General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4234 Views
  • 0 replies
  • 0 Likes

Resolved! Filter traffic from mobile devices

Hi,I was wondering if anyone has an idea on how to filter traffic coming from mobile devices. My scenario is that on our (open) guest wifi I would like to enable our users to do pretty much what they like from their mobile phones etc. but not let them have the same freedom just by undocking their laptops. Since we don´t pre-authenticate them to ...

mgusta by L2 Linker
  • 9837 Views
  • 12 replies
  • 0 Likes

Category Blocked, one site in Whitelist

Hi There,i my specific example i blocked the category Online-storage and Backup but white-listed www.slideshare.net. But apparently slideshare.net looks like crap. I guess it's because of restrictions fromthe category but not pretty sure.The site seems to have problems with CSS cause i can see the content, but without any style. Anybody of you e...

MFB123 by L1 Bithead
  • 11226 Views
  • 12 replies
  • 0 Likes

Panorama Commited configs

I have an issue to where when I go to export configurations it shows last commited config from 6 months ago ;however, there have been several commits executed. Is this a bug ?

Resolved! cache poisoning issue

we are planning to deploy more Palo alto devices throughout our enterprise and were thinking of removing our existing Cisco ASA's. Our Cisco rep got word of this and met with us on why we should still keep the ASA's and go with their new products. He mentioned that the Palo Alto device is susceptible to the use of cache poisoning to bypass its s...

Resolved! Wildfire Alerts Seem too quiet

Hello all.Just a sanity check question - I am wondering why my WF Alerts seem to have slowed to nothing the past few days, when normally we get at least one and usually more.My fear is because of the holiday season, the folks dealing with Wildfire are off. Perhaps it's paranoia, but I am wondering if anyone else has experienced a sharp dropoff i...

JKennedy by L0 Member
  • 3111 Views
  • 2 replies
  • 0 Likes

Mgmt webgui kicks me out since panos 6.0

Wanted to see if anyone else has had this issue. Ever since our clients have been updated to PANOS 6, the webgui will periodically kick you back to the login screen. This seems to happen in both Chrome and FF. It still happens with 6.0.4. We see this on 200s, 500s, 2000s and 3000s. Has anyone else run into this? Is it a known bug?

SDorsey by L4 Transporter
  • 8232 Views
  • 12 replies
  • 0 Likes

How to catch computer that is trying to 'cheat google'

Hi,I have a 2050 in tap-mode connect to a customers network, this to try and catch on or several computers that are trying to alter google statistics.The problem is that google give all the users a captcha before the can do any searches. Any one have any recommendations in how to filter out this traffic? RegardsHugo

NTP Vuln - Cert VU#852879 / CVE-2014-9295

Network Time Protocol Vulnerabilities | ICS-CERThttp://support.ntp.org/bin/view/Main/SecurityNoticeaccess.redhat.com | CVE-2014-9295http://arstechnica.com/security/2014/12/attack-code-exploiting-critical-bugs-in-net-time-sync-puts-servers-at-risk/

My Wish for Christmas - Commit Confirmed Feature

We are newish to Palo Alto, and always working remote ( I’m based in a NOC ), other vendors have the feature were its possible to commit a config and if this is not confirmed after a period of time, the config rolls back. I cannot tell you the peace of mind this gives us that in the worst case scenario we will not find ourselves locked out of ...

wingnut by L0 Member
  • 2337 Views
  • 2 replies
  • 0 Likes

QoS Configuration for Small Upload Pipe

I am configuring QoS on a PA200 for a remote site that only has a 768Kbps upload pipe. When it comes to PA and QoS, there are a ton of config options. I just want to make sure I am configuring the correct ones.These are my goals:- RTP traffic(for VoIP and Video Teleconferencing) to have the highest priority of all traffic. When the pipe is co...

jambulo by L4 Transporter
  • 3823 Views
  • 2 replies
  • 1 Likes

EBL can be seen by PA3020 in GUI, but cannot be read in CLI

I have a pair of 3020s (configured for Active-Passive availability) and I'm trying to build an External Block List. I followed the documentation at Working with External Block List (EBL) Formats and Limitations. My EBL text file looks like this:nnn.nnn.nnn.nnn 20140514 144338where nnn is the octet of an IP address. There are several lines like t...

efritz by L1 Bithead
  • 5168 Views
  • 5 replies
  • 0 Likes

SSL VPN DMZ access issue

Hi Friends,I have configured SSL vpn with AD integration but i am not able to ping DMZ. i have all ready configure access route. please suggests what i need to do in configuration. or where i am missing.RegardsSatish

Satish by L4 Transporter
  • 5232 Views
  • 9 replies
  • 0 Likes

Wildfire Signature creation

Can someone share some facts about the process of the WF signature creation. It was promised by PAN to have a signature ready after 15Mins. a sample has been identified as malicious (Verdict Malware). My observation is that it usually takes much longer than that. We do have a WF subscription.Example in the screenshot below.

gafrol by L4 Transporter
  • 7746 Views
  • 9 replies
  • 0 Likes
  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels