General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4473 Views
  • 0 replies
  • 0 Likes

Resolved! How to use Wildfire for Android APK

I found following new press release:Palo Alto Networks WildFire Protects Against Cyber Threats Targeting Android Smartphones and TabletsI have PaloAlto device with Wildfire subscription.The device is running on PANOS 5.0.6.How can I use this new wildfire?Does it mean I just change configuration of File Blocking to upload .apk files?If someone kn...

emr_1 by L6 Presenter
  • 6602 Views
  • 8 replies
  • 0 Likes

Resolved! acc top source destination

Hi,When we look to ACC tab top source or top destination is not seen.When we click over an application and after close it, these top values come.is that normal ?Thanks.

PanIst by L3 Networker
  • 2647 Views
  • 2 replies
  • 0 Likes

Resolved! Scanning network flow using file name

Hello,Any know an opportunity to scan network flow with PaloAlto to find files by file name? Eg.: i entered "angry tiger" and i find all files (including all file types) with that name sent over the network.

Interface by L3 Networker
  • 6207 Views
  • 7 replies
  • 0 Likes

Resolved! interesting PPPoE Problem

Hi guys,i am currently tasked to replace two firewalls we have in the company. The first is a small cisco ASA 5505 for client breakout and a MS TMG(yeah i hate,too) for publishing the Servers.For the first step I am trying to replace the ASA. WAN connection is established via ADSL and PPPoE. The session is build just fine, traffic is allowed via...

vertical by L2 Linker
  • 13580 Views
  • 12 replies
  • 0 Likes

Resolved! GMAIL Base and SMTP - WTF??

Folks.The latest content update (pushed today, my time) gave me the following warning in the task when I installed itVSYS1: Rule 'Outbound_Traffic' application dependency warning: Application 'gmail-base' requires 'smtp' to be allowed, but 'smtp' is denied by rule 'Outbound_Bad'WTF? Since when does GMail require SMTP? The local installations don...

darren_g by L4 Transporter
  • 16351 Views
  • 20 replies
  • 0 Likes

Invalid threat ID number, next steps

In the threat logs, the PAN is detecting a virus for internal traffic, server to client, but the threat id doesn't match anything in the threat vault, 1 number too short, 253879. What's the best way to identify if the threat is legitimate, not a false positive? application = ms-ds-smb, url LogoinScript.VBS

tstores by Not applicable
  • 2616 Views
  • 1 replies
  • 0 Likes

Same traffic traverses the firewall twice.

I will try to draw this out the best I can and then ask my question.Remote Site (zone is trust, vrouter2, tunnel.1) <<>> Core network (zone is trust, Interface 1/10, vrouter2, layer3) Rule for this is any, any in both directions.The above is how all remote traffic flows. (all traffic hits the core)Core Network <<>> interf...

rbit0965 by L1 Bithead
  • 6020 Views
  • 6 replies
  • 0 Likes

Resolved! GlobalProtect Portal konfig update on Windows

Is there a way to force an update of the GlobalProtect configuration on a windows agent?I`m testing different configurations but the client would update the config, probably because of the "Config Refresh Interval (hours)"RegardsKristian

kristian by L3 Networker
  • 3951 Views
  • 3 replies
  • 0 Likes

iMac updates and traffic monitoring

I have permitted apple-updates and users have confirmed that they are able to perform their updates. However, a user in is unable to perform updates as it appears that he is being blocked.All our firewall and filtering is carried out by PAN and I am usually view traffic from a user's PC computer and figure out what is being blocked by the one of...

PeterG by Not applicable
  • 2370 Views
  • 2 replies
  • 0 Likes

Resolved! Threat search by name

Hi,If i have just threat name (eg.: Suspicious Content Found in 404 Page). How i can find this threat in a threat log? Is any search by name? Or i need to look all log by my self?

Interface by L3 Networker
  • 3218 Views
  • 3 replies
  • 0 Likes

Subtype "4" in Traffic log

PAN OS 5.0.0 on VMWareI see a lot of subtype "4" in my traffic log. I also see start, end, deny, drop, so I'm sure it's not just a display error meaning one of the listed.Does anyone know what "4" means?ThanksAndre

u13550 by L3 Networker
  • 3991 Views
  • 4 replies
  • 1 Likes

telnet with EBCDIC encoding

We are having some issues with IBM telnet (tn3270) through a PA-200. The telnet sessions are very sluggish. I had to remove the firewall to restore performance. The telnet is using EBCDIC encoding. I had been specifying a security policy using the application telnet. When I get a chance I will change that to service port 23 and test again. ...

oshcomp by Not applicable
  • 4901 Views
  • 5 replies
  • 0 Likes

Resolved! Disabling warning messages during commit

Hi,I get a lot of warning messages during commit, regarding rules shadowing, application dependency, etc.I've been looking for a way to disable some or all of the warning messages, but with no luck.Anyone know if it is even possible?

JFunk by L0 Member
  • 4433 Views
  • 2 replies
  • 0 Likes
  • 24380 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels