General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Threat Vector, a Unit 42 Podcast, is Now on LIVEcommunity!

We have some exciting community news to share: Threat Vector, a Unit 42 podcast, is now on LIVEcommunity!

 

Threat Vector is your compass in the world of cyberthreats. Listen to this biweekly podcast to learn about unique threat intelligence, cutting

...

jforsythe by Community Team Member
  • 309 Views
  • 0 replies
  • 0 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3652 Views
  • 2 replies
  • 14 Likes

Port Forwarding

I am trying to create a webpage to display the video stream of two of our IP Cameras.

The page works perfectly from inside the network but not from outside the network.

I think I need to set up some kind of port forwarding rule on my Palo Alto and then

...

Resolved! Palo High vulnerability issue.

Dear,

the palo's on our public internet are being scanned for vulnerabilities and other open issues. Last week scanning a issue regarding "OpenSSL ASN.1 Parsing Vulnerabilities port 443/tcp over SSL" on the portal website of the Palo for ssl-vpn acce

...

gejac by Not applicable
  • 8741 Views
  • 8 replies
  • 1 Likes

Block a specific spyware

Hi All,

I just want to ask how can we do a spyware blocking. We want to block mariposa spyware but i tried to configure the policy but it does not deny it.

Thanks.

TSPI by L1 Bithead
  • 2125 Views
  • 1 replies
  • 0 Likes

Weird problem with SSL VPN traffic

Hi folks,

We have two PA firewall pairs.

We have two three VPN systems behind the firewalls -- 3SP SSL-Explorer, Barracuda SSL VPN and Windows PPTP VPN.

We've had a problem over the last week where the SSL VPN systems wouldn't load their client Java app

...

Resolved! Disable Admin Accounts

Is there a way to disable FW admin accounts?  Let's say we have a situation where we have consultants who come on site and we only want to enable their access for certain periods of time and then disable them after the engagement is complete.  Is thi

...

mark_dy by L1 Bithead
  • 5281 Views
  • 4 replies
  • 0 Likes

Resolved! Captive portal - time out

Hello

Where I can change the time when a user enters for captive portal? Caduceus do not want the user session. I have a PA500 Software version 5.0.4

Thank you very much.

PA to Cisco 5505 VPN tunnel

When trying to configure a site to site VPN tunnel from a PA 3020 to a Cisco 5505 firewal I am getting th following messages on the Cisco firewall

received encrypted packet with no matching sa dropping

all ipsec proposals found unacceptable

infotech by L4 Transporter
  • 7575 Views
  • 22 replies
  • 0 Likes

VPN Tunnel Monitoring

What is generally used for a tunnel interface IP?  Can it be arbitrary or must it be an IP that is part of the tunnel?  I've read the docs on the site, but they don't say all that much about the interface IP itself.

Thanks!

iguarino by L0 Member
  • 2524 Views
  • 3 replies
  • 0 Likes

Testing Wildfire Java Detection

We have a Wildfire license and I'm trying to confirm that it is correctly evaluating Java files.

Currently - even though I've (as far as I'm aware) setup everything correctly, I am not seeing any forward actions in the Data Filtering log for downloade

...

apackard by L4 Transporter
  • 1152 Views
  • 0 replies
  • 0 Likes

Resolved! Need help in CLI command

Hello

I have to make some order on my PAN device.

I'm looking for CLI command:

- that will show me all addresses and groups defined on my device

- that will show me all services and groups defined on my device

- how to list aplications from one policy and

...

_slv_ by L4 Transporter
  • 3181 Views
  • 5 replies
  • 0 Likes

Spoofing/Teardrop signatures and logging

Hi Guys,

I’m trying to setup log forwarding for IP spoofing/teardrop signatures in a configuration using virtual-wires. Is this something that gets logged by default in the Threat logs? Or do I need to do some additional configuration?

Thanks,

Omar

Omarr by L0 Member
  • 1368 Views
  • 0 replies
  • 0 Likes

Not packet returned via subinterface

Lan2(trust zone-172.16.10.0/24)-> internal  -                switch from trunk->       (eth1/1-172.16.10.100)PAN FW(eth1/2-192.168.1.104/24)->(192.168.1.1/24) DSL modem(untrust)

Lan2(trust zone-172.16.20.0/24)->connected thro. mpls ->                 

...

Javith by L3 Networker
  • 1611 Views
  • 3 replies
  • 0 Likes
  • 24185 Posts
  • 100 Subscriptions
Top Liked Authors
Labels