General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 482 Views
  • 0 replies
  • 0 Likes

PA-500 - Insane Commit Times

We have a PA-500 running 4.1.11.

I wouldn't say we do anything special, it has some certs installed for forward and reverse SSL decryption, we do dynamic URL filtering and probably have something like 30 security policies in place on it and at any giv

...

Benefits of using DNS proxy?

Are there any Security benefits to using the current implementation of DNS proxy on the PAN? I have seen on the ver 6.0, a new feature called DNS sinkhole, but I don't think it will require the DNS proxy feature. Watchguard checks DNS headers and a c

...

craymond by L4 Transporter
  • 3919 Views
  • 2 replies
  • 0 Likes

Resolved! Does FW use ospf version 3?

Hello

I am facing ospf issue so need some help.

Please look at the routd.log as below.

"OSPF 3 Non-Hello packet could not be matched to an active neighbor" -> What does it mean?

And does FW use ospf version 3 as above message?

I found out "RFC 1583 Compat

...

webpage displays improperly

I am using a PA-500 software vers 5.0.10 with BrightCloud filtering package at vers 4231.  I am having problems with getting some webpages to load in the proper format.  Classroom20.com (categorized as Computer and Internet Info;  Personal sites and

...

Resolved! BGP Configuration

What is the impact of not selecting 'Exact' when entering prefixes in the import or export tab in BGP configuration? I assume the exact must match the prefix entered.

But if exact is not selected, what is permitted through? If 10.0.0.0/8 is the entere

...

RFalconer by L3 Networker
  • 8306 Views
  • 1 replies
  • 0 Likes

Resolved! GlobalProtect and logon scripts

Hello. Is it possible to launch a logon script to map drives after connecting with GlobalProtect in on-demand mode? I know we could create a script to launch manually after a connection to map the drives but would like an automated method.

Thanks!

ldavie by L2 Linker
  • 7135 Views
  • 5 replies
  • 0 Likes

PA Platform Upgrade/Migration

We are about to upgrade from two PA-500s (in HA) to two PA-3020s (will be in HA as well). Is the process as simple as exporting the configs from the PA-200 and importing them into the PA-3020s? Will there be a lot of tweaking needed because the 3020s

...

Resolved! No way to view sites that are set to "Allow"?

Is there a way to view sites that are set to "Allow" or are in the "Allow list"? I can see the "Allow list" sites via the Application Command Center, but is there any way to view them in the "Monitor" tab or through reporting?

jambulo by L4 Transporter
  • 4034 Views
  • 6 replies
  • 0 Likes

AET & PAN

Hi everybody,

last week I had a Stonesoft engineer in my lab demonstrating their techniques of exploit attack via AET. I tested my PAN NFR units (PA-200 & PA-2050) with IPS license last update, together with other vendors IPS units, protecting 2 prett

...

NGS_SOC by L3 Networker
  • 4566 Views
  • 5 replies
  • 0 Likes

Resolved! Aggregate Interface Failover

Hello,

Is it possible to have two interfaces configured as aggregate interfaces in one AE group in way that if one interface goes down it does not force a failover to the backup firewall? Here's some background...

I have two PAs set up with high avail

...

MarkTan by L2 Linker
  • 3704 Views
  • 1 replies
  • 0 Likes
  • 24089 Posts
  • 116 Subscriptions
Top Liked Authors
Labels