General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 222 Views
  • 0 replies
  • 0 Likes

Multicast Packets forwarding

Hi Guys,

Looking for some help!

Quick simplifiy overview of the setup.

PA is the DHCP Server for two subnets:

Subnet A

10.101.0.0/16

Subnet B

10.102.0.0./16

All wireless clients are in subnet A  conencted via seperate enterprise Wireless LAn Controller and A

...

JAG by L1 Bithead
  • 7759 Views
  • 9 replies
  • 0 Likes

Login failure notification

I am looking for a method to send a notification by email when authentication to the firewall management is attempted but fails.  It would be acceptable to get an email for successful authentications as well.  Overall I am looking for methods to help

...

bogleric by Not applicable
  • 3040 Views
  • 2 replies
  • 0 Likes

Resolved! GlobalProtect Port 80 ,443 Incomplete


Hi

I'm Trying to set an enviorment to my mobile users (Laptops of Salesman), I used the Globalprotect to provide a secure tunnel to the office Firewall and

then gave the users access to terminal server, and it worked fine.

last week we installed a new S

...

ShayBar by L1 Bithead
  • 9651 Views
  • 11 replies
  • 0 Likes

Resolved! Cisco Guest Wireless - Issues?

Hi all,

I recently installed a PAN 5050 cluster in-line between my internal Cisco Wireless Controllers and the DMZ guest access mobility controller and saw the control and data paths flap constantly.  I put in an application override rule (along with

...

Packet Capture (VLAN)

    How can i capture the packets for only one VLAN? I have a virtual Interface ethernet1/6.40 and if i use a filter for only the interface (ethernet1/6) the PA doesn't capture anything.

Data Filtering / URL Logs into Splunk

Hey Guys,

I have the Palo Alto App working for the Threat/Traffic Logs.

However, I would like to do the same for the Data Filtering / URL Logs.

Is this possible?

Let me know if it is and how to do it.

Thanks.

Brian

ikinnexi by Not applicable
  • 5531 Views
  • 3 replies
  • 1 Likes

Youtube video seen as http-audio application

Greetings,

We have run into an issue in our deployment where SOME (really only a few) Youtube videos don't play, the user gets an error 'An error occurred, please try again later'.  In the traffic logs, I see traffic that is recognized as application

...

Resolved! Manage IDS signature through the Panorama

My environment  has firewalls, which are being managed by the Panorama.

Today I am not  managing  the rule sets of these firewalls from the Panorama, but I intend to do so in the near future.

Is it possible to modify/create  new IDS signatures and pus

...

Resolved! Logging IM

Greetings PA community.  I have a question about leveraging our PA firewalls (pair of 5020's) to log instant messaging.  We're a government agency and some of our employees use instant messaging for business purposes and we MUST log these chats as pa

...

josh_ward by Not applicable
  • 2121 Views
  • 1 replies
  • 0 Likes

High Availability with Virtual Wires?

Hi,

I've been looking everywhere and I can only find information on virtual wires being used for path-monitoring in HA. What I'm looking for is if when in HA, do the virtual wires fail over? If they do fail over is there a best practices document det

...

nugentec by L1 Bithead
  • 13697 Views
  • 9 replies
  • 0 Likes

HA path monitoring in virtual wire

I've seen a couple answers here about using Path Monitoring in Virtual Wire. They say that one must use an IP address within the Virtual Wire subnet as the source address. OK, I get that. What I don't get is how to configure such an address. I don't

...

gmparis by Not applicable
  • 13154 Views
  • 22 replies
  • 0 Likes

Resolved! licensing VPN clients

hi!

I would need some help understanding the PAN licensing model fo VPN clients. we are planning a new deployment and would like to offer our clients (Windows and iOS based) the possibility to access corporate resources. since only a very basic functi

...

santonic by L6 Presenter
  • 3992 Views
  • 4 replies
  • 0 Likes

Resolved! Do I configure proxy-id in ipsec-vpn certainly?

Hello all,

What is proxy-id in ipsec-vpn configuration??

Why does it need??

I will use ipsec-vpn on PA-2020 & PA-500.

Each devices have 15 proxy-id(remote-networks).

I know one tunnel interface has 10 proxy-ids.

So I have tested without proxy-id that traff

...

  • 23615 Posts
  • 107 Subscriptions
Labels