General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 93 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 799 Views
  • 0 replies
  • 0 Likes

Unknown File Types

Hi all,

we like to block or be alert when the file types .edrw and .easm (eDrawing) are passing the PA. Currently nothing is shown in the Monitoring Data Filtering.

Any idea how to get PAN to update file types in security profiles? Can I somehow report

...

Hithead by L4 Transporter
  • 4035 Views
  • 5 replies
  • 0 Likes

NAT Performance Issue

Hi All,


I recently migrated a client from a Fortinet firewall to a PANW.  Most of the Virtual IPs from the Fortinet were migrated as bidirectional Source NATs.


One specific server had issues where outside traffic would intermittently not be able to con

...

Resolved! USER ID Issues

Hi All,

My name is Paul Mathew and I am working as a Network Engineer at American School of Dubai, in UAE. Our environment is 99% MAC and IOS devices, and some of you were aware of Mobile Account concept in MAC. Let me explain briefly about it. Mobile

...

ajay by Not applicable
  • 8763 Views
  • 10 replies
  • 2 Likes

FILE BLOCKING NOT INSPECTING ZIP CONTENT

Hello everyone,

I'm trying to block download of CPL files (PE) using a file blocking profile. We are trying to create it in a way which assures that even zipped CPL Files will be blocked.

We created the profile but it did not work on HTTPS sites, just

...

Resolved! GlobalProtect and OS X 10.10 (Yosemite)

Hello,

some of my colleagues are testing OS X 10.10 and the global protect client does not work. I read that Apple changed something with their signatures and when I take a look into the info.plist of the GlobalProtect Client it looks like this softwa

...

Same QoS Profile Applied to Multiple Interfaces?

I have a single QoS profile applied to a pair of internal interfaces as seen in the screenshot below:

In this case, will the two internal interfaces have a single shared maximum egress number or will the full maximum egress apply to each interface sep

...

Resolved! Some advise

Hi there,

I am trying to deploy a network that is connected directly to my PA box over a wifi connector and I am hitting some stumbling blocks. I wondered if someone might be able to offer any advise.

The scenoria is this.

I have an office that is conne

...

JRussell by L3 Networker
  • 3454 Views
  • 5 replies
  • 0 Likes

PAN-OS 5.0.6 SNMP

server:~ leo$ snmpget -M /usr/share/snmp/mibs -m ALL -Pu -v3 -a SHA -A xxxxxxx -l authPriv -u nagios -x AES -X xxxxxxx 10.48.1.10 `snmptranslate -On PAN-COMMON-MIB::panSessionMax`

PAN-COMMON-MIB::panSessionMax = No Such Instance currently exists at th

...

Teamviewer application not allowed by policy

I'm encountering a strange situation where teamviewer is not allowed by the policy in which it is defined but is instead blocked by my clean up rule.

I have all the dependencies matched but for some reason the firewall does not match on the rule where

...

tajman by L1 Bithead
  • 5707 Views
  • 4 replies
  • 0 Likes

Resolved! 6.0.4 group mapping issue?

I started running into this group mapping issue after update a client to 6.0.4.

We have a policy which matches on an Active Directory group for SSLVPN and what they can access. The same A.D. group is used in the Kerberos authentication profile to aut

...

SDorsey by L4 Transporter
  • 2240 Views
  • 1 replies
  • 1 Likes

Policy schedule end notification

I have a policy scheduled to run for 50 days, is there a way to get a notification at the end of the schedule time period when the policy goes inactive/disabled?

jlg by L0 Member
  • 2436 Views
  • 4 replies
  • 0 Likes

Agentless User ID problems with IPv6

We are using an agentless user id system with four domain controllers. IPv4 and IPv6 is used inside and outside our organization. The PA box fails to identify users that run IPv6. Turning off IPv6 on the Windows clients fixes the problem. The problem

...

rlawsha by L1 Bithead
  • 2528 Views
  • 4 replies
  • 0 Likes
  • 23993 Posts
  • 115 Subscriptions
Top Liked Authors
Labels