General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 400 Views
  • 0 replies
  • 2 Likes

Resolved! ECMP

Hi - is it possible to do ECMP (equal cost multi-path routing) using static routes? If not - is it possible to achieve ECMP using OSPF on the PA4050. We have a need to load balance the default route out of a PA4050 over multiple L3 gig interfaces (th

...

fmd by L3 Networker
  • 5678 Views
  • 6 replies
  • 0 Likes

PA blocks spyware - identify compromised computer

Hi there,

we're running the following setup:

trusted zone | DC zone | Internet

Client/Proxy/some old DNS Server| DNS Server| Internet

I see that the PA is blocking malware traffic (app DNS). But the attacker is either the proxy, asking the DNS in the DC

...

Resolved! is it support ECMP protocol ??

Hi all.

Is it support ECMP protocol from PAN??

I can’t find whether ecmp protocol support from datasheet and knowledge base.

does PA has any other similar protocol if not support ecmp??

Please refer to below URL for ECMP.

http://en.wikipedia.org/wiki/E

...

willstech by L3 Networker
  • 2845 Views
  • 4 replies
  • 0 Likes

802.1q tagged sub-interfaces on PA-500 v6.1 not working

I'm trying to consolidate multiple Layer3 interfaces into a single Layer3 interface using subinterfaces and VLAN tagging, but it's not working.

I'm hoping someone can point out the error in my configuration.

The current working configuration:

FIREWALL
et

...

Gp Configuration

Hello Friends,

We want to  configure our Remote VPN (Global Protect ) on two ISP and  we should be able to  manually switch the gateway at client end and no Lic is required for that?. Please suggest.



Regards

Satish

Satish by L4 Transporter
  • 3888 Views
  • 5 replies
  • 0 Likes

HTTP Header - Logging NTLM Username

My PA firewall inspects traffic between my users and proxy server. The proxy server provides NTLM authentication. Is there a way of logging the NTLM authenticated username within the http headers?

ASCIT by L2 Linker
  • 3958 Views
  • 6 replies
  • 0 Likes

Resolved! GlobalProtect Agent Question

I am configuring GlobalProtect and have a question concerning the Agent software.  For security reasons, I configured GlobalProtect in "On Demand" mode for Remote Customers and do not allow the customers to view the Advanced View or save their logon

...

Resolved! QoS profiles on Aggregate interfaces

In advance - thank you for your help.

I am trying to create a QoS profile.  Here is my scenario.  I want to apply a QoS profile to a public IP I own to do one of two things.  1 Give it priority over other traffic OR (complete opposite) rate-limit traf

...

ZachSmith by Not applicable
  • 5702 Views
  • 6 replies
  • 0 Likes

Palo sending email issue

Is anyone else having the "failed to forward log to mail server: aspmx.l.google.com" causing a "mailclient: error reply: 421 4.7.0 Email Senders Guidelines. l.12 - gsmtp"  for google's mail?

Possibly started with 6.14 and maybe 6.13. I had my email se

...

ulti by L3 Networker
  • 4737 Views
  • 2 replies
  • 0 Likes

Wildfire Email Link Test url

Hey All,

Does there exist a way to test the Email Link feature of Wildfire with some sort of test url that always gets sent to Widfire and is always Malware?

Like the http://wildfire.paloaltonetworks.com/publicapi/test/pe link to download a Wildfire te

...

mr.linus by L4 Transporter
  • 2884 Views
  • 2 replies
  • 0 Likes

Getting traffic from tunnel interfaces in MRTG

- I can plot data from physical interfaces (from the PA) in MRTG, such as for  instance
data from Eth1/1 and Eth1/2.  But MRTG's cfgmaker doesn't get any info about tunnel
interfaces. Could this be made possible, for instance by adapting some changes

...

  • 23689 Posts
  • 109 Subscriptions
Top Solution Authors
Labels