General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! ThreatID references, or lack thereof

I frequently come across threat notifications where the info in the Threat DB is so sparse as to make the notification useless.Take for example my threatid du jour, 13742."This signature detects NUCLEAR.Gen Command and Control Traffic."That's it. Try googling around to see what this is all about.How do you go about filling in the missing blanks ...

MCmgt by L2 Linker
  • 3501 Views
  • 2 replies
  • 0 Likes

Managing Multiple Globalprotect Profiles

Any advice for managing multiple GlobalProtect connection profiles? My colleagues and I connect to several different sites and haven't found a great way to track the client info for each site outside of a spreadsheet or password manager.

Resolved! Configuring User-ID agent for e-Directory

Hi Guys,All this one year, I have configuring the User-ID agent for ADs but never encountered a situation where the User-ID agent has to be configured for e-Directory. I am pretty much sure that it would be straight forward and similiar to configuring it on the AD and the agent has a seperate section for e-Directory; but it would great if any o...

6.0.x - Stable?

We're on 5.0.15. Can't say it does anything wrong but there's always a point at which you feel compelled to upgrade.My rule of thumb has always been wait until the .07 release of any new PAN-OS - seems to be about when they're considered stable.So would anyone expect any significant issues moving from 5.0.15 to 6.0.8?My main interest is DNS Sin...

Resolved! disable SSL V.3

Hi Friends,how we can disable SSL V.3 only for management console on PA firewall.RegardsSatish

Satish by L4 Transporter
  • 6503 Views
  • 7 replies
  • 0 Likes

How to determine memory in PA-500

We recently bought a PA500, and we've been annoyed at how slow it is to commit its config. We mentioned this to our SE the other day, and he explained that there was a memory upgrade available.We're not sure if we have 1GB or 2GB of memory, and I'd like to find out - can anyone explain how to tell if we have the upgrade?Thanks

No traffic logs in PA-VM

I just deployed a PAN-VM and everything is working except I don't have any traffic logs for some reason but I do have ACC, System and Conguration logs. The only thing I can think that may cause issues is the fact that the box is not licensed yet as I'm just testing it out. Is this why? An unregistered PA-200 logs traffic data though so I find th...

x by L1 Bithead
  • 9241 Views
  • 7 replies
  • 0 Likes

Antivirus-1470-1943

Our 3020 PA got updated with new AV definition this morning. Since then it is marking all Flash as Virus/Win32.generic and dropping it for all users. But we are not getting any complains from end users. We tried some sites with flash content and had no problem playing flash video. It appears the firewall is not really denying it, but logs it as...

awarsame by L1 Bithead
  • 6124 Views
  • 9 replies
  • 2 Likes

CVE-2015-0310

Model# of the device: PA-5020 Serial# of the device: 0011C103358 Current PANOS version: 5.0.4 Customer requires information that whether CVE-2015-0310 will have an impact on the PANOS version or not and if yes then is there any patch available?An exploit for CVE-2015-0310 exists in the wild, which is being used in attacks against older version...

tac.in by L3 Networker
  • 3626 Views
  • 5 replies
  • 0 Likes

DNS Spyware Vulnerabilities - Why aren't the FQDNs in Malware Category?

Today I switched on the "strict" Spyware anti-spyware policy on my outbound Domain Controller DNS policy - I'm seeing a lot (I mean a lot) of requests blocked for things like advertising networks.Here are 3 DNS queries that were blocked, and they're indicative as I've picked them at random:d.audienceiq.comd.p-td.comp.adsymptotic.comThose flag as...

  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels