General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4107 Views
  • 0 replies
  • 0 Likes

Setting up DMZ

First time poster in the new forum.We're looking into creating a pure DMZ on our Palo Alto. Right now all our servers and network are behind a Layer 3 interface with private IPs. Anything that needs to be externally accessible is done via a One to One NAT through that interface. We have a vendor coming out to do some Lync setup and they "highly ...

tgrzeczk by Not applicable
  • 4817 Views
  • 3 replies
  • 0 Likes

Keeping current on blocked websites

What is the best way to keep your blocked websites current? Seems like every day a site is added that needed to be added to the list is there a simple way to keep the list current?

infotech by L4 Transporter
  • 2250 Views
  • 2 replies
  • 0 Likes

PAN agent 5.0.6 looses user IP

We are running PAN OS 5.0.11, with PAN agent 5.0.6-6.But we observe that intermittently, to various users, users are not matched with their IP addresses and Internet is blocked.When we search for this user in PAN agent, we do not see the user in PAN agent at all.The only way out is, the user logs off and logs back in to his system, and then, we ...

rz185016 by Not applicable
  • 2118 Views
  • 2 replies
  • 0 Likes

Resolved! New Zero-Day Exploit targeting IE9-11 CVE-2014-1776

HelloId like to share with You (sad) news about IE http://www.fireeye.com/blog/uncategorized/2014/04/new-zero-day-exploit-targeting-internet-explorer-versions-9-through-11-identified-in-targeted-attacks.htmland response from Microsoft https://technet.microsoft.com/library/security/2963983This is probably will be first issiue on Windows XP that w...

_slv_ by L4 Transporter
  • 7979 Views
  • 11 replies
  • 1 Likes

Routing table flags

I have been trying to find out what the different letters mean in the FLAGS field of the routing table. I have checked the admin guide for 6.0 and it isn't located there. I would really like to know what I am seeing in the routing table.

WCoats by L0 Member
  • 4065 Views
  • 1 replies
  • 0 Likes

Facetime, able to accept a call but then it fails.

Hi,Bit of an odd one really. We have a MAC with facetime installed. There are no restrictions outbound to the Internet. If I try to call the MAC using facetime the app see's me calling, I hit accept button but the call never completes, it just says connecting and eventually fails on both devices. This MAC worked previously through a Juniper nets...

Browser Usage Report

Is it possible to get a Browser usage report, ie, Summary pie chart of Browsers versions being detected as using the Internet in Palo Alto Firewalls...i.e. the number of users using IE or Chrome etc.

Vaibhav by Not applicable
  • 2644 Views
  • 1 replies
  • 0 Likes

Resolved! Is there an idiots guide to deploying certificate-based pre-logon for Global protect?

Folks.As the subject requests, is there an "idiots guide" to deploying certificate-based pre-login for Global Protect?My boss wants me to implement it so that pc's which are VPN-only connected can run domain scripts (machine policies) which only run on login - but you obviously don't connect to the domain until *after* you've logged in locally t...

darren_g by L4 Transporter
  • 4807 Views
  • 4 replies
  • 0 Likes

Error message after upgrading to 6.0.2

Hi,After having upgrading to the latest software dut to the time zone bug, this error started to pop up after every commit:We don't have a separate GP License but have only been using remote VPG connections with no problems for more than a year with our PA500 box.Any clue to how I can get rid of this annoyance?Thanks for commentsregards Tor

PA4050 Hardening Standard

Hi,I would to know if there's an Hardening Standard or a bechmark best pratices for PA4050 firewall.The purpose of that document is PCI DSS.Thank you,Paulo

NFS Performance - really poor

Hello everyone,To start, this is my first post ever and I'll try to be as complete as I can. Yes we are working with ETAC, who are very helpful. However the solution is evasive and I hope someone else in the community has experienced something similar to this. Without the PA's in the mix, NFS performance is 750-800GB/hr. No indication of CPU...

Google drive, SSL, blocking

Hi, What PanOS version was google-drive-web application introduced. We're running PanOS 4.1.6. Firstly I tried blocking it using the url filtering but have been unsuccessful in doing so (as below), thought I'd see if it can be done via the file blocking but I don't see google-drive-web as an option in the security profiles for file blocking, ...

IHC by Not applicable
  • 2756 Views
  • 1 replies
  • 0 Likes

Can't upload anti-virus update

Good dayI'm getting an informational error when uploading anti-virus file below is the error"upload -> anti-virus -> name Node can be at most 64 characters - current lenght 79"Has anyone seen this before?M

Calling Station ID - RADIUS calling IP

Hi folk,Anyone know if it's possible to include Calling-Station-Id (RADIUS attribute 31) when authenticating to a RADIUS server (specifically to a MS NPS server).The purpose of this, is to collect the end user's IP adress for logging in a third party system.When looking at an Access-Request package from the firewall, I only see the NAS-IP-Addres...

BLH by L2 Linker
  • 2661 Views
  • 1 replies
  • 0 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels