General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4119 Views
  • 0 replies
  • 0 Likes

Resolved! Imported Check Point config shows objects and nats, but no rules - Migration tool v3.1.1

I'm importing a Check Point config into the Migration tool, v3.1.1 I see the imported objects and nat's ok, but the rules page is empty and says "no data to display" in the bottom right. I chose the files objects_5_0.C, rulebasename.pf, rulebases_5_0.fws, and the routes.txt (output of netstat -nr).I've tried it with Option A both checked and unc...

ksalustro by L3 Networker
  • 5792 Views
  • 2 replies
  • 1 Likes

Using expect script to automate building firewall templates in Panorama

Hi Community, I have been struggling with this for weeks, and have tried various means, including setting the Panorama CLI parameters. However, I always get random results, which ends up either the cmdline was entered prematurely or truncated. A support ticket was logged but proved to less than helpful, as the answer given was to lessen the numb...

benson by L0 Member
  • 4904 Views
  • 2 replies
  • 0 Likes

What is the "Any" URL Filter Category

I am seeing a handlful of Blocked URLs, with a Category of "Any". Just wondering what that is and why I might be getting them. Is it the same as "Unknown"? I do not have a URL Filter Category named Any. Thanks

BillTito by L0 Member
  • 3988 Views
  • 3 replies
  • 0 Likes

Integrated User-ID Agent vs. Windows Service?

We're running 5.1 right now and plan on upgrading to 6.1 over the next couple of days.Historically we've used the Windows User Agent on two of our domain controllers, but today I switched to the on-board Integrated User-ID Agent and set it up, and other than a noticeable increase in CPU load on the domain controllers, everything is working great...

Is SSL decryption will increase the number of sessions?

Hi Team, My doubt is that,..doing SSL decryption will increase the number of sessions?example : if i access gmail there will be one tunnel established to the server (gmail) inside which text chat, video chat, other apps will be there.Now if i enable SSL decryption will it increase the number of sessions as now it can see each and every activity ...

Gururaj by L4 Transporter
  • 3348 Views
  • 3 replies
  • 0 Likes

Resolved! URL filtering

Who is using URL filtering? Is it worth the added cost? Is there any way to do it without the license?

jdprovine by L4 Transporter
  • 5250 Views
  • 8 replies
  • 0 Likes

Global Protect not connecting

Hi Community,For the past 2 days PA's globalProtect is really becoming a headache for me. PA is becoming pain for me on these days.It won't connect, stated as not connected, sometimes it stuck at "Connecting", and if that's the lucky hour, it will connect once or twice. I've tested it on so many computers, restarting the pc, uninstalling GP, and...

Resolved! DNS sinkhole log action ons DNS rule

https://live.paloaltonetworks.com/t5/Articles/How-to-Configure-DNS-Sinkhole/ta-p/58891 explains how to configure DNS Sinkholing.In step 3 the anti-spyware profile is added to the security rule that allows DNS traffic. Does logging (at session end) need to be enabled on that rule for sinkholing to work ?Or does it only have to be enabled on the r...

dieter_b by L4 Transporter
  • 9082 Views
  • 11 replies
  • 0 Likes

Resolved! Best Practice for insufficient-data

Hi all, What are you doing with traffic identify as "insufficient-data"?I know we are supposed to do pcap and trying to identify if then create custom app but ... on real life 🙂 Although you have created a rule for denying all, insufficient-data still go through the firewall (like "unknown" traffic) inbound and outbound !! Most of this traffic ...

rule.png
log
VinceM by L5 Sessionator
  • 33292 Views
  • 3 replies
  • 0 Likes

Except Specific IPs from port scan detection / Zone Protection

I have a highly regulated environment with multiple internal security zones. We need to be able to run our vulnerability scanning solution against servers in separate zones on a routine basis.It was simple to exempt the scanner's IP from the Threat Prevention stuff (created a new security profile group which alerts on everything instead of block...

SDorsey by L4 Transporter
  • 13649 Views
  • 13 replies
  • 0 Likes

NAT DIPP fallbacks

Hi thereIm seeing NAT DIPP fallbacks quite a lot relating to a NAT rule, theres does not appear anything not working so im wondering if its somehting that im not noticing work. Ocasionally it feels more sluggish that it should when browsing web pages but thats about the only thing. There only one nat on the firewalls its set to fall back to an...

Resolved! PANOS6.0.5 Inbuilt CA can't generate a certificate with UPN (user principal name) attribute?

PANOS 6.05 inbuilt PAN certificate authority doesnt seem to have the ability to generate a certificate with subjectalternate value for UPN (user principal name e.g user@domain.local ). This is the standard way that Microsoft embeds usernames (UPN format) into certificates, On PAN CA generated certificates you could set the username/samaccountn...

CMG by L2 Linker
  • 2557 Views
  • 1 replies
  • 0 Likes

SQLinjection not being detected by PA

Hi, we are receiving these tries about SQL injection but our Palo alto is not detecting it. How can we do that PA detect this SQLi????? we have updated the threats signatures. Sql injectionGET /ficha-modelo?id=2&entidad=99999999%27%20oR%20%277%27=%277 HTTP/1.1" 500 59878 "-" "Mozilla/4.0GET /ficha-modelo?entidad=!S!WCRTESTINPUT000000%3C%3E%3...

SOC_CSG by L4 Transporter
  • 5602 Views
  • 8 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels