General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 779 Views
  • 0 replies
  • 0 Likes

Resolved! Registry entry for Connect Method?

Does anyone know what the registry entry is for changing the "Connect Method" to on-demand? I am trying to push out the GlobalProtect client via WSUS Package Publisher. I am able to do the install and push the "Portal" key in the registry, but don't

...

Resolved! PANOS 6 Port mirror decryption

hey

where i should get the license mentioned here for enabling this feature

• Decryption Port Mirror— Provides the ability to create a copy of decrypted traffic from

a firewall and send it to a traffic collection tool that is capable of receiving raw p

...

minow by L4 Transporter
  • 3000 Views
  • 4 replies
  • 0 Likes

GlobalProtect ip-user-mapping issue

PA-500

PAN-OS 5.0.2

Hello, we've deployed GlobalProtect with local user authentication (authentication profile = local database), user identification is enabled both on trust and vpnclient zones.

Also, user mapping is enabled with UID Agent directly fro

...

trafic redirection

Hi,

I have a PA200 and i want to pass all users by this firewall, include whos connect with wireless

how can i configure PA to inspect wireless users

thanks in advance

Sarah

atelcom by L3 Networker
  • 2381 Views
  • 4 replies
  • 0 Likes

Suspicious DNS Query (generic:msreg.gale.com)(4034267)

I didn't find many about this domain "msreg.gale.com", Could someone help me to determine whether or not a false positvo??


In the link below say it is not malware.

It's Word 2007 - "Connecting To" Pop-ups

http://social.technet.microsoft.com/Forums/offic

...

SOC_CSG by L4 Transporter
  • 2196 Views
  • 1 replies
  • 0 Likes

Resolved! Blocking page with SSL

Hi

in the normal way palo could answer directly to the client device wiht the bloking page when url filtrering match the categorie.

but

when the application is SSL the palo couldn't answer with the bloking page and reset directly the session.

is it pos

...

Gregoux by L4 Transporter
  • 2505 Views
  • 3 replies
  • 1 Likes

App-ID not working properly

Hi All,

I'm working in Active/Active VWire mode, OS 5.0.9. version of PA is 5050.

while I'm trying to block applications, I noticed the applications are been blocked in monitoring, but in real nothing is blocked.

one more notice is that most of the web-

...

Tunnel and PBF Monitoring Driving Me Crazy

Okay, I can't think straight. Sorry if I ramble on. I can't seem to wrap my head around this and I'm thinking I am making it more complicated than it really is. This is also hard to test since I can't turn up the new ISP yet.

Here is my situation: I n

...

What's the consensus on PanOS 5.0.9?

My company is looking to upgrade our firewall OS. Support suggested 5.0.9. Another source said that was bad and to go with 5.0.8. Are there any stability issues or bugs that the community has been experiencing? Thank you!

Resolved! Migrating fron PA-500 to PA-2050

Hello all,

Actually we have a PA-500 and we like to export the actual config and import it in the new equipment (PA-2050). How to do this?

Thanks and regards,

rrunge by Not applicable
  • 5772 Views
  • 4 replies
  • 0 Likes

WebGUI PANOS6

After installing PANOS6 on a PA-200 platform, the webgui at IE looks strange:

Hithead by L4 Transporter
  • 2606 Views
  • 4 replies
  • 0 Likes

How to block the real IPs from CDN?

Is there any function that can makes the PA block the traffic of the real IP instead of CDN IPs?

We deployed the PA NGFW on the external side of our web server and enabled the Threat Prevention function. Because we are using the CDN, so from the web s

...

SteveY by L1 Bithead
  • 5234 Views
  • 6 replies
  • 0 Likes

Resolved! Commit Failed to send phase 1 abort !

Hi,

My PA box keeps failing in commit and I get the attached message.

Could any one please help me decypher this, and let me know how I can

get this boy to commit to my terms !

Regards,

Tau_

rz185016 by Not applicable
  • 7328 Views
  • 5 replies
  • 0 Likes
  • 23986 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels