General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4223 Views
  • 0 replies
  • 0 Likes

Resolved! FTP Server: No Allow policy but 3-Way-Handshake and Username prompt possible?

There is no allow policy from Untrust to DMZ to contact the FTP Server.There is an deny policy instead as a last policy between ZONE Untrust und ZONE DMZ.But if I try to connect to FTP Server a connection is estabilished and my FTP Server asks for a Username.This is the end of communication - but is anyone allowed to connect to my FTP Server?Roman

rkra by L2 Linker
  • 4975 Views
  • 7 replies
  • 0 Likes

Resolved! Could I use a Asian 2 bytes charset on CLI when I configure?

HelloI tried to configure on CLI using 2bytes Asian charset as below.As you see below when I configure 2bytes Asiasn charset to description column and then PAN showed error message is Server error : Malformed Request.So I questioned weather PAN could be configured using Asian charset on CLI or not.admin@PA1(active)# set rulebase security rules r...

Roh1 by Not applicable
  • 5026 Views
  • 3 replies
  • 0 Likes

Disable SSL - IPSEC only

Hi,a quick one: is it possible to disable SSL VPN at GP? So users can only connect via IPSEC...I know its possible to do it the other way but we like to have a IPSEC only portal/gateway.

Hithead by L4 Transporter
  • 10682 Views
  • 12 replies
  • 1 Likes

Resolved! URL Filtering Category is "Unknown"

guys,i have a problem in our Palo alto 5050, it shows a lot of URL websites with Category "unknown", although it shows the right category type on bright cloud website,any help ??,Regards,

ISA 2006 proxy replacement

I want to use my PA as a proxy for the internet and want to remove my current ISA 2006 proxy server. I was curious what methods others are using and if you have any detailed step by step instruction how to configure this.

infotech by L4 Transporter
  • 14575 Views
  • 30 replies
  • 0 Likes

big disparity between Detailed and Summary logs

I ran 2 Panorama reports, using the detailed and summary databases, on application usage over the last 24 hours (simple reports, just top Applications ranked by bytes, no filters) the results were completely different e.g the figures for web-browsing:Summary: 720GDetailed: 3.3TThe detailed figure looks correct, why is the summary figure so out o...

Resolved! Is there a global "enable SNMP" switch?

I'm trying to get some data about the amount of data on the interfaces.Device/ Operations/ SNMP configured, SNMPV2 enabled.SNMP on my Trust interface per IF Profile enabled.I still can not get SNMP Data.Roman

rkra by L2 Linker
  • 2881 Views
  • 3 replies
  • 0 Likes

Resolved! Decryption Policy - Blocking things such as Facebook

We recently discovered that due to Facebook now being https:// that my users can get out to Facebook when using Internet Explorer. This actually cause quite an issue due to a bug also getting in. How do I configure the decryption policy to get in to the session and block the traffic? From what I'm reading I have to configure this to block http...

kaysun by L1 Bithead
  • 2998 Views
  • 2 replies
  • 0 Likes

BrightCloud® Real-Time Anti-Phishing Service

Does anyone know if the BrightCloud® Real-Time Anti-Phishing Service works with Palo Alto NGFW's? (with the correct license of course?)BrightCloud Real-Time Anti-Phishing Service | Webroot BrightCloud

Smi12 by L2 Linker
  • 4222 Views
  • 3 replies
  • 0 Likes

Resolved! Suspicious DNS Query Pan-DB and BrightCloud

We are using the BrightCloud URL DB for URL Filtering. Last week we had discovered an issue that users can’t access the URL http(s)://www.haalmeeruitjecard.nl Searching the PaloAlto we see that is not blocked by the URL Log. BrightCloud says as URL Category “business-and-economy” and that is allowed.Still the session can’t be setup and we did no...

obor by L1 Bithead
  • 4633 Views
  • 4 replies
  • 0 Likes

high management CPU

Hi,my PA500 management CPU is 100%PAN OS release 5.0.2 (same problem with 5.0.1)If I reboot the firewall, management CPU usage goes down for some days than raise again to 100%

diennea by L3 Networker
  • 13752 Views
  • 13 replies
  • 0 Likes

Schedule a management restart

Hi,regarding GUI slowness I've a question:a lot of people suggest to restart management server.How can I schedule a night restart of it?Thanksregards

diennea by L3 Networker
  • 10163 Views
  • 13 replies
  • 0 Likes

6.0.2 Upgrade on 2050

I recently upgraded code to 6.0.2 on a 2050 and am experiencing significant packet drop issues (network becomes inaccessible). It is resolved when you reboot the device, but it only is resolved for about a day, and then goes back to dropping traffic, has anyone else experienced this or knows of a solution? (I also have a case open regarding th...

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels