General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 778 Views
  • 0 replies
  • 0 Likes

Resolved! Logging stopped in Pan OS GUI

Hi all,

We had an issue today where we noticed the logging data stopped displaying in the Pan OS GUI (PA-500).. One thing we noticed is after committing a config change, it looks like the firewall was in the process of doing a sync with the backup dev

...

bino150 by Not applicable
  • 16166 Views
  • 19 replies
  • 0 Likes

Havex Malware

Hi all,

Do you have any information about PAN detection capability for the Havex malware family: http://www.f-secure.com/weblog/archives/00002718.html

Threat vault seems to produce no hits at the moment.

Tuomo

Tuomo by L1 Bithead
  • 12425 Views
  • 26 replies
  • 1 Likes

Resolved! LAGG Interface Documentation

Hello,

Is there any documentation about how to configure a LAGG interface in PAN-OS 6.0?

I’ve read through the administrators guide, and did a search on the PA documentation web site, and I couldn’t find anything.

Thank you,

--

Rick

Resolved! Transitioning from Trial URL Filtering to Paid

I am currently using a trial of the URL filtering license and have made the purchase for the full license.  Does anyone happen to know if it's a seamless transition from the expired trial to the full license with out any interruption?  To initially e

...

cmateam by L3 Networker
  • 6525 Views
  • 9 replies
  • 0 Likes

Split tunneling on iOS

Playing around with IPSec VPN on a PA-500 for my mobile users. On iOS, it's working fine with the built in IPSec VPN client, but split tunneling is not supported. I'm wondering if this feature is available if I use the GP client app instead of the bu

...

PatrickD by L1 Bithead
  • 6010 Views
  • 5 replies
  • 0 Likes

Commit fail error "Duplicate user name"

Hi. all..

I Have a question about User-id.

I am configured LDAP setting about PA-2050.(OS Version 4.1.9)

Sometimes I saw the messages about  commit fail error when I set up a user-id through security policy.

The error message is "duplicate user name".

I g

...

insuyoon by Not applicable
  • 4049 Views
  • 5 replies
  • 0 Likes

ipsec vpn issue

I configured ipsec vpn with palo alto to checkpoint.

pinging isp:

local/external ip(182.x.x.x) to peer ip(102.x.x.x) ping successful.

pinging local network to peer ip:

local pc(10.10.10.x) to peer ip(102.x.x.x) ping unsuccessful..tracert confirm drops on

...

Javith by L3 Networker
  • 2956 Views
  • 2 replies
  • 0 Likes

Active/active ha config

Hi All,

my req:

isp 1 4mbps(untrust) ->pa 500a->(trust)cisco switch l3a->

isp 2 4mbps(untrust)->pa 500b->(trust)cisco  switch l3b->    same web servers but using  isp 1 &2 public ip's(redundancy purpose) to do static s-nat for web servers

external users

...

Javith by L3 Networker
  • 3101 Views
  • 2 replies
  • 1 Likes

New Flash volnureability! (CVE-2014-4671)

Hello

According to Adobe Security Bulletin its serious volnureability, when we can expects protection on PAN?

At the moment on https://threatvault.paloaltonetworks.com/ I can't find CVE-2014-4671

Regards

Slawek

_slv_ by L4 Transporter
  • 2429 Views
  • 4 replies
  • 0 Likes

Resolved! job ACT PEND 98% - stuck

Hi

I have a schedule to download and install antivirus settings, but now I can't commit any changes.

show jobs all ->

2012/03/24 04:09:36        2614        Antivirus       ACT   PEND        98%

clear job id 2614 ->

Server error : Cannot stop job 2614 at

...

FlexyZ by L3 Networker
  • 6875 Views
  • 4 replies
  • 0 Likes

Requirements to alert an threat

Hello,

is there any possibility to get any information about the requirements for detecting an specific threat.

e.g. there is Signature ID : 13457 EBURY, what is this signature looking for ?

Do I have to decrypt anything on the PA to give a deeper look

...

ralf_hanl by Not applicable
  • 2414 Views
  • 3 replies
  • 0 Likes

PAN GlobalProtect 2.0.3 doesn't work

So, I activated GlobalProtect 2.0.3 yesterday and have found that it fails to connect. The user will click "Connect" and the globe will spin for about 30 seconds then it closes itself and reopen on the taskbar(icon disappears and reappears). I am cur

...

jbo by L0 Member
  • 3087 Views
  • 4 replies
  • 0 Likes

HA-HA group mappings not passing to secondary PANOS 6.03

Hello,

I have group mappings present on the Primary Firewall, not passing to the secondary Firewall.  Specifically for a new gorup created today.  I have tried the various debug refresh commands on both boxes to attempt the get the seocndary box to pu

...

jbabcock by Not applicable
  • 2779 Views
  • 4 replies
  • 0 Likes
  • 23986 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels