General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PBF Logs - How to check if monitor is flapping

Hello All! We are using a PBF with a public IP as monitoring target... We are suspecting this IP is flapping... but we didnt find the correct time that happens... Is there any way to check past logs? or check in real-time any PBF logs and monitor any flap ? thanks in advance!!!

where is my last topic?

Hi Few days ago I created topic on old looking Community. Today I can't find it... The name of topic is "SYSTEM ALERT : critical : Disk usage for / exceeds limit, 96 percent in use, cleaning filesystem " How I can get access to this topic on new Community portal? RegardsSlawek

_slv_ by L4 Transporter
  • 2032 Views
  • 1 replies
  • 0 Likes

Globsl Protect client

My used appparently don't know how to put the portal address in the GP client , is there anyway to modify the install package to automatically put the connection IP in the settings?

jdprovine by L4 Transporter
  • 1900 Views
  • 1 replies
  • 0 Likes

HA and routing/switching/vwire option in a "VSYS" on PA-7050

How does carving up multitple vsys on a pair of PA-7050s with NPC Option 1 (2x40G QSFP + 12x10G SFP+) work, in terms of sharing the dedicated HA1-A/B and HSCI-A/B ports on SMC per vsys for HA1, HA2 and HA3? If you have 5 different vsys (vsys'es) for example and of those 3 vsys are active/passive (reqires HA1 and HA2) while other two are active/...

atp9007 by L0 Member
  • 2265 Views
  • 1 replies
  • 0 Likes

OSPF between virtual routers

Hey all, Is it possible to run OSPF between 2 virtual routers on a single PaloAlto device? Since you need to have an interconnecting interface, I guess you need to have the traffic physically leave the firewall and come back in on another port in the other vr; and then use that interface as routing subnet to talk OSPF. But I was wondering of it ...

mr.linus by L4 Transporter
  • 9304 Views
  • 2 replies
  • 0 Likes

Commit takes too much time

Hello I have a pair or 2 pan-2050 and it takes to much time to perform a commit, the last change made was incluiding a url in the white-list profileEnqueued ID Type Status Result Completed --------------------------------------------------------------------------2015/08/05 12:40:40 3533 Commit ...

SOC_CSG by L4 Transporter
  • 8212 Views
  • 5 replies
  • 0 Likes

Resolved! OSPF Adjacency Issues when enable ECMP on version 7.0.1

Hi all, We enabled OSPF between our ASR routers and PA 5020. we can see our neibours with the advertized default route but as soon as we enable ECMP to use equal cost we lose the adjencency. we ran the packet capture and realized that PA external interface doesnt allow MTU more than 1482 as we add it manually and it's working. is anyone tested E...

Resolved! VM100 L3 subinterfaces cannot forward traffic

Hello to everyone,recently I installed new VM100 on ESXi 5.0 infrastructure, but during initial configuration I noticed that L3 subinterfaces cannot forward any traffic, even I configured virtual router and policy with permit all-any statement between two sub's (zones). On VMware side on distributed switch I created trunk portgroup with 2 vlan'...

Tician by L3 Networker
  • 13137 Views
  • 14 replies
  • 0 Likes

Question about threat logs - Type wildfire-virus

Hi all, just wondering why I see in our threat logs entries with the type wildfire-virus only for the application smtp... (I would like to post some screenshots, but I cant find the upload button?) What is the type wildfire-virus standing for? And where can I enable it for other applications as well?

Hithead by L4 Transporter
  • 9338 Views
  • 4 replies
  • 1 Likes

Resolved! How to block malware coming over VPN

Last week we had an internal user that was infected with CryptoLocker. Our users get through GPO network drives and also some of the files on these drivers were infected. We could disinfect the system and the files and we generated a GPO so no malware can be run from %appdata% and we also did some other changes. The only thing I'm afraid about i...

ZEBIT by L3 Networker
  • 3463 Views
  • 1 replies
  • 0 Likes

Resolved! How to make Windows / Cisco / PA network secure?

We have several GPO running on our clients to make the network secure as possible. Also the clients and severs are running in different VLAN. But which other configuration changes to I need todo to make the network secure?Maybe use NPS but what are the condition I need to make? Thanks in advance

ZEBIT by L3 Networker
  • 2478 Views
  • 1 replies
  • 0 Likes

Sinkhole Feature Trouble

We implemented the DNS Sinkhole feature about the time 6.0 came out. I've actually had a hard time using the threat and traffic logs for incident response. We can't pinpoint which hosts are hitting what URLs or malicious domains. The threat logs show all the suspicious DNS queries that come from our DNS servers but not the hosts themselves (beca...

  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels