General Topics
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics

Discussions

Join Us for a Tech Deep Dive Miniseries!

 

Stop Zero-Day Threats in Zero Time with Nebula PAN-OS 10.2.

 

Join us live for an in-depth look at the latest advancements in cybersecurity, best practices, tips and tricks, demos and
more to protect your business and defend against threats in real

...

nebula-on-demand-tech-deep-dive-miniseries-live-community-banner-2600x600.jpg
jforsythe by Community Team Member
  • 381 Views
  • 3 replies
  • 1 Likes

Security Policy Organization

Anyone have any good tricks to organizing an ever-growing list of security policies?  We have quite a few especially with inspecting internal to internal traffic.  The firewall uses a top down approach to inspection, so I wanted to see if there was a

...

gheimer by Not applicable
  • 3357 Views
  • 5 replies
  • 1 Likes

Resolved! differentiate between IE and FF

Hi,

is it and when how is it possible to make a difference between a source which is using IE (company-standard) or firefox. I want to deny firefox-traffic.

We use v5.0.3

Cheers Klaus

kdd by L4 Transporter
  • 997 Views
  • 2 replies
  • 0 Likes

SSL Sites bypass URL Category block

Good Day Guys and Gals

I need ideas on the following issue please! I have a block on all Social networking sites for the company. The Policy works great when the user tries to access http://plus.google.com, but when they use SSL (https://plus.google.c

...

u7285 by Not applicable
  • 3462 Views
  • 13 replies
  • 0 Likes

Resolved! Multiple IP addresses on an interface

I know that I can add a second IP to my outside interface by using a /32 instead of /24 like the first one has.  My question comes in with routing.  My default route shows a 0.0.0.0/0 going out ethernet1/1.  Since this interface has 2 IPs what IP doe

...

nthen by L3 Networker
  • 1701 Views
  • 3 replies
  • 0 Likes

Unable to assign Security Policy to Users or Groups

Hi -

We are using User-ID Agents to create user-to-IP mappings and I've got group mapping configured on the firewall itself and I can browse through my ldap groups.  However, when I go to Policies > Security Policy I am unable to select either individ

...

Looking for advice on App-id configuration

Looking through the white papers and documentation, I didn't really find much as to a recommendation on how to tackle the task of app-id configuration as a whole. Have any of you found any documentation that was helpful in this area? One approach I w

...

Route checking using CLI issue ?

Hello,

We are using PA3020 in L3  A/P cluster mode. PanOS is release 5.0.2.

We are using static routes to reach our different subnets.

When trying to check a route destination to verify the path using the CLI, nothing is shown as there was no route for

...

ldormond by L3 Networker
  • 1554 Views
  • 3 replies
  • 0 Likes

Current situation with Dropbox?

Hi,

what is the current "state" with PAN firewalls when it comes to decrypting Dropbox traffic? I found a lot of threads on the forum, some with contradicting information. It was said that Dropbox was put on an internal ssl-exclude list so the firewal

...

Resolved! Packet Capture stopped working

Hi,

the last days I did some captures on a PA-2020. At Yesterday I tried again but it doesn't work anymore. Tried via WebGUI and CLI.
If I start the capture it is shown running but no files are created. PAN-OS is 4.1.12.

Does anybody know this issue? C

...

JoergK by L2 Linker
  • 4513 Views
  • 9 replies
  • 1 Likes

Resolved! RADIUS and CISCO ACS v5.1

Hello!

Is it possible to configure the PA to read the RADIUS logs in Cisco ACS v5.1? Can the PA map users which have authenticated to a RADIUS server, the external DB being AD?

Resolved! Palo Alto drops current local login when using RDP

Hi!

We are currently using a PA500 appliance using User ID Agent on Windows Server 2008 R2.

My profile account (ex. super_user) is exempted to all which means I have no restrictions in accessing any websites.

Apparently, when I RDP our servers I have to

...

mapfre by L0 Member
  • 919 Views
  • 2 replies
  • 0 Likes

Palo-Alto 500 replace bluecoat proxy server

Hi gues!

LAN -> Bluecoat | Palo-Alto -> Internet

Is any one have an experiance with raplace bluecoat proxy server with palo-alto.

Is palo-alto can be proxy server for network?

Please share your experiance.

Thanks in advance.

Ulugbekyu by Not applicable
  • 2335 Views
  • 4 replies
  • 0 Likes
Top Solution Authors
Top Liked Authors