General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 55 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 784 Views
  • 0 replies
  • 0 Likes

Twinax Cable for PA-5000

Hello everyone,

Has anyone installed an PA-5000 series (PA-5020 and PA-5050) with a standard twinax wire? I want to connect a PA-5020 and PA-5050 to a Juniper SW with a twinax cable (EX-SFP-10GE-DAC-5m), and I want to know if it is possible or if anyo

...

Smartekh by L1 Bithead
  • 3227 Views
  • 3 replies
  • 0 Likes

Terminating multiple IPsec tunnels on an interface

Currenly all routing must take place on our core network. (due to backup ipsec tunnels and faster MPLS circuts)

Here is what we want to do but I am not sure how to accomplish this.

We have four IPsec Tunnels that we do not want to be routed to each oth

...

rbit0965 by L1 Bithead
  • 2959 Views
  • 2 replies
  • 0 Likes

SSL decryption

How would one  implement a man in the middle SSL decryption configuration on the Palo Alto without the client's browser popping up with a untrusted cert message?

DendreT by L1 Bithead
  • 2010 Views
  • 2 replies
  • 0 Likes

Resolved! In management plane there's some mysterious process.

Hi guys,

I've found out that our customers PA keeps high management cpu usage, and it seems that this process use most of the resource.

what's the 'appweb3' process and why the user is 'nobody'? Is there somebody who can explain this??

Thank you very m

...

JTR by Not applicable
  • 4954 Views
  • 4 replies
  • 0 Likes

Resolved! Paloalto Panorama Communication after license expired

We have couple of Paloalto 5050 firewall, which license got expired recently.   Is it possible to connect these firewalls with Panorama.

After device has been added in Panorama with device serial number, it is not connected and device IP details not s

...

Resolved! URL Log displays a lot of '%16%03%01/' as url for SSL traffic

What's wrong with the URL filtering and logging of the PaloAlto FW? We have many URL logs like '%16%03%01/' when users visit SSL websites.

Is URL detection for SSL websites broken?

Are there other users who have this problems?

We are not 100% sure but i

...

obor by L1 Bithead
  • 4987 Views
  • 9 replies
  • 0 Likes

DNS Response Address Translation

Can the PA's perform an address translation (assuming an appropriate NAT rule is configured) for an IP address that's presented as an answer in a DNS response message? I.E as highlighted in red below.

I have tested it and it doesn't work, if the funct

...

debsPal0 by Not applicable
  • 2470 Views
  • 3 replies
  • 0 Likes

Looking for best way for using DoS protection

Hi guys,

I have question related to  both Zone and DoS Protection features.

I'm testing with PA-200 and PA-2050 by using following DoS tool.

LOIC | Free Security & Utilities software downloads at SourceForge.net

I'm configuring this tool to generate lots

...

emr_1 by L5 Sessionator
  • 2838 Views
  • 3 replies
  • 0 Likes

manually download/install GlobalProtect Data File

Hey guys,

Is there a way to manually download/install the GlobalProtect Data File?

Though CLI maybe, like you can for content and anti-virus?

Or should you just schedule it under dynamic updates to daily, and set it to download at a time 1 minute in th

...

mr.linus by L4 Transporter
  • 3097 Views
  • 1 replies
  • 0 Likes

PanOS 5.0

i have configured syslog setting on palo alto to send log to syslog server?

i have mention the port number 601(tcp port) and server address : xx.xx.xx.xx and facility  : LOG_USER

but i cannot see the log on my syslog server which is listening on tcp th

...

Resolved! application ver 390

Hi,

We informed that 390 was released but I could not find it on dynamic updates.Any problem with that version ?

we had some ssl problem but I don't know if it is related to that or not

panos by L6 Presenter
  • 4312 Views
  • 8 replies
  • 0 Likes
  • 23992 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels