General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 255 Views
  • 0 replies
  • 1 Likes

Palo Alto blocking Wii game

Hi All -

Just got my Palo Alto installed last week!  So far so good.  Hope this is the right place to be posting...

I just got a message from a student that since the firewall install, a game on his Wii U, Monster Hunter, has stopped working.  He claim

...

Resolved! GP with Host detetion and auto-connect

Hi,

PA 500 in 5.0.4 and GP client 1.2.3

Would like to be sure, I need GP auto connexion from outside of my network and no GP in my network.

Then configure my external gateway, my internal host detection. It works well.

But short question do I need the GP

...

VinceM by L5 Sessionator
  • 4481 Views
  • 5 replies
  • 0 Likes

Loopback addresses and ARP

I'd like to terminate VPN's on lookback addresses from my public range.

If my public interface is 1.1.1.1/24 and I want to terminate VPN's on .2 and .3 I create two loopback interfaces (place them in the Internet Zone) with the IP addresses of 1.1.1.2

...

Resolved! Can firewall act as VPN client?

Wondering if we can configure a lab PA-200 to connect to a VPN concentrator on the internet using IPsec, as though it were a VPN client not a site-to-site tunnel.  Not connecting to the firewall using GP, but using the firewall itself as the VPN clie

...

Nick1 by Not applicable
  • 3688 Views
  • 6 replies
  • 0 Likes

How to QOS Cisco Phones?

Architecture:

Hub and Spoke, Site to Site Ipsec VPN tunnel

HQ Site:

ASA5520

Call Manager

Cisco IP Phones

Remote:

PA5020

No Call Manager

Cisco IP Phones

Remote users connect to HQ via VPN tunnel between ASA and PA

QOS Policy

src.zone Inside dst.zone Inside to mat

...

PANoJAM by Not applicable
  • 3329 Views
  • 3 replies
  • 0 Likes

Resolved! Limiting the "admin" logging sessions

Hello everyone; some of you know if there is a way to limit the admin logging sessions. This is, if I logging in the firewall with the "admin" account from the PC A; and I try to logging to the firewall with the "admin" account from the PC B too; I s

...

Smartekh by L1 Bithead
  • 2407 Views
  • 3 replies
  • 0 Likes

User ID agents showing as red

I have 3 separate domains on my network and they are not trusted together.  On my main domain where the firewall is installed the agent shows green, however when I install the agent under the remote domains (on different subnets across the country) t

...

nthen by L3 Networker
  • 8940 Views
  • 22 replies
  • 0 Likes

NetConnect and GlobalProtect VPN Dual Setup in 4.0

We are still on 4.0. Is it possible to setup the GlobalProtect configuration while still in 4.0 and allowing Netconnect to continue working? This will allow us to create documentation for end users and distribute it and publish it before migrating.

T

...

parkerbc by Not applicable
  • 2876 Views
  • 3 replies
  • 0 Likes

Routing through virtual systems

Hello,

I have such situation that I need to make routing through virtual system. I added a network diagram below.

Maybe you guys can help me in this situation.

I want that traffic from Vsys2 can access GW_default as it can Vsys1. Also I want to control

...

aaputis by L0 Member
  • 1993 Views
  • 1 replies
  • 0 Likes

Resolved! Connecting two L2 segments via PAN?

I am trying to connect two separate Layer2 segments using the same VLAN ID 569 and same IP subnet 10.10.69.0/24.

The firewall has:

ae1 (mode layer2) with members ethernet1/1 and ethernet1/2

ae2 (mode layer2) with members ethernet1/5 and ethernet1/6

VLAN

...

efellows by L1 Bithead
  • 3025 Views
  • 3 replies
  • 0 Likes

GlobalProtect algorithms

Hi,

Does anyone know what kind of algorithms being used with GlobalProtect and how much a administrator can control this?

/kristian

kristian by L3 Networker
  • 2512 Views
  • 4 replies
  • 0 Likes

Resolved! What are the available variables for response pages?

What are the available substitution keywords for the response pages?  Do they differ by page?

I am trying to incorporate an email with all the pertinent information to be sent to our internal systems.  Unfortunately, the keywords that I have found for

...

kpatten by Not applicable
  • 8119 Views
  • 7 replies
  • 0 Likes

Resolved! Licensing scheme

Hi All,

Does anyone know the licensing scheme of PAN? Any document for based license? What will happen if they don't renew any of the license? will the box still works with outdated signatures? Hope you could share any document about the licensing rul

...

TSPI by L1 Bithead
  • 1925 Views
  • 1 replies
  • 0 Likes

LifeSize

Anybody by chance have a signature for LifeSize? I added it to the applications list with just the ports used and generic categories but without a signature but it doesn't seem to be working. I thought before I dug into making my own signature I woul

...

  • 23627 Posts
  • 107 Subscriptions
Top Liked Authors
Labels