General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

Panorama - Webinterface not Working

Hi guys,we noticed that the web interface of our panorama VM is "broken". I am able to reach the https://<panorama> site and I am also able to log in but the next page is not displayed. Only a white site will be displayed.ssh login is possible.I already reverted to old configs, old and new version (6.0.5 was installed, tried 6.0.0, 6.0.6 ...

Upgrade to 6.1.1 and problem with Vulnerability Protection profile

Hi guys,I had a problem with Vulnerability Protection profile.I created Custom Vulnerability signature with exception for only one (1) IP address. But after upgrading to 6.1.1 version (from 6.0.5) this exception stopped working... I had to copletelywrite a new rule to exempt this IP from scanning...The signature was based on 40015 (SSH Brute-for...

Oleksandr by L3 Networker
  • 3241 Views
  • 3 replies
  • 0 Likes

PBF

What is the impact on firewall if we use only pbf instead of routing. how cpu intensive it can be? Is it a better option than routing, as in routing we are using fib table in the dataplane.

Westcon2 by L3 Networker
  • 3849 Views
  • 3 replies
  • 0 Likes

NAT - Tips and Gotchas?

PAN-200PAN OS 6.0.0.I've been directed to implement NAT on our PAN-200. Given that this will disrupt current traffic, I've scheduled tomorrow night to make it happen.I'm reading 'PAN-OS Administrator's Guide Version 6.0' - it seems reasonably straightforward.I'm about to dive into 'Understanding NAT-4.1-RevC'.Are there any gotchas, problems, bo...

bdunbar by L3 Networker
  • 4355 Views
  • 5 replies
  • 0 Likes

How can I change the language of GlobalProtect agent?

Dear all,GlobalProtect agent will select it's language automatically after version 2.0.0, sometimes customer want to use the specific language, e.g. English, how can I do? If anyone know that, please share me your experience, many thanks,Sample.

Sample by L1 Bithead
  • 8044 Views
  • 8 replies
  • 0 Likes

Resolved! Filter traffic from mobile devices

Hi,I was wondering if anyone has an idea on how to filter traffic coming from mobile devices. My scenario is that on our (open) guest wifi I would like to enable our users to do pretty much what they like from their mobile phones etc. but not let them have the same freedom just by undocking their laptops. Since we don´t pre-authenticate them to ...

mgusta by L2 Linker
  • 9682 Views
  • 12 replies
  • 0 Likes

Category Blocked, one site in Whitelist

Hi There,i my specific example i blocked the category Online-storage and Backup but white-listed www.slideshare.net. But apparently slideshare.net looks like crap. I guess it's because of restrictions fromthe category but not pretty sure.The site seems to have problems with CSS cause i can see the content, but without any style. Anybody of you e...

MFB123 by L1 Bithead
  • 11036 Views
  • 12 replies
  • 0 Likes

Panorama Commited configs

I have an issue to where when I go to export configurations it shows last commited config from 6 months ago ;however, there have been several commits executed. Is this a bug ?

Resolved! cache poisoning issue

we are planning to deploy more Palo alto devices throughout our enterprise and were thinking of removing our existing Cisco ASA's. Our Cisco rep got word of this and met with us on why we should still keep the ASA's and go with their new products. He mentioned that the Palo Alto device is susceptible to the use of cache poisoning to bypass its s...

Resolved! Wildfire Alerts Seem too quiet

Hello all.Just a sanity check question - I am wondering why my WF Alerts seem to have slowed to nothing the past few days, when normally we get at least one and usually more.My fear is because of the holiday season, the folks dealing with Wildfire are off. Perhaps it's paranoia, but I am wondering if anyone else has experienced a sharp dropoff i...

JKennedy by L0 Member
  • 3058 Views
  • 2 replies
  • 0 Likes

Mgmt webgui kicks me out since panos 6.0

Wanted to see if anyone else has had this issue. Ever since our clients have been updated to PANOS 6, the webgui will periodically kick you back to the login screen. This seems to happen in both Chrome and FF. It still happens with 6.0.4. We see this on 200s, 500s, 2000s and 3000s. Has anyone else run into this? Is it a known bug?

SDorsey by L4 Transporter
  • 8003 Views
  • 12 replies
  • 0 Likes

How to catch computer that is trying to 'cheat google'

Hi,I have a 2050 in tap-mode connect to a customers network, this to try and catch on or several computers that are trying to alter google statistics.The problem is that google give all the users a captcha before the can do any searches. Any one have any recommendations in how to filter out this traffic? RegardsHugo

NTP Vuln - Cert VU#852879 / CVE-2014-9295

Network Time Protocol Vulnerabilities | ICS-CERThttp://support.ntp.org/bin/view/Main/SecurityNoticeaccess.redhat.com | CVE-2014-9295http://arstechnica.com/security/2014/12/attack-code-exploiting-critical-bugs-in-net-time-sync-puts-servers-at-risk/

  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels