General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4257 Views
  • 0 replies
  • 0 Likes

the ssl-vpn web page do not show up

PAN OS: 4.0.10> less webserver-log sslvpn-error.logdefault:1 main Error: Can't access DocumentRoot directory default:1 main Error: Ignoring bad directive "DocumentRoot" at line 181 in /etc/appweb/sslvpn.conf default:1 pool.1 Error: 404 "Not Found" for "/admin/Y-ivrrecording.php", file "/var/appweb/sslvpndocs/admin/Y-ivrrecording.php": ...

proestel by L1 Bithead
  • 6272 Views
  • 7 replies
  • 0 Likes

Resolved! hide global protect login page

Hello When we check disable login page, it returns 404 page not found on portal page. Is this expected behaviour ? is it possible to completeley disable the page. Regards

PanIst by L3 Networker
  • 4438 Views
  • 3 replies
  • 0 Likes

Mitigating risk of not decrypting "online storage and backup" URL category.

We've been having some issues with websites like DropBox, Hightail etc since configuring SSL Decryption. I believe this relates to a security technique called "Certificate Pinning". I've resolved the issue by adding the "Online Storage & Backup" URL category into a no-decrypt policy but it concerns me that opening up the entire category is a...

Mitre10 by L0 Member
  • 4652 Views
  • 3 replies
  • 0 Likes

Resolved! A/A HA changes - looking for information on procedures

Hi - looking to make some changes to the HA configuration between 2x PA 5000s. First change: an HA3 link to an AE link on different interfaces in an A/A pair of 5000s. I'm wondering if there is a procedure anywhere for this? What would happen to an A/A pair if HA3 were to be reconfigured by panorama? Connections are already in place just need ...

VPN with Windows Phone

Hello, I have been researching for information about how to configure Windows Phone with Paloalto. I did not find anything. Has someone found any working method for this? Thank you,

DNS Sinkhole not triggering for known malicious domains

Hello, has anyone had any problems with DNS sinkhole not triggering on PAN-OS 6.1.4 ? I have created a security policy for DNS traffic between a LAN side DNS server and a WAN side upstream DNS server, the Palo sits at the WAN edge between the two DNS servers. Attached to this security policy is an Anti-spyware security policy with DNS action...

Smi12 by L2 Linker
  • 8335 Views
  • 8 replies
  • 0 Likes

PAN-OS 6.x to 7.x Issues

We currently have Panorama with a total of 2 HA Pairs (PA3050's and PA3020's) deployed. We are planning to use Panorama to upgrade from our current 6.x software to 7.x. Here are some gental questions that perhaps someone who has done this before can answer: What would be a good estimate for how long the upgrade takes? Did anyone run into any ma...

Resolved! Palo Alto uses management self IP for requests

Hi everybody, I have an issue when generating requests from the PA itself: it always uses the management IP address as source. So in my client's architecture I need it to use the internal interface's IP address to get the internal DNS or the packet will never come back. Do you know how to do that? Thank you! Regards

Row data showing blank under acc

Hi Friends, Any idea why fews rows data at the end of second page showing blank under ACC tab application section? any idea what might caused this else any known issue with 6.1.10 version? Thanks in advance,

Connect TS Agents to UserID Agent

Is it possible to connect TS (terminal server) agents to the UserID agent and then have the firewall pull the IP/Portrange/Username from the UserID agent instead of each individual TS agent?

Anon1 by L4 Transporter
  • 2167 Views
  • 2 replies
  • 0 Likes

Resolved! Exporting log files from terminal server agent

Hi, I've got an installation where we have approx 500 citrix servers running the terminal server agent. The TS-agent has a log file located in the installation folder (debug.log), which I need to look at from time to time. To retrieve the log file I actually have to log on to each server. From what I've been able to find out, it is not poss...

torm by L4 Transporter
  • 5481 Views
  • 3 replies
  • 0 Likes

Resolved! AD OU / ACL Rule

Can Palo Alto use computers identified in a specific Active Directory OU in an ACL rule? If so, how? Thanks in advance.

  • 24362 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels