General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1665 Views
  • 0 replies
  • 0 Likes

Agentless UserID in a MultiDomain Environment

My first question would be is it possible to configure a firewall with no vsys license to query more than one domain without deploying the UserID windows agent?

My second question would be if yes then how given that there is only 1 WMI authentication

...

CHammock by L2 Linker
  • 3040 Views
  • 2 replies
  • 0 Likes

Thoughts on a set of application rules?

I was messing around in the interface today and had a thought as for rules and am curious what other might think.

I created a group of rules for a particular zone/AD User group.  Something like this

Allow but do not log (DNS for example)

Allow these app

...

BobW by L4 Transporter
  • 3655 Views
  • 2 replies
  • 0 Likes

PA-VM on ESXi - L2 Topology Design Questions

I'm looking to deploy a pair of PA-VM 200s running 7.x on a vSphere 5.5 cluster and would like a sanity check on the design.

My client's network currently has one large VLAN that houses most of their servers.  For the sake of this example, we'll say i

...

bkeifer by L1 Bithead
  • 2820 Views
  • 1 replies
  • 0 Likes

VPN s2s PA and Mikrotik

Hello

I have new tas - make VPN s2s between PA200 and Mikrotik router.

PA  (PA 200 on 6.1.4) has Advanced phase mode 1 optios set to AUTO and "anable passive mode" not checked

Mikrotik (751U-2HnD with latest 6.30 router OS) is in aggressive mode.

It's qu

...

_slv_ by L4 Transporter
  • 2207 Views
  • 1 replies
  • 0 Likes

Applications and Threats auto-update issue

I have an issue where all of my definitions auto-update with the exception of Applications and Threats.

Previously, I had Applications and Threats set to download only.   About a month ago I changed it to also install.   Since that time, I've still ha

...

EdwinD by L3 Networker
  • 4934 Views
  • 4 replies
  • 1 Likes

Tips to improve mgnt tasks in a PA-2020

Hello Everyone,

Does anybody knows any tips to improve mgnt tasks (policy changes, monitors checks, commits... etc etc) in a slow box PA2020?

I am working w/ this model since november 2013 and I am facing so many problems w/ slow response during manage

...

Google-Earth app issue

Hello Friends,

we have to allow only Google-Earth app for specific group of users but as SSL,web-browsing are its Dependent Application and need to allow as well, once allowing users also able to use yahoo , rediff and other urls

we have to control tha

...

Satish by L4 Transporter
  • 3182 Views
  • 1 replies
  • 0 Likes

Different severity WebUI-Traps

Hi, we have had this vulnerability (ANGLER Exploit Kit Detection (37796)  in our LAN, and we realised that PA classified this vulneratibility in the WebUI with severity CRITICAL but in the traps and syslog that we received the severity for this vulne

...

SOC_CSG by L4 Transporter
  • 2632 Views
  • 1 replies
  • 1 Likes

Check_mk Package for snmp statistics

Hello

Currently I use the standard snmp statistics in my monitoring tool check_mk:

And for Sessions I use this packages Check_MK Exchange - Mathias Kettner

I'm looking for a package to monitor the firewall throughput, threat prevention throughput and IP

...

2 Factor with Palo Alto, best solution?

What does everyone have setup as far as 2 factor goes?

I have a consultant here and we're thinking about going to the Microsoft MFA server route. Seems ok but not very flexible for things other than VPN.

Any feedback on other solutions would be appreci

...

choff123 by L3 Networker
  • 3958 Views
  • 3 replies
  • 0 Likes
  • 24215 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels