General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Sophos Antivirus

Greetings,

Was wondering if any one else has faced this problem.

I have Sophos antivirus and when I create a rule with the vulnerability protection set to Strict, it blocks my connection to sophos server for updates.  Once I relax the VP rule, it looks

...

Resolved! IPSEC with Cisco ASA

Hello everyone.  I'm hoping someone may be able to help me out with this.  I am replacing Cisco ASAs with 5020s.  I have a lab 3050 setup and I have an IPSEC VPN tunnel between the 3050 and the Cisco ASA.  In my configuration, from the PA perspective

...

Instability of User ID Agent

Hi All,

     Trying to gather some hints/tips to provide some stability to our User Identification infrastructure. Currently we are running 2 x User ID Agents ( 4.1.6-5 ) on two Virtuals devices. After we upgrade 2 months back to this version we looke

...

dpenhall by L2 Linker
  • 3365 Views
  • 5 replies
  • 0 Likes

Resolved! Cannot block site viooz.co

This is an illegal movie site that shows anything even stolen movies for free.   The IP address is 5.199.170.104  I have tried blocking the site name, the ip.  Nothing works.  It's almost like the site is an anonymizer itself.  I would love any help

...

Resolved! Commit Failing on 5.0.2

Hi,

we have recently updated our our two PaloAlto 4050 from version 4.1.8 to version 5.0.2. Since after the update we face a lot of commit failing problems. and the device response becoming very slow.

is it a known bug ? or is there any way around ?

omer by Not applicable
  • 4859 Views
  • 10 replies
  • 0 Likes

LACP LAG

Does anybody know how to setup LACP lag on PA 5000 ver 5.04. SInce I am configuring active passive configuration and I have two core switches. I want core 1 to be my primary link and my secondary core as my secondary link from single firewall.

Thank

...

knesan by Not applicable
  • 2545 Views
  • 2 replies
  • 2 Likes

Faild Starting Phase1

Hi Group I am really ready to pull the hair out of my head.  

For 3 months or so, I have had a VPN between my PA-200 to a PA-500 at my remote office. All was working fine.

Last night I come back into the office to find the VPN down, and not sure why.

...

scantwell by L4 Transporter
  • 1989 Views
  • 2 replies
  • 0 Likes

Variable for hostname on responsepage

Hi,

I´m looking for a varible which resolves in the hostname of the responding Palo Alto. We are currently having an MPLS network with multiple subsidaries connect, each has it´s own lokal PA and one centrale internet breakout with a PA Cluster. I wou

...

u18195 by Not applicable
  • 3097 Views
  • 3 replies
  • 0 Likes

Need an advice

Hello team..

I need the best or a good advice to do the correct sizing for a PAN device, yo know I don't know if there is some sizing tool that can help me, or some document to read it and understand what is the best way to do the right sizning...

than

...

Resolved! Do I know when some vulnerability ID update??

Hello

I know vulnerability 30844 signature when date update last.

And I know it what version is last.

I can find AV signature from threat vault page in support site.

But I don't find to check it in CLI , GUI , Threat Vault etc.

Thanks

Resolved! List of available protocol decoders?

Anyone know where I can find a list of available protocol decoders in the PA's?  Is the "context" area of custom app/vuln sigs the only place where this is listed?  If so, that's not a very easy place to extract the list from.

mgentile by L2 Linker
  • 3987 Views
  • 4 replies
  • 0 Likes

Resolved! o session

Hi,

Have a installation with a PA-200 firewall.

It's a standard vwire-setup with policyes from untrust to trust. It is places between the ISPs router and another firewall.

The traffic is forwarding between the interfaces, but the PA-200 is counting 0 se

...

klumpen by L1 Bithead
  • 3316 Views
  • 5 replies
  • 0 Likes
  • 23583 Posts
  • 103 Subscriptions
Top Solution Authors
Top Liked Authors
Labels