General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4442 Views
  • 0 replies
  • 0 Likes

Slow antivirus update over weekends?

Hi all,first thing to do when arriving to work on mondays, is to check status for the weekends activity, and update antivirus signatures.Most recent update was Friday before lunch - no new antivirus signature files over the weekend. Does this mean there has been detecten do new viruses - or does the 'antivirus team' have the weekend off?We are n...

pivvre by L2 Linker
  • 3454 Views
  • 4 replies
  • 0 Likes

Resolved! allow specific website to only one user

hello,i am new to our paloalto firewall, We have a problem with some „special“ employees, they want to connect to a „normally“ blocked-for-all website, for example „facebook.com“. How we can allow this specific, normally blocked website, to this and only this person?I added the site under- URL-Filtering/“Allow-List“and under - Custom URL Categor...

Interface mgmt services (ping,ssh,https,etc..) have no response in WAN2 if the default route is WAN1

:Hi, all,Suppose I have a following simple network architecture :- WAN1 : 1.1.1.1/24 (GW: 1.1.1.254)- WAN2 : 2.2.2.2/24 (GW: 2.2.2.254)- Default Route : 1.1.1.254In WAN1, all the interface mgmt services are workable, I can connect it from a internet address, I also can ping any internet address by orginating source address from 1.1.1.1.But all a...

generic:beerwineandcupcakes

Upgraded to PAN OS 5.0 last weekend, got home from the Ignite Conference and was looking through the Threat Logs and I see a bunch of entries for spyware based on DNS signatures (new feature in PAN OS 5.0). Is there anyway to find out more information about this? I know it says Generic in the name, so I'm guessing this is a broad category. It...

rtesdall by L1 Bithead
  • 3294 Views
  • 3 replies
  • 0 Likes

strange connection from PA - help me please

HelloToday I recognised that one of my security policy droppping trafiic from IP 192.168.1.1 adddress from one of my subinterfaces to IP adersses to port 135 from other subnets.I'm using CaptivePortal but not in that zone where is 192.168.1.1, I'm using AD integration but with agents not on 192.168.1.1.How to investigate what PAN process is doin...

_slv_ by L4 Transporter
  • 5148 Views
  • 9 replies
  • 0 Likes

User showing in logs, but do not show up when creating security policies

Palo Nation, I am trying to create a security policy based on a specific user, but when i get to the user tab nothing shows up. I check the CLI to make sure I was getting the user-ip-mappings ( show user user-ip-mapping all). When i get to the security policy user section, I proceed to click add and enter the username. i would assume auto po...

Problem with Captive portal :

Dears,I'm using PA-500 with 5.0.11 OS.I would like to get help for the captive portal, HTTPS traffic isn't being interrupted while HTTP is working fine and redirecting traffic for authorization.Please help me.Regards,Umair.

ikkgroup by L0 Member
  • 8304 Views
  • 13 replies
  • 0 Likes

Resolved! No entries in traffic logs

Hi folks,I'm running a VM-100 on a VMWare Workstation 9, off Windows 7 (Not supported, I know - but it works. Sort of).I imported the .ovf and added an extra NIC (.ovf only came with two NIC's, one of which goes to management as far as I can see).eth1/1 layer3 - "Inside" security zone, internal VM networketh1/2 layer3 - "Outside" security zone, ...

BLH by L2 Linker
  • 10005 Views
  • 10 replies
  • 0 Likes

tftp being blocked on internal network

I am trying to use tftp to backup my cisco catalyst 3500 xl switches and it show that the PA 3020 is blocking by tftp traffice when it hits the clean up rule. Is there an easy way to allow tftp?

infotech by L4 Transporter
  • 4553 Views
  • 3 replies
  • 0 Likes

Policy report for PCI

For PCI compliance, I need to submit poof of our firewall policy (we use a PA3020). Is there a standard report that I can run that summarizes our Policies, or is there a way to export the policies to a PDF or spreadsheet? On our old ASA I could simply do an export to HTML or spreadsheet which I could attach to my report.Thanks in advance.David

breedend by L1 Bithead
  • 3710 Views
  • 4 replies
  • 0 Likes

Windows Radius Server (NPS) / User ID discovery through PA Agent

I'm trying to figure out a way for the PA to discover usernames / IPs for wireless clients (could be Iphones / Andriod) authenticating via a Windows 2008 R2 Radius server. Clients are authenticating through dot1x (wpa2 enterprise). Auth and everything works fine, but the usernames are not being discovered.Just curious if anyone else has ever run...

rbergen by L1 Bithead
  • 8279 Views
  • 8 replies
  • 1 Likes
  • 24375 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels