General Topics
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics

Discussions

Thank You for Filling Out the LIVEcommunity Experience Survey!

If you've visited LIVEcommunity anytime recently, you've probably seen a pop-up asking for your feedback. We've deployed this survey since April 2020 for new and returning visitors alike as a way to gather feedback from our users. 

 

In the past six

...

survey-livecommunity.png
jforsythe by Community Team Member
  • 484 Views
  • 1 replies
  • 4 Likes

issue with uturn nat, please help!

Hi All

I have a u turn nat rule and security policy in place that has been working fine to allow internal access to the external url of our exchange owa and now it has stopped working - nothing has changed on the firewalls or on the exchange system th

...

no fpga memory for dfa

Hi all,

I get some warning message as below, is there anybody meeting such messages?

What does it mean?

Nov 08 15:08:57 Warning: pan_fpga_alloc_dfa_partition(pan_fpga_handler.c:909): no fpga memory for dfa, subtype 2 size 180

Nov 08 15:08:57 Warning: pan

...

Blocking Downloads - Real World Examples?

We currently use our PAN in quite a dumb way where most internet access for end users is controlled by a single rule at the top of our rule set which simply allows https/https as outbound services, we don't block/allow specific applications but we do

...

Ipad detection

We've configured the PA500 to accept IPAD connections using IPSEC, but is there a way to detect the fact that an Ipad is connected using HIP rules?  We would like to only allow traffic to certain systems.

Version PA OS = 4.1.4

Clearing URL Continue Timeout

Hello,

   Converting from BlueCoat ProxySG's to PAN URL Filtering... Within a BlueCoat environment when you "coach" a user... you can have the Bluecoat use a cookie to tell when next to "coach" the user.  This can be cleared by deleting cookies...

   C

...

Art by L3 Networker
  • 1267 Views
  • 1 replies
  • 0 Likes

Destination NAT with PBF

Hello all,

I have a question if Destination NAT with PBF is supported.

I have two site A and B. All internet bound traffic is supposed to go out site A. Site B sends its traffic over a VPN tunnel to site A due to a default route. There are however some

...

andrew85 by L0 Member
  • 986 Views
  • 3 replies
  • 0 Likes

Global Protect

I would like to know if it is wise and even possible to setup two gateways and portals on the same PA500 with different Ip addresses?

For the external contractors and internal technical people I would like to use the Split tunneling option but for all

...

SSL VPN dhcp ip pool usage.

Hi,

anyone knows how to monitor the usage of the dhcp pool for remote access users. ?

Can we set alarms or built report for this somehow ?

thx

gejack by L1 Bithead
  • 1085 Views
  • 0 replies
  • 0 Likes

NTop NetFlow

Hi all,

Does anyone have experience feeding NTop via NetFlow from their PA firewalls? I have it setup and sending flows but NTop sees all of the received flows as either "Flows with zero byte count" or "Flows with zero packet count" and discards them.

...

GV27 by L1 Bithead
  • 1602 Views
  • 5 replies
  • 0 Likes

Resolved! APP-ID detection capabilities in IP64 tunnels

Hi,

I placed a PAN device in VWIRE mode on the WAN side of a internet connection.

I planned to test the APP-ID capabilities of detecting IP64 tunnels.

Over this WAN link, a 6-4 tunnel exists with Hurricane tunnel-brooker.

The APP-ID is able to detect

...

wimjuste by L1 Bithead
  • 2159 Views
  • 5 replies
  • 0 Likes

Resolved! Panorama multiple interface

Hello,

I would like to know if it's possible to configure multiple ip interface on the panorama server ?

One interface to administer the server, and another one for communication with the PANs .

Regards,


IPS - set up packet logging

Dears,

I would like to know if there is a possibility to collect some packets before and after the packet that trigged the attack signature

it will be helpful in case of troubleshooting and confirm if this attack is a false positive or real attack( kno

...

Top Solution Authors
Top Liked Authors