General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Public Interface - two SSL VPNs and VPNS site-to-site is possible ?

I have one interface external configured with one public IP address and many VPN site-to-site with many customers on this interface and a VPN client for the corporate user. I wish configure new SSL VPN client-to-site for another customer in this same interface . It is possible ? Do you have a manual for this configuration ?best regards ,Paulo Aun

Resolved! Single Public IP Address NAT to 2 Different DMZ IP Addresses Depending on Source IP

Here is the problem to be solved:I have a single public IP address (example: 1.1.1.5) that is currently NATs to a single DMZ address (example: 192.168.1.11). I need to create a NAT rule that will continue to send all traffic on all ports to 192.168.1.11 address unless the traffic is coming from a specific address, for instance 2.2.2.2.In other w...

jlarson by L0 Member
  • 4362 Views
  • 2 replies
  • 0 Likes

Resolved! PA with proxy, user logging in traffic log

Hi there,we’re running the following setup on PAN-OS is 6.1:client-pc|pa-dmz|proxy|internetcitrix-server|pa-dmz|proxy|internetUser-ID Agent is collecting IP>User mapping.We’re logging only Deny events in the traffic log.We want to achieve the following:When User A tries to open a website/app which is not allowed, we want to see in the traffic...

Global Protect

Hello All,Need your help in understanding Global Protect license.Customer has PA-500 and it supports only 100 SSL VPN connections.Is it possible to upgrade the number of SSL VPNs to above 100,200 upto 500 by procuring GP license.Thanks.

tac.in by L3 Networker
  • 3768 Views
  • 4 replies
  • 0 Likes

DHCP Server in PA

Hi,I have a client who has configured DHCP server in its Catalyst6500, he has configured 35VLAN aprox with dhcp server in each one. They have having problems in C6500´s CPU because of DHCP and a bug in this switch. Could they configure 15 VLAN in the PA and PA does the role of DHCP server?????Could the PA´s CPU rises up a lot, and perfomance goe...

SOC_CSG by L4 Transporter
  • 3393 Views
  • 4 replies
  • 0 Likes

Upgrade PanOS 6.0.5 and UserID

Hi, we have a cluster PA-2050 with PanOS 5.0.8 and UserID agent version 4.1.6-5. We are going to do an upgrade to a PanOS 6.0.5. Is there any critical issue in this 6.0.5??? Its necessary update the User-id agents too????? we dont want to update at least there are an incompatibility between PanOS 6.0.0 and agents 4.1.6-5....thanks

SOC_CSG by L4 Transporter
  • 3323 Views
  • 4 replies
  • 0 Likes

Using a VM100 at the perimeter

Hi,We are looking at deploying a VM-100 at the perimeter of our network. We currently have a PA-500 doing that job. It is incredibly slow on the management side of things and quite frankly, expensive when it comes to support renewals. Hence the thought of going to a VM-100. Our supplier has told us that Palo Alto does not recommend a Virtual ...

VM100 keeps rebooting

Hi all,We have a Palo Alto VM-100 running under ESXi 5.0 which up until this week has been rock solid. On Monday it rebooted itself. No config changes had been made for almost a month prior to this. It also rebooted itself twice yesterday and once so far today.The messages in the log are as below. Order is from bottom to top.Autocommit job f...

DavePalo by L4 Transporter
  • 11277 Views
  • 11 replies
  • 0 Likes

Memory usage

The device model is 3020.From the output of >show system resources, we have found that the memory usage is 3781100kIs it alarming high memory usage?

tac.in by L3 Networker
  • 6489 Views
  • 4 replies
  • 0 Likes

PA Functionality Question: Log NTLM Header

Hi Guys,With a PA-3020, can I log the NTLM username of an authenticated HTTP request?The situation:PA firewall is located between end users and proxy serverProxy provides NTLM authenticationCan I log the username of each NTLM authentication requestThanks,Cheers,Mel

MelLi by L2 Linker
  • 3392 Views
  • 2 replies
  • 0 Likes
  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels