2 via a routed interface on the switch.  My traffic is all working fine now, but I want to make some

...

GCA by L1 Bithead
  • 3527 Views
  • 4 replies
  • 0 Likes

Poodle Bits Vulnerability

Looking for some guidance on this. I am seeing a lot of Poodle Bits vulnerability showing up on our threat monitor. Digging into the threat, the first item is always showing our current router (192.168.0.1) followed by two different attacker host fro

...

jharlow by L3 Networker
  • 2132 Views
  • 3 replies
  • 0 Likes

Resolved! DNS top applications?

I recently installed a PA-500 on our network. Currently it is in virtual mode as I start to understand how to configure the device.  One of the things I have noticed is that consistently, DNS is the number 1 application. Second is web-browsing.  Just

...

jharlow by L3 Networker
  • 4685 Views
  • 2 replies
  • 1 Likes

GUI Bug: Dynamic Source NAT

Hi All,

Looks like there is a minor GUI bug in the NAT policy section of Panorama.  Do you all see the same thing?

Objects:

NameAddressEXT_FW_192.168.0.1192.168.0.1/24EXT_FW_5.5.5.15.5.5.1/24EXT_FW_10.0.0.110.0.0.1/24

NAT Rule:

Translated Packet

Type = Dyn

...

Slow management UI

Hi people,

I have a PA-2050 that is extremely slow while navigating the management interface. Why is it so?

Thank you for your help

//Ron

ron_maiga by Not applicable
  • 3843 Views
  • 4 replies
  • 0 Likes

Resolved! HTTPS response page

Hi Friends,

It is possible to enable the response page for HTTPS traffic. if yes then how ??

Regards

Satish

Satish by L4 Transporter
  • 4431 Views
  • 3 replies
  • 0 Likes

QoS on aggregate interfaces

Hi All,

Are there any tricks to getting QoS enabled on Aggregate ports?

I have 8+VLANs running into two physical aggregate ports, that I want to enable QoS on.

Possible, or not?

KatanaNZ by L3 Networker
  • 3650 Views
  • 5 replies
  • 0 Likes

BGP Across Two Data Centers

hey all, we have a customer who currently has two PA-2050 nodes setup with HA at one location.

they would like to split the pair and have one PA-2050 at Site1 and the other at Site2 ... setup as Active/Standby.

There would be two private L2 networks be

...

RHO by L0 Member
  • 1959 Views
  • 1 replies
  • 0 Likes

tcp-fin and aged out

I know there are timeouts set for different application is there a reason other that session table information. Is there any risk? Is it the firewall that is closing a connection? If so what would it close a active connection? Is there a security rea

...

jdprovine by L4 Transporter
  • 6009 Views
  • 3 replies
  • 0 Likes
  • 23570 Posts
  • 103 Subscriptions
Top Liked Authors
Labels