General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

DNS Proxy

I have configured DNS Proxy on a PA200 with PANOS 4.1.9, with two interfaces enabled for DNS proxy service and two default public DNS as primary and secondary.

But on system monitor, on DNS Proxy object, I find: "Failed to resolve domain name: <domain

...

lauro7 by L0 Member
  • 3492 Views
  • 3 replies
  • 0 Likes

Resolved! Proper Way to allow Split-tunneling

Greetings all!

I am trying to allow split-tunneling for a client so they can access their home network while connected via VPN. I see in split-tunneling box, the option to add specific network ranges but hope there is a better way since I could not h

...

SDorsey by L4 Transporter
  • 2773 Views
  • 2 replies
  • 0 Likes

Resolved! Applications in PBF

Correct me if I am wrong but I should be able to filter traffic in a rule based on applications, correct? I am trying to create a PBF that will route traffic for one specific IP address using google-docs-base but I can't get this application to show

...

IPSEC Pass Through

Forgive the newbie question, but I've been searching the documentation and I don't see where I can configure the Paloalto FW for vpn passthrough, specifically ESP (Protocol 50) and even ICMP.  I have some routers that I need to provide NAT for their

...

jpvh1234 by L0 Member
  • 6164 Views
  • 4 replies
  • 0 Likes

Decryption problem with 5.0.7

Hi,

since we've upgraded our PAs (200, 2000), we notice more and more decryption problems with HTTPS websites. The problem appears suddenly, almost all HTTPS doesn't work and a restart of the PA is required to solve the problem...And then, after one o

...

Hithead by L4 Transporter
  • 2975 Views
  • 4 replies
  • 0 Likes

vpn clients for android and linux

hi

is there any good alternatives out there for connecting linux and android clients to global connect\PA native IPsec vpn ??

And I DO NOT mean that native cisco is OK, the encryption used here has been broken for several years,and are not designed for

...

knutelde by Not applicable
  • 5869 Views
  • 7 replies
  • 0 Likes

Resolved! Custom Report limitation - 500 Rows

I am trying to pull a report using 'Custom Report', when i run the report the maximum number of rows it supports is 500, is there any query or a way to increase this number?

Abrar by Not applicable
  • 2769 Views
  • 1 replies
  • 0 Likes

High Management CPU usage

I have noticed that one my PA 2020 boxes constantly has a very high Management CPU usage. Like now for instance where nobody apart from myself is logged onto it and I am not doing anything apart from just sitting on the dashboard, with my refresh set

...

Resolved! Panorama - missing context drop-down

Problem statement: The Panorama 'context' drop-down disappears. We're then stuck in whatever context we were last in.

Occurrence: Too many times (8 times in the last 1/2 day)

Work around: Close/open Chrome, reconnect to Panorama.

Contextual info: We us

...

tommyluke by Not applicable
  • 3888 Views
  • 5 replies
  • 0 Likes

Problem with new internet connection

I've just changed my internet connection to a new one.

Now I've reconfigured everything with the new address.

The issue is that I can surf the web from inside to outside but the NAT to my internal server is someway blocked.

What I can see in logs is:

I r

...

Resolved! VPN tunnel moving from Palto-ASA to Palto-Palto

I'm running PANOS 4.0.x and have a tunnel with a Cisco ASA peer.  I had to create multiple IPSEC tunnels to work around the Proxy ID limitation of 10 per tunnel interface.  This Cisco peer will be moving to a Palo Alto box running 5.0.x.  If the far

...

iguarino by L0 Member
  • 2588 Views
  • 3 replies
  • 0 Likes

LDAP and GlobalProtect

Hi,

I am trying to set up Globalprotect.

Would like to restrict the user to a group, but I can not get this to work.

In Authentication profile i have the VPN-group in allow list.

When I logon with a user in this group the log tell me that i have incorrec

...

klumpen by L1 Bithead
  • 3453 Views
  • 3 replies
  • 0 Likes
  • 24034 Posts
  • 102 Subscriptions
Top Liked Authors
Labels