General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

User ID mapping update

Hi,

How regularly should the user-id mapping take place in the pan agent.

If I log into the > Program Files> Palo Alto Networks > Panagent folder, and review the user_ip_map

text file, it shows the last dated of June, 2013.

But this is the month of Sep,

...

rz185016 by Not applicable
  • 1662 Views
  • 4 replies
  • 0 Likes

Resolved! Accessing all company networks with GlobalProtect client

Hi!

Basic info:

PA-500 (software version 5.0.7)

Main location network: 10.10.1.0/24

Branch location network: 192.168.1.0/24

GlobalProtect client IP pool: 10.10.3.10 - 10.10.3.254

We have main location network and branch location network connected thru IPSe

...

kpv by L1 Bithead
  • 3354 Views
  • 9 replies
  • 0 Likes

Client VPN traffic and routing over IPsec Tunnel

Hi there,

Here is our scenario that I am trying to figure out.

We have two sites (main office and a rack in a data center) that are connected via PAN-2020's on both sides through a IPsec Tunnel. I am trying to route Client VPN traffic that connects at

...

cmateam by L3 Networker
  • 4369 Views
  • 5 replies
  • 0 Likes

Having trouble with link aggregation using 10G ports

We have a cluster of  two PA-5060 running in active-passive mode. Two 10G interfaces are configured as an aggregated interface. They are connected to two Avaya 8600 switches which are running SMLT. Whenever a failover happens, the aggregated interfac

...

Resolved! Traffic Filter by Address Groups

Is it possible to create a traffic filter using an address group as the src or dst?

I have an address group with around 15 IPs in it that I would like to filter on in the traffic logs.

AmyTyler by L2 Linker
  • 1447 Views
  • 2 replies
  • 0 Likes

Resolved! URL Filter update - users not seeing changes?

1.  If a URL is incorrectly categorized, I submit a change to Brightcloud.

2. Brightcloud emails me the next day (or two) and says the change was accepted and is in the latest DB.

3. I confirm on Brightcloud's website that the URL is newly categorized

...

cenders by L3 Networker
  • 2385 Views
  • 7 replies
  • 0 Likes

Resolved! Slow VPN throughput after update to 5.0.7

Hello Community

Has anyone recognized some performance issues (extremely slow ip-sec throughput, hanging sessions) after updating to 5.0.7

A Firewall reboot solves this issue, but it's coming up again after some days.

Many thanks

Hannes

Resolved! SSL VPN

Hi,

Noob question: Where is the guide for configuring SSL VPN? Can't find anything in the getting started or admin guides.

TIA

Stuart

Wildfire flow

Hi,

For the desicion flow of wildfire, where is the hash update and wildfire database update ? can someone tell the real place of both in that chart.

Document's very clear but it is written before subscription service was released.

WildFire Decision Flo

...

panos by L6 Presenter
  • 1076 Views
  • 2 replies
  • 0 Likes

Resolved! Loopback Interfaces in VPNs

In my configs, I generally reference the actual egress interface on the PAN device. I have run across some configs where the original engineer tied the GP portal to a loopback interface which basically just pointed to the same IP tied to the egress i

...

SDorsey by L4 Transporter
  • 2096 Views
  • 2 replies
  • 0 Likes

PA-200 Multiple WANs

Hi,

I'm getting my second WAN line installed this week and need to integrate it into my current setup on my PA-200.

Ideally, I'd like the PA-200 to load balance between the two WAN interfaces so my initial thought is to add the new WAN interface into t

...

HA Questions

Hi all,

I have 2 simple questions:

Q1: proper procedure to physically move the standby firewall PA3020 connected to primary firewall within the same datacenter (need to power off and move)?

Q2: proper procedure to switch the primary to standby and stand

...

Top Solution Authors
Top Liked Authors