General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 249 Views
  • 0 replies
  • 1 Likes

Resolved! VPN Works but....

Hi

I configured an IPSec site to site VPN between Palo Alto Firewall and Checkpoint Firewall.

Everything works perfectly as expected, but I get constant Logs : IKE-Phase 2 negotiation failed when processing proxy ID. cannot find matching phase 2 tunne

...

High Availability issue PA 2020

I have 2 PA 2020's which have been running HA fine for about 2 weeks

now i see in the device that eth1/11 is showing as red/down in both firewalls

the system log shows per attached log (for pri and sec firewalls)

anyone have any ideas re this HA issue p

...

sue_town by Not applicable
  • 3477 Views
  • 7 replies
  • 0 Likes

application override not working

Hi,

We configured Palo Alto in vwire mode between our head office and branches. Setup is like  Core <--> PA3050 <--> WAN Switch. There is a specific application that is not working and we create custom application by defining the destination port. We

...

data filtering log doesn't show filename for boxnet app

I just ran into this issue last week. We are decrypting boxnet and applied a data filtering profile.

For web uploads and (for wildfire submissions?!) it seems to recognize the filename just fine, but for uploads via boxnet app it just shows unused.

Is

...

Safe Search Enforcement

Gentlemen,

I set up the Safe Search Enforcement option, as described in the documentation of Palo Alto Networks. But it still fails when it comes to blocking searches for porn on search engines.

Does anyone by chance have used this new option that is

...

PA-500 front panel status LED is not on

Hi all,

I'm now having issue with PA 500 where the front panel of the unit "Status" LED is not ON. I'd change a 2GB RAM for my client and when I try to boot up. The status light is not on and I can't make any configuration as there will be error "A co

...

Resolved! site to site vpn issue

Hi Friends,

I have PAN-2020 with OS- 6.0.4, one side PAN and other end have juniper tunnel are showing Up but traffic is not passing Not Passing.

Regards

Satish

Satish by L4 Transporter
  • 6080 Views
  • 9 replies
  • 0 Likes

Global Protect Windows Firewall

Finding issues with windows firewall with domain policy applied.  The Pan client is detected as on the domain and the network adapter is public for the firewall.  Under the domain firewall log on the windows machine I show several UDP blocks for the

...

markk96 by L3 Networker
  • 5038 Views
  • 1 replies
  • 0 Likes

Resolved! Increase paste buffer on PAN (or other import methods)

I am attempting to paste a large number of cli commands from a config converted from another vendor. When I paste via SecureCRT or Putty the commands begin to truncate after around line 20, depending on the length of each line. This is limited to PAN

...

satatic NAT with multiple server

Hi Friend,

Need some suggestion, I have one ISP. i dont want to expose my gateway Ip, problem is that i dont want Dynamic IP And Port based NAT, i want source static NAT and i have multiple server. i want source static nat for all server. please help

...

Satish by L4 Transporter
  • 2653 Views
  • 6 replies
  • 0 Likes

PHP vulnerability CVE-2014-3710

Hi,

In relation to this vulnerability: CVE-2014-3710. Does anyone know if PA have some signature (Threat) that can stop this?

http://php.net/ChangeLog-5.php

any help will be appreciated

Regards,

dicu

SOC_CSG by L4 Transporter
  • 2400 Views
  • 2 replies
  • 0 Likes

Global Protect HTTPS weakness - Help!

Hi,

I would really like an answer to this considering this is supposed to be a security product in the first place and I see several people have already asked the question.

We have just had a security audit completed by a third party, they highlighted

...

tezza by L2 Linker
  • 5873 Views
  • 8 replies
  • 0 Likes
  • 23627 Posts
  • 107 Subscriptions
Top Liked Authors
Labels