General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Problems with Custom Reports?

Has anyone else had issues with creating custom reports and then having them emailed via the scheduler? I have built an extensive custom reports list that allows us to see into the detailed traffic to discover infections, spyware, and an assortment o

...

craymond by L4 Transporter
  • 1951 Views
  • 2 replies
  • 0 Likes

Resolved! EDNS?

Has anyone implemented EDNS on their network? How does the firewall treat it? Is it just as DNS? Does it block it because the packets are too big?

Does anyone know if there is a plan to make it its own discreet application?

Thanks for the info...

Ben

EDNS0 Packet blocked

Hi,

We have internal DNS’s that send query EDNS packets and
those packets apparently are blocked by our Firewall (PA-3050 IOS Version
5.0.2)

I didn’t find any doc or discussion here about this issue

Could someone help me to allow those packets pass throug

...

BSadozai by L2 Linker
  • 5415 Views
  • 2 replies
  • 0 Likes

Strange Log/Report Request

This idea might be a little strange so I apologize if it isn't completely clear.

Currently, we get a daily PDF report from our PAs that include items like the top 5 egress interfaces, threats, etc. Our security team has been interested in these report

...

TeamSpeak 3.x not recognized by App-ID

TeamSpeak is a voice app that uses a proprietary VoIP protocol. The 3.x version of TeamSpeak was no longer recognized by its existing App-ID, so I've captured some packets and submitted it to TAC for an update. This updated app-ID is targeted for rel

...

mancelin by L2 Linker
  • 3055 Views
  • 5 replies
  • 0 Likes

How to integrate PA syslog with Algosec ?

I am struggling with Algosec regarding the ability to forward syslog data with the right format.

Traffic is hitting the Algosec server but is is not parsing any PA Traffic log data.

Because the format and content in the traffic log is customisable I wo

...

stig by L1 Bithead
  • 2858 Views
  • 3 replies
  • 0 Likes

PA incorrectly matching rule, lets C&C traffic out

One of our other IDS tools detected C&C traffic outbound.  After further investigation, this traffic was allowed out through the Palo Alto because it matched on a rule that should have allowed ONLY the App-ID "github".  The App-IDs that the PA was de

...

jambulo by L4 Transporter
  • 3898 Views
  • 3 replies
  • 0 Likes

Resolved! VPN Gateway to Gateway

We have over 100+ Gateway to Gateway VPN's to migrate to Palo Alto from an older technology.  Does anyone know of scripting to streamline the migration process?  Thanks for your time.  Jerry

Jshively1 by Not applicable
  • 2331 Views
  • 3 replies
  • 0 Likes

yeoogh.com

seeing an excessive amount of traffic being tagged Suspicious DNS query (virus.virut:yeoogh.com) canno find any reference to this anywhere, ideas?

Cisco Ironport with Palo Alto FW

We have a tenant who is going to terminate their internet service and begin to use our connection.  Their internet traffic will be directed to our Palo Alto, which is our internet gateway.  The tenant also uses a Cisco Ironport Web Security device an

...

  • 24195 Posts
  • 100 Subscriptions
Labels