General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! VPN Global Protect Portal - two VR and one VR environments

VPN Global Protect Portal - two VR and one VR environments

 

Hello, good afternoon.

As always, thanks for the help, the support, your time and collaboration always.

 

I tell you I have the following case, which has me very restless, since I always tr

...

Metgatz by L4 Transporter
  • 1988 Views
  • 1 replies
  • 0 Likes

TCP 443 Web Server Allows Password Auto-Completion

Hello dear community, good afternoon:

 

Please your support: I tell you about an "X" vendor vulnerability scan tool, I detect the following vuln against the IP of the MGT WEB-GUI of the Firewall.

Problem,inconvenience, vulnerability against the WEB-G

...

Metgatz by L4 Transporter
  • 2898 Views
  • 1 replies
  • 0 Likes

Resolved! GUI Access on Public IP

I'm setting up a PA-200 for a remote office and was wondering if anyone could tell me how I would restrict the GUI access on the Public IP to solely 1 range of public IP addresses. As it sits now I have access on any device as long as I have the pass

...

BPry by Cyber Elite
  • 6721 Views
  • 5 replies
  • 0 Likes

Resolved! Select PAN-OS version after reboot

In HA upgrade scenario we decided to stop the procedure and downgrade after the 1st FW was upgraded and had issue. But on the 2nd FW software install was already completed but we didn't reboot the FW so it stayed on old version.

 

Does anyone know the

...

santonic by L6 Presenter
  • 1971 Views
  • 5 replies
  • 0 Likes

Fun with MS Office 365

Hello Community,

Has anyone found a way to allow access to a corp instance in o365 but block all other access? The idea would be so that a corp user can log into the corps instance, however block access to another companies or even personal instance.

 

...

Double NAT return packet dropping in firewall

Can anyone help point out if I am missing something obvious here.... I have a new vendor over an AmazonAWS VPN that I have to double NAT inbound traffic for (because they are using IP ranges that clash with our existing network and best practices, i.

...

Resolved! IPSec Tunnel Monitoring for Single Tunnel

Is there any benefit of setting up tunnel monitoring if it’s just one tunnel, i.e. no failover tunnel?

 

Our monitor profile obviously would be to wait for recovery. We have third party alerts for devices on each side of the tunnel should they go dow

...

KGDrake by L0 Member
  • 1480 Views
  • 3 replies
  • 0 Likes

IOT Policy Set creation ability missing?

Why is it that on some devices I am able to click and create policy (highlighted blue), but others like the Lenovo computer, or Dell Computer profiles I am unable to click and create a policy for them from the profiles page?  Seems to be related to d

...

Sec101_0-1651088583181.png
Sec101 by L4 Transporter
  • 1093 Views
  • 1 replies
  • 0 Likes

URL Filtering > Advanced URL Filtering

Hi,

With legacy URL filtering no longer available we've renewed our subs with Advanced URL Filtering instead.

The license for this appeared in the support portal but did not come down to the firewall itself (still showing the legacy sub which expires i

...

SARowe_NZ by L3 Networker
  • 1250 Views
  • 3 replies
  • 0 Likes

Resolved! GlobalProtect and other VPN tools

Hi mates,

I was wondering if there are any ways or tools to block the GlobalProtect connection when another type of VPN is up and running.

 

The main goal of this is to get the right country of origin information on the GlobalProtect logs on the firewal

...

Fail-over VPN site-to-site

Hi,

 

We have a PA with two VPNs configured. VPN-Main is the active one and if this vpn falls, the traffic must go through the other VPN-backup. The fact is that when the active VPN falls, the route that has the Palo Alto continues going through the pr

...

1.JPG
2.JPG
3.JPG
BigPalo by L4 Transporter
  • 14538 Views
  • 21 replies
  • 0 Likes