General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4135 Views
  • 0 replies
  • 0 Likes

Management Interface outside of firewall

Knowing that one does not *usually* put a device management interface outside of the firewall, on the public Internet, in the case of PAN gateways is there any severe problem with this? I have a situation where putting the management of these devices on the private management network would require quite a bit of additional configuration, bandwid...

Resolved! Data filter with SSH proxy decryption

So, I would like to be able to enforce file blocking between our external FTP,sftp,scp server that is published in our DMZ. Users coming into the DMZ are NAT'ed from a public IP space to 172.16.0.0/16 space. I have enabled SSH proxy decryption between the outside and the DMZ interfaces and traffic is being decrypted as shown by the traffic logs....

Resolved! When PA move Active-Passive what problems?

Hello~PA Devices are HA environmentone of them failed disk or temperature raiseDoes PA move other device?because I don't know exactly about moving HALink Fail, Path Fail, HA Link Fail I knowI think that Environment occur alarm(FAN, Disk, Temperature, etc? are there ?I seem to PA move other device

VMware and Paloalto

Anybody had issues with VNware servers and Palalto firewall. Suddenly our webservers not able to communicate from DMZ to internal network where the SQL servers are.Adrian

alupea by L0 Member
  • 1852 Views
  • 1 replies
  • 0 Likes

User Agent report?

Hi, PanOS 4.1.14. Is it possible to report on user agent connecting via my 2020? To be able to report on Firefox, Chrome or IE versions for example would be useful . Further still..(and I doubt this..) to instigate a policy based on a user agent? Thanks allNick

nickcx1 by Not applicable
  • 4367 Views
  • 3 replies
  • 0 Likes

Resolved! Customizing Captive Portal login response page

I'd like to customize this page, but I don't see it listed in the GUI (5.0.x) Device Tab / Response Pages. I can see the rest, including the Captive Portal Comfort page... but no logon page?The page in the web browser is titled "User Identification portal".Can someone point me in the right direction?

cenders by L3 Networker
  • 10445 Views
  • 5 replies
  • 0 Likes

Custom whitelist (size matters ?)

Dears,After changing the URL filtering Db from Bright CLoud to PAN Db, many many brazilian sites became "unknown"... Then by default they are blocked...We have created a custom URL Category called whitelist, and then we are putting there all these URLs (pretty much faster than ask PA to recategorize them...)Everything works fine, but the main qu...

how can I get entire session table?

Working on the 5060 in 5.0.7, the active session count is around 60k+, in cli 'show session all' output will only return ~3000 sessions. API returns 9995 lines. How can I get the entire session table?The use case, I will like to be able to take a snapshot of the firewall session table at a given specific moment; find out which vsys has the m...

Resolved! Palo Alto Slow

Hello all,I am having a little problem of slow when I browse the web interface of the Palo Alto (very slow loading pages ...)Do you have an explanation for that?My version of PAN OS Software Version 4.0.14thank you

itracing by L0 Member
  • 8320 Views
  • 6 replies
  • 0 Likes

PANOS 5.0.8 User-ID problem.

Did anyone have a problem with user identification (IP from AD thru User-ID application), I have above with 5.0.8, on 5.0.7 is OK. Users from local subnet are correct discovered, but from other then PA subnets arent.RegardsAdam

wijasa by Not applicable
  • 3959 Views
  • 4 replies
  • 0 Likes

Resolved! PA-5000 Series Disk hot swap?

Hello~~I am very curious,,It is simple questionas far as we know, PA-5000 Series can install RAID 1 DiskIf PA failed either disksCan PA continue logging another disk?If soWhen failed disk exchange, Does have to reboot PA?I am extremely confused nowI had not found document on Support Site yetWould someone like to find document?

Resolved! Palo Alto at Home

My current setup at home consists of a comcast modem - PA-200 - linksys wireless router. For this setup, I have the PA in vwire connected to the modem and my wireless router is performing DHCP.Last night I attempted to change my setup and took down my network for a couple of hours. I'd like to setup my wireless router as an access point, and co...

Timeout Countdown for defined applications

HiCurrently running a pair of active/passive 4020's and I have a question regarding timout values set on applications.I have set up a new application with a TCP timeout value of 4 hours, is there any way of monitoring the count down from 4 hours to 0 for a given connection. i.e through the monitor tab.I am trying to prove an application is defin...

johnm by L0 Member
  • 2108 Views
  • 1 replies
  • 0 Likes

PAN-OS 5.0.7 Never again

Hi,We upgraded our PA to PANOS 5.0.7 and the day after the users report several problems: accessing to internet, and the vpn client Global Protect wasnt working. We have done a revert to the version 5.0.5 and now its rowking propertly........Anyone has had any of this problem with the release 5.0.7:-Slow internet-Any webs working and others web ...

  • 24340 Posts
  • 124 Subscriptions
Labels