General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4110 Views
  • 0 replies
  • 0 Likes

Resolved! Rule change via CLI

Is there any way to remove a parameter to a security rule via the CLI? As an example, if I created the following rule:set rulebase security rules "Test" from insideNow I want to change inside to outside.If I use: set rulebase security rules "Test" from outside, I end up with "from [ inside outside ]"I would prefer not to have to delete the rule...

rgreens by L2 Linker
  • 4829 Views
  • 2 replies
  • 0 Likes

URL and Page Content Pattern Matching for Un-categorised Websites

Hi,Unless I've missed something I don't believe this is yet possible. I'd love to be proven wrong however so by all means let me know.We are seeing an increased number of highly personalised phishing attacks i.e. the individuals behind the attempts are setting up identical login pages to our sites with our graphics etc in an attempt to fool our ...

Resolved! EIGRP?

I probably already know the answer to this, but I have to ask anyway. Does PA support EIGRP for dynamic routing? :smileyconfused:-mike

Resolved! Best Practices for Agentless UserID in Multiple Domain Environment?

Hi,I'm about to install two PA5060s in high availability and I am wondering if you guys have any best practice tips for this kind of install when it comes to UserID and how to add more than one domain to the Agentless install.Alex(Now shamelessly accepting the next 72 friend requests.)

Abs by L3 Networker
  • 8849 Views
  • 3 replies
  • 1 Likes

Resolved! Palo Alto Migration Tool

I watched the webinar for Migrating Cisco ASA to PAN at this link https://paloaltonetworks.com/resources/webcasts/migrating-from-cisco-asa-to-palo-alto-networks.htmlAround the end of the presentation, there's a few slides on migration tool used to migrate other firewalls to PAN.Does anyone know where to get the tool?Thanks

Resolved! IMAP SECURE /POP3 SECURE applications

Hello ,We are looking for IMAP Secure and POP3 Secure application to securely access the mail exchange services from Internet through PA firewall , we do not find this in this applications list .can you please advice .Regards,BIJILESH.

Resolved! Different NAT IP for several user

HiI need your help with following problem.Traffic from VPN zone is NATed to one public IP for every VPN traffic.Today I got task to assign for 3 of those user different NAT IP (or even better: user1 - NAT_1, user2 - NAT_2, user3 - NAT_3 and for the rest of users NAT_4)How to achieve that?RegardsSLawek

_slv_ by L4 Transporter
  • 5447 Views
  • 9 replies
  • 0 Likes

Resolved! Specify policy by machine name/workgroup?

Hey there --So this is an odd thing that's probably it simple fix.. hoping anyway. We have 99% of our PCs on the same subnet and domain, however several of these machines are owned by an outside company and are "borrowing" our internet link. They are in their own workgroup (not on our domain), but share our address space (192.168.1.x/24). I ...

thatguy by L2 Linker
  • 4907 Views
  • 6 replies
  • 0 Likes

Globalprotect Agent for OSX - anyone else running into MAJOR UI issues?

Is anyone else experiencing poor UI issues of the Globalprotect agent for mac osx or even windows? The UI for Mac OSX is EXTREMELY difficult to navigate, let alone find the window itself sometimes as you can't alt-tab to it. Frequently the panel window is hidden behind others and the ONLY way I've found to find it is to click on the icon in menu...

Resolved! PA device and Panorama

heyhow can i see what configuration is still local on the PA device.i have a site in which i move the PA device into panorama, i have chosen to move all the device config into panorama except the HA configuration and individual configuration of each PA, now i have reset one PA configuration and push the config from the panorama, and i get that t...

minow by L4 Transporter
  • 4042 Views
  • 5 replies
  • 0 Likes

Palo Alto Networks Customer Portal

Palo Alto Networks Customer Portal Migration Tool Shared with Jive Anywhere https://c.na5.visual.force.com/apex/SearchSerialOnCase?retURL=%2F500%3Ffcf%3D00B7000000724oA&sfdc.override=1

Resolved! Migration Tool

Hi everyone,Someone know about the Migration Tool, I need to download but I can´t locate.Regards

ssl decryption vwire

HeyThe user ssl session is going in this path:User -> PA VWeirw internal > Backbone > PA VWeirw External > Checkpoint > internetIf we enable decryption on the external VWeirw the user is getting timeout in the browserIf we enable decryption on the internal VWire the decryption is working welldoes somone bump into this situation?th...

minow by L4 Transporter
  • 3533 Views
  • 5 replies
  • 0 Likes

Route web traffic through firewall

Hi,I'm just in the process of configuring a PA-500 on PAN OS 5.0.10 at our DR site so that it sit's on the internet connection at that office. It currently has three interfaces, outside, inside and DMZ. I've managed to configure things such as NAT so that I can browse the internet from that branch to test internet connectivity and NAT etc. To...

  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels