General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4114 Views
  • 0 replies
  • 0 Likes

TeamSpeak 3.x not recognized by App-ID

TeamSpeak is a voice app that uses a proprietary VoIP protocol. The 3.x version of TeamSpeak was no longer recognized by its existing App-ID, so I've captured some packets and submitted it to TAC for an update. This updated app-ID is targeted for release in the content database 380.

mancelin by L2 Linker
  • 4721 Views
  • 5 replies
  • 0 Likes

How to integrate PA syslog with Algosec ?

I am struggling with Algosec regarding the ability to forward syslog data with the right format.Traffic is hitting the Algosec server but is is not parsing any PA Traffic log data.Because the format and content in the traffic log is customisable I wonder if I am using the correct format here..Any tip is highly appreciatedRegardsStig

stig by L1 Bithead
  • 4425 Views
  • 3 replies
  • 0 Likes

PA incorrectly matching rule, lets C&C traffic out

One of our other IDS tools detected C&C traffic outbound. After further investigation, this traffic was allowed out through the Palo Alto because it matched on a rule that should have allowed ONLY the App-ID "github". The App-IDs that the PA was detecting and allowing were...-incomplete-insufficient-data-non-syn-tcp...why did this C&C ...

jambulo by L4 Transporter
  • 5186 Views
  • 3 replies
  • 0 Likes

Resolved! VPN Gateway to Gateway

We have over 100+ Gateway to Gateway VPN's to migrate to Palo Alto from an older technology. Does anyone know of scripting to streamline the migration process? Thanks for your time. Jerry

Jshively1 by Not applicable
  • 3301 Views
  • 3 replies
  • 0 Likes

WiFi with 802.1x and Radius authentication - source user in traffic log problem

HelloI'm thinking about WiFi network for my studnets. Now they are authenticating on HotSpot on Mikrotik AP's. They are complaining that must enter login and password so often.HotSpot also isn't good for me becase I can't see authenticated users in PAN logs.Is it possible to configure 802.1x authentication on AP and have in logs proper user name...

_slv_ by L4 Transporter
  • 11558 Views
  • 9 replies
  • 0 Likes

How to access console port on pan-2020 using a dial up modem

I have a single remote firewall (pa-2020) where I would like to set up the console port to be accessible via dialup modem. I called Paloalto support and they only were able to say that most people use a terminal server like an avocent type server to gain access to the console and haven't worked with anyone trying to use a modem. (I have one fi...

bigtone by L1 Bithead
  • 11708 Views
  • 12 replies
  • 0 Likes

yeoogh.com

seeing an excessive amount of traffic being tagged Suspicious DNS query (virus.virut:yeoogh.com) canno find any reference to this anywhere, ideas?

Cisco Ironport with Palo Alto FW

We have a tenant who is going to terminate their internet service and begin to use our connection. Their internet traffic will be directed to our Palo Alto, which is our internet gateway. The tenant also uses a Cisco Ironport Web Security device and insists on its continued use vs. using the services on the Palo Alto. My thought was to put th...

High Management CPU

HiSince upgrading a PA-2050 to 5.0.8 I noticed that the management CPU is always above 70% and DataPlane is under 5%. Do this behaviour is normal? Management CPU sometimes goes to 99%.Best regardsGonzalo Arroyo

SOC_CSG by L4 Transporter
  • 4274 Views
  • 4 replies
  • 0 Likes

Script to switch on/off captive portal by script

Hi,I'm still interested in finding a solution to manage my PA500 captive portal feature to switch on and off during certain times of the day. I have heard in another setting that one can switch captive portal on and off from a script. Which commands would such a script include for a safe and 'best practice' enabling and disabling of CP?Once be...

Resolved! Can the number of profiles supported be increased by license?

Hi,We have a PA-FW PA-3020. I checked the parameter: cfg.general.max-profile and its value = 100. Means that only 100 profiles can be created on the device. Can we increase this limit by going for a higher license? or is this model dependent and we have to upgrade to a higher model like PA-5060.What is the maximum limit of URL profiles supported...

Resolved! Mask Security Policy User Field?

Is it possible to mask or obfuscate the 'User' field of a security policy rule? I am testing monitoring user url activity, but I don't want other firewall admins to know who I am monitoring.Mike

mike_cc by Not applicable
  • 3453 Views
  • 4 replies
  • 0 Likes
  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels