General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4225 Views
  • 0 replies
  • 0 Likes

Resolved! Wildfire Double Ring - Perimetral Network External / Internal

Hello, :smileyinfo:We have a double ring structure and we are trying to implement the most appropriate settings for the Wildfire, according to the scenario that we have.-A Cluster 2 firewalls External *OUT* Model PA-500 WildFire Version 52587-59292 (02/02/15)-A Cluster 2 firewalls Internal *IN Model PA-2050 WildFire Version 52588-59293 (02/...

SOC_CSG by L4 Transporter
  • 2925 Views
  • 2 replies
  • 0 Likes

block tor

Hi,please tell me, how can i block tor in pa device,i create a rule with tor and tor2web , i set action to block but it is still runnning , it block skype tooIS that normalthank's in advanceRegards,

atelcom by L3 Networker
  • 6174 Views
  • 6 replies
  • 0 Likes

RIP over VPN tunnel

Will RIP run over a VPN tunnel? I have a site to site to site VPN tunnel set up and an IP address set on my tunnel interface. I can ping the remote tunnel interface but I do not see the remote tunnel interface as a peer under RIP.

source user showing as unknown in traffic monitor

Found an issue on a customer's firewall. For some reason, the “source user” becomes unknown while students are using a web application called Istation. When that happens, the web traffic for that IP address becomes blocked by another policy. She wrote a specific policy for Istation traffic even if the user is unknown to resolve this issue. ...

GlobalProtect Client - connection establishment speed

Hi there,we're experiencing a not-really fast connection establishment from the GlobalProtect client; with client cert and user credentials for authentication.When the computer has been restarted it can take up to 25 seconds. A re-connect later takes approx. 10 seconds.Currenty we're using the CheckPoint Client for VPN (credentials only), and th...

485-2569 Dynamic Updates issue?

Anyone noting a large increase in triggering of following threat ID's after this Update (485-2569) was applied? ( threatid eq 36485 ) - OpenSSL SSL/TLS MITM vulnerability( threatid eq 36420 ) - OpenSSL TLS Heartbeat Information Disclosure Vulnerability - Reverse HeartbleedI've rolled it back as it was dropping a lot of HTTPS traffic for sites th...

jar file blocked by Data Filtering

Hello together,i have the problem that a jar-file would be blocked and categorized as a "Microsoft PE File". The PE Files are blocked by a "File Blocking Profile", thats okay, but jar files actually not blocked in that profile??? And i think this jar file shouldn't categorized as a PE File???Perhaps somebody has similar problems.Any suggestions?...

ITSama by L2 Linker
  • 4905 Views
  • 3 replies
  • 0 Likes

Resolved! I can not access a website

Hello. I have a PA500 with firmware 6.0.7 In the Monitor menu - URL Filtering, I can see that the site is allowed, but the computer can not see. Connected directly to a modem see the page if it is working. How can I solve this problem? Thank you very much.

Panorama Save Devices

Is there anyway to save all devices from Panorama after a commit? I'm currently changing contexts in Panorama to each individual device and saving them that way, kind of a pain.Thanks!

Creating a scheduled report in GlobalProtect to see a VPN logins

Dear all,i have searched for a while now and was reading through the documentation. Unfortunately I didn't find anything.I would like to now if it is possible to get a report created which fulfills the following criteria:- logs all VPN logins done by the users- is sent out automaticly on a given timeThanks and regards,Rene

Rboehme by L2 Linker
  • 1872 Views
  • 1 replies
  • 0 Likes

URL Categorization reference and examples

HelloI'm trying to get information and URLs of examples for the following categories:CategoryActioncheatingallowdead-sitesallowdynamically-generated-contentallowgrossallownot resolvedallowprivate ip addressallowproxy avoidancealertquestionableallowURL/IP Lookup | Webroot BrightCloudThis information is necessary to determine what action to take a...

SOC_CSG by L4 Transporter
  • 4415 Views
  • 2 replies
  • 0 Likes

Resolved! captive portal authentication failed LDAP

Hi ALL,I'm really stuck with this, i spend all day tryng to inderstant why the authentication failed when i'm using LDAP,the configuration seems to be okay,Could you please check,when i try to authenticat with an AD acount , i put abc\sarah and the passwordi get an error that the username and password are incorrectplease fin in attach the screen...

atelcom by L3 Networker
  • 6907 Views
  • 6 replies
  • 0 Likes

HA Active/Passive - Failover issues

Hello,PAN-OS 5.0.8I have a cluster of two firewalls in high availability HA. Today have switched (failover) and I do not understand Why?.And I would like to know what could cause this?I have reviewed the system logs, I do not see previous logs to restart. Is this normal?Can I recover previous system logs to restart?Is there any way to see a hist...

SOC_CSG by L4 Transporter
  • 18653 Views
  • 7 replies
  • 0 Likes

Public Interface - two SSL VPNs and VPNS site-to-site is possible ?

I have one interface external configured with one public IP address and many VPN site-to-site with many customers on this interface and a VPN client for the corporate user. I wish configure new SSL VPN client-to-site for another customer in this same interface . It is possible ? Do you have a manual for this configuration ?best regards ,Paulo Aun

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels