General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

Attention : GlobalProtect attempts to create a VPN connection

Hi there,Maybe this question is more relevant to designers of Android Operating System, but I will try with Palo Alto first.I've got Nexus 5 Phone, and Android KitKat 4.4I would like to make Android Phone to connect automatically to VPN and I managed to make single sign-on in a way that I don't have to put my user name and password.However, the ...

Throughput of an Active/Active HA pair

I believe that in an active/active HA pair the total throughput is equal to the performance of a single box, not the sum of both boxes.For the PA-5050, the throughput for an Active/Active HA pair is 5Gbps with threat prevention.Where is this documented?I need to show it to managementDave

Resolved! PA with Two ISPs NAT

Dears,We have four zone in the PA. The naming along with subnet are below mentioned.1. ISP1- 100.100.100.2/292. ISP2- 200.200.200.2/293. DMZ1- 172.16.1.1/244. DMZ2-172.10.1.1/245. Inside- 10.10.10.0/24Inside user are going to internet via ISP1 and ISP2 is used for accessing in the DMZ1 and DMZ2.Since the default route is configured towards the I...

User ID Agent

I deployed a Windows 2008 member server and installed User ID Agent 5.06 to match the code of my PAN's. I had everything working on, I was getting user ID's and everything I needed, but the issues was how much traffic the user agent generated over the Wide Area Network, for example when it queried my AD's servers for about 30 sites, in 60 Minut...

markk96 by L3 Networker
  • 2781 Views
  • 1 replies
  • 0 Likes

Logging DNS, NTP, etc

I am curious if others are logging DNS, NTP, OCSP, and other lower level protocols being used by their clients. It seems kind of like a waste of electrons to do so.Thanks,Bob

BobW by L4 Transporter
  • 2806 Views
  • 2 replies
  • 1 Likes

Email Scheduler is not stable

Hi All,I configure an email profile for alert and report by email from my PAN ( latest OS 5.0.8 )I have a problem with Email Scheduler belowsometime, I only send test email (test manually) once and after that I can not send email any more.I really don't know where I miss configuration, please help if any one have experience

Read only

If I want to set an application like linkedin so that user can view it but not do any thing like send emails, endorse people etc make it read only how do I do that?

infotech by L4 Transporter
  • 5160 Views
  • 7 replies
  • 1 Likes

Resolved! SSL decrypt give problems in firefox

We use SSL decrypt in our enviroment with a PA-500. In Internet Explorer this works well and the users doesn't get any messages. But with firefox the story is different, for each page they open they need to add an exeption. This is quite frustrating so I really want to fix this. The question is, how can I fix this?

ZEBIT by L3 Networker
  • 3447 Views
  • 4 replies
  • 0 Likes

PA-200

I am working on a PA-200 firewall and get an error within the traffic log. It reports in the application column that it is 'incomplete'. I can't find anything on this error. It appears it would be in the rule settings but not sure.I am using version 4.1.6Any assistance would be appreciated.

Block Gaggle App

Hi I need help blocking gaggle from our network. This is an App where users enter anonymous comments or pics and users in the area can view them. I was able to do Yik Yak since there was an Application in Palo Alto.

Resolved! Threat-version: 434-2198 and new signatures - problem

HelloWe can read in email "Palo Alto Networks Content Updated" that version 435 give us:New Vulnerability Signatures (4)SeverityIDAttack NameCVE IDVendor IDDefault ActionMinimum PAN-OS Versionlow36421Phishing Webpage Detectionalert4.0.0critical36442Malicious Flash file Detectionalert4.0.0critical36443Apache Structs ClassLoader Manipulation Secur...

_slv_ by L4 Transporter
  • 4879 Views
  • 8 replies
  • 0 Likes

Resolved! Destination NAT - Entire Subnet

I have a PA-500 running PANOS v4.1.10. Is it possible to configure a single destination NAT rule that translates the address for any given /24 subnet on to the equivalent address in the destination /24 address; e.g. Original Packet Dest: 192.168.50.X -> Translated Packet Dest 172.16.29.X

kroche by Not applicable
  • 6035 Views
  • 4 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels