General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1320 Views
  • 0 replies
  • 0 Likes

Resolved! Best Practice for insufficient-data

Hi all,

 

What are you doing with traffic identify as "insufficient-data"?

I know we are supposed to do pcap and trying to identify if then create custom app but ... on real life 

 

Although you have created a rule for denying all, insufficient-data stil

...

rule.png
log
VinceM by L5 Sessionator
  • 29795 Views
  • 3 replies
  • 0 Likes

NAT DIPP fallbacks

Hi there

Im seeing  NAT DIPP fallbacks quite a lot relating to a NAT rule, theres does not appear anything not working so im wondering if its somehting that im not noticing work.  Ocasionally it feels more sluggish that it should when browsing web pag

...

SQLinjection not being detected by PA

Hi, we are receiving these tries about SQL injection but our Palo alto is not detecting it. How can we do that PA detect this SQLi????? we have updated the threats signatures.

 

Sql injection

GET /ficha-modelo?id=2&entidad=99999999%27%20oR%20%277%27=%27

...

SOC_CSG by L4 Transporter
  • 5037 Views
  • 8 replies
  • 0 Likes

Hybrid whitelist/blacklist Policy

I played around on our lab FW a bit but couldn't get this working. Here are my objectives:

- Create a "White List" custom URL category that allows only a handful of web sites. (Working with URL Filtering profile.)

- Log all permits (Working. I got this

...

Resolved! URL Filtering - Bypass for Level 1-2 Support

Good Afternoon

 

I have a request to look into a way a Level 1 - 2 Support Person can easily bypass a blocked URL.  Be it by policy, a custom button on the response page, captive portal, or a combination of whatever might be needed to do so.  Has anyon

...

Resolved! How many can I create url-filtering profile on 5050?

Hello,

 

I have two questions.

1.How many can I create url-filtering profile on 5050?

 

2. And I have watched as below output of cli on 3020,

sylee@PA-3020-uquest(active)> show system state filter cfg.general.max* | match profile

cfg.general.max-profile: 15

...

Wildfire .ace archive support

Does Wildfire support the .ace filetype?  I've received messages that should have been filtered that have .ace payloads.  The message attachments are clearly malware based on virustotal.  The message bodies are classic phishing type attacks. I have a

...

Drop all packets

I added an exception to a spyware profile to drop all packets and it now says its dropping and allowing the packets how can that be?

jdprovine by L4 Transporter
  • 5353 Views
  • 9 replies
  • 0 Likes

Resolved! New Application vs Application override

Hi all,

is there any difference between creating a new application and creating application override policy? as per I understand a new application doesn't required configuring application override policy, and configuring application override policy is

...

Site to Site VPN Double NAT Issue

Hi,

We have a branch office connected via site to site vpn, plao alto firewalls at both locations.

Due to buiding works the office has been relocated to a shared building and we're having to use a third party's network connection. We've been provided w

...

Glicks by L0 Member
  • 4676 Views
  • 2 replies
  • 0 Likes
  • 24182 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels