General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 406 Views
  • 0 replies
  • 2 Likes

Resolved! URL Filtering and SSL sites

Hi all,

I have a question regarding URL filtering. I set up URL filtering in Security Profiles to "Continue" for Social Networking. I noticed that if i open the first site under social networking, i get the response page "to continue", after that if i

...

Wusu by L1 Bithead
  • 3305 Views
  • 3 replies
  • 1 Likes

Resolved! DNS resolving

I was wondering if there is a way to resolve domain names on a Palo Alto (except ping) and not using a DNS proxy object.

Kind regards,

Bob

bdeschut by L4 Transporter
  • 2267 Views
  • 1 replies
  • 0 Likes

Resolved! How QOS works

Hey

just trying to figure out and play with QOS for understading on how it works for ferther implementaion of QOS policy

so my environment is PA-500 with 2 interfaces in VWire

ethernet 1/11 - vsys3-untrust

ethernet 1/12 - vsys3-trust

have my computer conn

...

minow by L4 Transporter
  • 4820 Views
  • 1 replies
  • 0 Likes

Pre-Logon without Windows credentials

Hello,

I want to test the pre-logon feature of GlobalProtect in our environment.

Our clients are using two factor authentication (eToken) for the windows login. So they don't know their windows credentials.

We have already installed machine certificates

...

Hithead by L4 Transporter
  • 4104 Views
  • 6 replies
  • 0 Likes

Basic QoS Understanding

So, I'm trying to get a clear understanding of QoS on the PA's.  Any feedback / answers would be appreciated:

Maximum Egress - Straight forward - the maximum amount of traffic you are allowing out.

Guaranteed Egress - This one I'm foggy on.  Is it only

...

mrsold by Not applicable
  • 7553 Views
  • 6 replies
  • 0 Likes

Slow transferspeed over IPSec against ASA5510

One of our customer has a Cisco ASA 5510.

We have successfully created a IPSec tunnel and traffic flows both ways, but when trying to transfer a file, the speed caps at ~300KB/s, every 4-5 packets is dropped and the latency goes from ~3ms to 90ms.

Both

...

TJ by L1 Bithead
  • 7615 Views
  • 7 replies
  • 0 Likes

User ip mapping with only Global Protect

Hi all,

i have a question regarding user ip mapping when only using Global Protect to authenticate users.

Without enabling any user-id agent. Neither external on a server, neither on the firewall.

It works as Global Protect identifies the logged-on user

...

Resolved! Let me know how to block virus in SFTP

Hello~

As title see

I would like to block virus in SFTP

as far as I know SSH Proxy is same as SSL Proxy

so I installed Bitvise SSH Server(Personal Version) recently

I have confirmed be server normally

and than I configured similar as SSL way in Policy

Also

...

User Activity Reports

I really need some help in the correct process of running a user activity report. I have a request to pull the last 30 days of internet activity on a particular user. Every time I attempt this, I get strange results. Either the info only goes back 3

...

brb by Not applicable
  • 2801 Views
  • 4 replies
  • 0 Likes

Pannorama and HA Cluster

Hey

i would like to know how the commit process works when i push commit on pannoaram to HA device group.

1) does Panorama send the configuration to both of the device and then commit it?

2) does Panorama send it only to one device and it commits it to

...

minow by L4 Transporter
  • 3087 Views
  • 5 replies
  • 0 Likes

Destination NAT to address not in same subnet

Hello,

I had a quick question about destination NATing to an address not in the same subnet as an interface on the Palo Alto. For example, let's say I have a site-to-site VPN and I am using destination NAT on one side of the tunnel. When traffic comes

...

  • 23695 Posts
  • 110 Subscriptions
Top Solution Authors
Labels