General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4235 Views
  • 0 replies
  • 0 Likes

Resolved! DHCP relay through a VPN tunnel

Hello,Just curious if anyone has had to go throug this and found a solution. layer3 switch <-> Cisco ASA <-> VPN <-> PAN <-> DHCP server I know the ASA does some funky stuff and uses the 'outside' interface to forward the packets so on the other side you have to do some funky rules. I've been successful with doing this wi...

Resolved! Panorama on 6.1.7, can it manage 6.0.7

Hello all. Tomorrow night I will be upgrading our firewalls to 6.1.7, they (and Panorama) are currenlty on 6.0.7. Can I upgrade Panorama now and still manage the firewalls on 6.0.7 if I need to make any changes between today and tomorrow? Thanks!

ldavie by L2 Linker
  • 4506 Views
  • 6 replies
  • 0 Likes

Historical report on QoS

Hi All,What methods are people using to show history reports for QoS?Are these metrics held in file/memory etc, so that they can be feed out via syslog etc into a system, so that a historical view canbe created of QoS information?I'd like to build this into PoC's, not just be able to show them during real-time, but over the period the PoC was ru...

KatanaNZ by L3 Networker
  • 5903 Views
  • 5 replies
  • 0 Likes

PANOS 7 on PA-2020 ?

Will it work ? I don't mean like is it compatible.I mean: Will it be manageable at all, seeing that version 6 is already a management nightmare ?Is anyone on PA-2020/2050 on version 7 and what are the experiences ? I see some changes that may be useful for alleviating management (eg Time-Based Log andReport Deletion), but will it be enough ?

dieter_b by L4 Transporter
  • 7865 Views
  • 9 replies
  • 0 Likes

Globalprotect still cant report missing patches on MAC OS?

The last version that didn't have this "known issue" was 2.2.0, based on release notes. Even the most recent release, 2.3.1, has bug id 77018 and wont report missing patches on the mac. Any idea when Palo will resolve this? It seems to severely limit a key feature we and others use Globalprotect as a vpn solution if one can't enforce HIP checks ...

ulti by L3 Networker
  • 3429 Views
  • 2 replies
  • 0 Likes

Device Capacity Planning

I am trying to get my head around device throughput maximums. As an example the 3020 is speced as such:2 Gbps firewall throughput(App-ID enabled1)1 Gbps threat prevention throughput500 Mbps IPSec VPN throughputAre these throughputs simultaneous? In other words, can I have 2Gbps of Firewall through put and 500Mpbs of IPsec traffic, or if I have 5...

dpayne by L1 Bithead
  • 2837 Views
  • 1 replies
  • 0 Likes

Lync Federation Traffic

Hi Guys, Recently we've configured Lync 2013 on our network. What i've noticed on the PA external firewall is the Lync federation traffic from the internal lync clients to for example 'Skype clients' on the web or other organizations is classified on the PA as 'unknown-tcp'... on port 443. Currently i've got a security policy purely allowing 'un...

PAN-DB URL Category List

Hi Everyone! I'm being asked to provide a report of all of the applications, categories and URLs we are currently blocking. Does anyone know how to obtain this?

dgoins by L1 Bithead
  • 2921 Views
  • 2 replies
  • 0 Likes

Global Protect - User login from only one device at a time

Hello, I have configured global protect and was able to connect successfully. But is there a way to restirct user login from only one device at a time?. Meaning if the user has a laptop and a smart phone , the user should connect either from the laptop or from the smart phone at time. Please help me to resolve this issue ASAP. Thanks and Regards...

Resolved! UserID Built-in Syslog listener - Limitations?

We use the Syslog integration in the PAN Agents to forward User/IP-mappings from our wireless controllers to PA 5020 firewalls. We are considering to move the Syslog integration to connect directly with the PA5020 instead of the PAN Agents. But i remember having read something about limitations on the built-in Syslog reciever. That we should st...

Resolved! Outlook timeout issues

DescriptionWe are experiencing a timeout problem when using outlook/exchange across the PA firewall.When the RPC connection between Outlook and Exchange is idle, the PA apparently terminates the connection. This causes the Outlook client to hang/stall until restarted - and thereby establishing a new RPC connection. When the timeout occours, a Ba...

palo alto networks configuration

hello, I configured a PA-500 with routing mode in our company . I set the zone , the security rules , the nat rules . I allow all traffic from trust zone to untrust zone. But the problem there is no internet connection. We use a DNS server , that is in trust zone.I add a security role from untrust zone to a trust zone (with addressof DNS server)...

RCHAIBI by L2 Linker
  • 1870 Views
  • 1 replies
  • 0 Likes
  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels