General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PBF vs Static Route

Hi,

I have traffic going from A.A.A.A to B.B.B.B,

The problem this is working with the static route. But I need to use PBF instead for monitoring reasons. When removing the Static route and using PBF traffic is not reaching the target. I am configuring

...

rsaber by L1 Bithead
  • 6114 Views
  • 5 replies
  • 0 Likes

How are passwords and keys stored in PAN xml config files

Are they hashed before storing them in the config files? By the looks of them, it seems like the PAN appliance is storing them in an encrypted format. If so, can they be decrypted?

For example, an OSPF key is stored as follows

"-AQ==xxxxxxxxxxxxx=xxxxx

...

rajqfs by Not applicable
  • 19574 Views
  • 18 replies
  • 0 Likes

SSL Decryption - warnings during commit


I had setup GlobalProtect with a third party certificate that I chained together, and it works fine with no errors.

Then, I began testing SSL Decryption yesterday (with an initial goal of decrypting SSL for Facebook so that I could block Facebook game

...

uscit by Not applicable
  • 3100 Views
  • 4 replies
  • 0 Likes

Resolved! Security Advisory Listings

Do others think the Security Advisory Listing should be sorted from newest to oldest ? Now it loads with issues

from 2012 which I would hope have been fixed. You then have to scroll down to see what the latest one was which

takes time, upon an initial

...

froberts by L0 Member
  • 1771 Views
  • 1 replies
  • 0 Likes

Resolved! Pre-sales tools

Hi All,

    I am looking for a document or a tool that might help me to choose the right device for one of our clients relying not only on the number of users and servers but also on the unit price of the appliance.

Best Regards, 

Lahcen by Not applicable
  • 2428 Views
  • 2 replies
  • 0 Likes

Wildcards in URL filtering for SSL-decrypt bypass

OK, so this is driving me mad and I'm obviously missing something.

I've created a custom URL category in which I wish to drop URLs that will bypass SSL decryption.  In this I want to use wildcards, so that all sites for a particular company can be byp

...

dynamicv by L1 Bithead
  • 2580 Views
  • 1 replies
  • 0 Likes

segmentation of bandwidth:

Hi All,

           One of our customers has an internet acces of 20Mbits and 4 types of users so he wants to segment the internet acces into  4  acces in order to ensure that every user groups has a bandwidth of 5Mbits.

           is it possible to do

...

Lahcen by Not applicable
  • 2723 Views
  • 6 replies
  • 0 Likes

Resolved! How Can I create custom application?

Hello Family~

I would like to create custom application,,

but It is hard to do

anyway

recently I red custom application document

about uploading.com

\.   <- why include \ character?

I tried to what could have known where document;;

help me please,,

ipsec-esp / Protocol 50 invisible in vwire mode ?

We have a Vwire configuration with a paloalto (5.0.6) between a third-party router and the wan port.

Security policy is allow any - any for both directions/security zones, log at session start an end.

Everything works (as expected), all VPN Tunnels on

...

register by L1 Bithead
  • 3681 Views
  • 5 replies
  • 0 Likes

Resolved! QoS Egress Max 0 = unlimited?

The default setting when creating a new QoS interface for Egress Max is 0. Does 0 mean unlimited or 0 (no bandwidth, no traffic)?

Mike

mike_cc by Not applicable
  • 6407 Views
  • 3 replies
  • 0 Likes

Content version 390

Hello All,

       In content version 390, the ssl traffic is mis-categorized as private-ip-address as a result, this content version is pulled back. The devices which have already seen the content version 390 will try and install it even if you have r

...

tshiv by L4 Transporter
  • 1374 Views
  • 1 replies
  • 0 Likes
  • 23724 Posts
  • 104 Subscriptions
Top Liked Authors
Labels