General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

Route web traffic through firewall

Hi,I'm just in the process of configuring a PA-500 on PAN OS 5.0.10 at our DR site so that it sit's on the internet connection at that office. It currently has three interfaces, outside, inside and DMZ. I've managed to configure things such as NAT so that I can browse the internet from that branch to test internet connectivity and NAT etc. To...

LDAP Server profile with PAN-OS 5.0.10

Hi!I have upgraded our passive/active PA-500 cluster from 5.0.8 to 5.0.10and stack with a problem, LDAP server profile Invalid credentials. Resetting password and even making brand new user for LDAP profile doesn't helped.I've logged to console and run Seems problem is in OU name what LDAP user belongs, it contains an Ä letter (Estonian).Movin...

Configuracion FW

Estoy tratando de configurar el firewall PA500, al momento de ingresar por la interfaz web, me aparece el dispositivo desconectado, que podría hacer?

Resolved! Always get "likely" pre-shared key mismatch

I tried to configure Site-to-site VPN from PAN 5.0.5 to Juniper Netscreen OS.Even I type very according easy pre-shared key. On PAN it always shown"IKE phase-1 negotiation is failed likely due to pre-shared key mismatch"Anyone have any suggestion?Thank you.

Amnuay by Not applicable
  • 12427 Views
  • 6 replies
  • 0 Likes

Resolved! Scheduler should cut off sessions immediately

Hi,We have set a schedule on some security policies, but at the moment the schedule should switch off the traffic it seems that live sessions are not immediately denied, The scheduler only prohibits the creation of new sessions. Is this true? We are on 5.0.4 witgh our PA500 box and I wonder if I can configure the scheduler to immediately cut ...

How to get DHCP statistics from PAN

HelloI have WiFi network for students, it using APs as a bridges with Captive Portal authentication using Radius server and also PAN is a used as a DHCP server..I'd like to know how many IPs are in use in a time. Is it a way to do it by SNMP?The second option is to how many students authenticated during time - maybe this is also possible to moni...

_slv_ by L4 Transporter
  • 3605 Views
  • 3 replies
  • 0 Likes

Resolved! Custom Reports contained in Group reports

Has anyone else had issues with creating custom reports and then having them emailed via the scheduler? I have built an extensive custom reports list that allows us to see into the detailed traffic to discover infections, spyware, and an assortment of other information to discover things that the PAN does not alert us on. The problem is, that th...

craymond by L4 Transporter
  • 6873 Views
  • 7 replies
  • 0 Likes

PA-500 - Insane Commit Times

We have a PA-500 running 4.1.11.I wouldn't say we do anything special, it has some certs installed for forward and reverse SSL decryption, we do dynamic URL filtering and probably have something like 30 security policies in place on it and at any given time in terms of admin nobody is doing anything.Commit times seem insane. I don't think I've ...

Benefits of using DNS proxy?

Are there any Security benefits to using the current implementation of DNS proxy on the PAN? I have seen on the ver 6.0, a new feature called DNS sinkhole, but I don't think it will require the DNS proxy feature. Watchguard checks DNS headers and a couple of other criteria for DNS based attacks, but I don't see anything in PAN documentation that...

craymond by L4 Transporter
  • 4609 Views
  • 2 replies
  • 0 Likes

Resolved! Does FW use ospf version 3?

HelloI am facing ospf issue so need some help.Please look at the routd.log as below."OSPF 3 Non-Hello packet could not be matched to an active neighbor" -> What does it mean?And does FW use ospf version 3 as above message?I found out "RFC 1583 Compatibility" in ospf menu.If I will set up enable "RFC 1583 Compatibility", Does FW use ospf versi...

webpage displays improperly

I am using a PA-500 software vers 5.0.10 with BrightCloud filtering package at vers 4231. I am having problems with getting some webpages to load in the proper format. Classroom20.com (categorized as Computer and Internet Info; Personal sites and Blogs) will load fine for a user that has no filtering restrictions. However, it will not load p...

  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels