General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 3716 Views
  • 0 replies
  • 0 Likes

Static Route ECMP Monitoring upstream

Hi All, 

 

Probably a quick question. I am attempting to implement ECMP with two static routes. Such as:

 

ECMP on

e1/1 = 192.168.255.9/29

route 10.0.0.0 255.255.255.0 192.168.255.11

route 10.0.0.0 255.255.255.0 192.168.255.12

 

My question is, if 19

...

Resolved! Multiple Captive Portal

Hi, We are catering Palo Alto to different schools. Is there a way or is it possible for Palo Alto to have different captive portal page per school? Example, school A will have different design of captive portal and school B will have another design...

Permit or Block Traffic based on Path within URL

Is there a way to block or permit traffic based on the path in a URL through custom URL Categories or any other means Palo Alto has? I have found you can filter based on domain and sub domain. however, when i try to specify the path after the domain

...

Response Page on Internet Zone

Hello Community,

our customer has a Cluster of PA-3020 with PANOS 7.0.2.

We have enabled Application Block Page and the Internal users can view it properly.

Customer has a rule to permit Web-browsing traffic from Internet to DMZ.

 

 

When users try

...

image001.png

Resolved! X-Forwarded-For on Traffic and Threats logs

Hi Community,

I wanted to know if you are able to see the IP of XFF on the Traffic and Threats logs.

Do you know if there are any configuration to enable it or if it will be supported on the next releases?

 

Thanks in advance.

Jacopo.

XML API

hi , i enter follow . but occurs error (Malformed Request)

https://10.21.63.99/api/?type=config&action=set&xpath=/config/devices/entry[@name=%27localhost.localdomain%27]/vsys/entry[@name=%27vsys1%27]/rulebase/security/rules/entry[@name=%27rule1%27]&e

...

PAN could generate system log about max session and cps?

Hi.

I want to know about system log.

When Max Session fully exhausted, system log could be generated?

When CPS limit reached, system log could be generated?

PANOS 5.0 could generated a system log for high DP CPU.

I want to know description of system log

...

Roh1 by Not applicable
  • 3627 Views
  • 3 replies
  • 0 Likes

Resolved! Bottom Custom Reports

So PAN systems come with a lot of awesome custom report options, but I want to find policies that aren't being used very much, perhaps let's say 0 hits in 7 days. I'm attempting to do this in a much more simplistic and preferable-to-read fashion by s

...

question for block amazonaws

Hi I recently got many amazonaws.com IPs listed in my attacker list from my daily report as below. How do I block all traffic from amazonaws, and I cannot find it from my traffic monitor and why? Please give me some hints?

 

52.5.42.249 ec2-52-5-42-2

...

Bin by L1 Bithead
  • 4878 Views
  • 2 replies
  • 0 Likes

How to generate SNMP Trap for testing purposes on PAN OS?

Hello

 

I'm on PAN OS 6.1.8 and I try to test my reporting/alerting system.

Is it a way to generate trap from PAN os from CLI/GUI?

 

 

P.S. This doc https://live.paloaltonetworks.com/t5/Configuration-Articles/SNMP-Trap-for-Port-or-Link-status/ta-p/56

...

_slv_ by L4 Transporter
  • 4293 Views
  • 1 replies
  • 0 Likes

RADIUS authentication and multi-vsys configuration

Hello,

i have a pair of 5020, with multi-vsys environment and i want to be able to separate admin access based on vsys and read-only/read write access. I successfully configured following admin access scenario, using external RADIUS server:

separate

...

  • 24334 Posts
  • 122 Subscriptions
Labels