General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Globalprotect terminating in its own vsys?

I'm trying to setup GlobalProtect to terminate in its own VSYS (for administrative purposes), i.e the Portal and Gateway should reside in its own VSYS and not in my external vsys.

But I would like to be able to use the same physical interface as the e

...

HansH by Not applicable
  • 1793 Views
  • 1 replies
  • 0 Likes

domain filtering

Hello, I have a big network with thousands of systems, I have 3 domains  , I want to know and log  all access from outside off my network to any inside server that the url is  different to *.mydomain.com.

If i use url filtering and in block I put * an

...

javalero by L0 Member
  • 1851 Views
  • 2 replies
  • 0 Likes

Security rule for url filtering - best practices?

I would like to know what is the impact, if any, when configuring a security policy with allow action and associate with a url filtering profile if we use application as any or application set to web-browsing.

I understand the url filtering is only ap

...

Borgiani by L0 Member
  • 1793 Views
  • 1 replies
  • 0 Likes

License for IPsec and SSL VPN

Hi all,

  I need to know if we need a license to acivate or configure site to site VPN ( i.e: between Cisco ASA and PaloAlto), and also for remote client (ssl vpn). if it's possible can someone please help me with the procedure to follow for these two

...

Lahcen by Not applicable
  • 9040 Views
  • 1 replies
  • 0 Likes

Resolved! License for IPsec and SSL VPN

Hi all,

  I need to know if we need a license to acivate or configure site to site VPN ( i.e: between Cisco ASA and PaloAlto), and also for remote client (ssl vpn). if it's possible can someone please help me with the procedure to follow for these two

...

Lahcen by Not applicable
  • 3730 Views
  • 1 replies
  • 0 Likes

Stats Discrepancy in the ACC

Has anyone else noticed this?

Go to the ACC and sort it by Bytes (I believe this trick works regardless of the sort criteria, but it’s easiest to see this way). Make a note of the top three or so values

Next, Click on one of these, I picked the top: we

...

djr by L4 Transporter
  • 2358 Views
  • 4 replies
  • 0 Likes

Strange VPN behaviour

Hi all!

Some of my colleagues have problems accessing certain services like TFS, Intranet, and Office 365(outlook, lync) through VPN. The weird thing is that for others it might work either 100%, 50% or whatever feels right that day, it seems.
What cou

...

Palo-Alto upgradation From 5.0.x to 6.0.x

Hi All, We are having PA-5050 & and PA-3020 model running on software version 5.0.8 & 5.0.9 and we are planing to upgrade it to 6.0.2. We firewall is running in Active/ Passive cluster. Please any one help to know the processes and suggest which vers

...

Sourabh by Not applicable
  • 1524 Views
  • 1 replies
  • 0 Likes

site to site vpn qestion

We're moving from Checkpoint to PAN. For site to site vpns, I'm assuing i should set up a logical subinterface? How do you ensure its floating/shared in an HA cluster?

dvlacic by Not applicable
  • 1987 Views
  • 2 replies
  • 0 Likes

Frustration with threats from PA

Is anyone else frustrated with PA's approach to threats and threat signatures?

Prime example: "Netbios Small Piece Data Evasion Attack Vulnerability" - signature ID 33511, link to the Threat Vault: https://threatvault.paloaltonetworks.com/Home/ThreatD

...

Does Panorama M-100 support more than 100 devices?

Looking to manage more than 100+ devices (around 300 device). is the M-100 able to meet this requirement?

below is my current planning setup:

M-100 (panorama mode) <--------------------------> 100+ PA box

or do i required another M-100 box as log colle

...

afiq by L1 Bithead
  • 3464 Views
  • 4 replies
  • 0 Likes
  • 24130 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels