General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4141 Views
  • 0 replies
  • 0 Likes

Can PAN detect this kind of malware?

I found following article.Sucuri ResearchThis is pretty interesting technique, though if people hits this kind of malware, is Threat Prevention (or might be wildfire?) able to detect this malware?Regards,

emr_1 by L5 Sessionator
  • 2080 Views
  • 1 replies
  • 0 Likes

Resolved! UID Agent Service Route Configuration

I managed to get User-ID tagging enabled and working on our PA-200 lab box. My question has to do with the source & destination configuration for the service routes. The PA box is identifying traffic from 192.168.10 and 192.168.11.x /24 networks that are plugged into ethernet 1 and ethernet 3 respectively. I have the source address of the...

mahrendt by Not applicable
  • 3688 Views
  • 2 replies
  • 0 Likes

Resolved! Logs Retention

Hello Guys,Just have few questions, is it possible to clear a specific set of logs? e.g. I want to clear the logs from January to March only and retain the logs from April onward. I asked this because some clients do not want to lose all the logs for some reason.thanks guys.

Resolved! No entries in Wildfire logs - PanOS 5.0

I'm not getting any log entries under the WildFire log page i 5.0. In the data filtering logs I have entries with both "wildfire-upload-success" and "wildfire-upload-skip". I was expecting to see these entries in the Wildfire log page as well. What is supposted to be logged in the Wildfire logs, and how do I get it working?

torm by L4 Transporter
  • 3299 Views
  • 3 replies
  • 0 Likes

Long commit time with 125 vsys

Hello,Running 5.0 code train, after we created 125 vsys on the PAN 5060 firewall and preloaded our standard panorama shared policies and address objects (3 pre polices, 1 post policy, and about 100 address objects). The firewall commit time is about 220+ seconds for a full or partial commit. I am trying to get PM attention but not getting much...

Cacti 5.0

Has anyone seen any issues with cacti and 5.0? Ours where all logging usage perfectly until the upgrade it which point they stopped. Now we just get SNMP errors as though the devices are down.RegardsDave

DaveM by L1 Bithead
  • 3787 Views
  • 4 replies
  • 0 Likes

paloalto-panorama App-ID missing?

Does anyone else find it strange that there's no 'paloalto-panorama' App-ID? There are paloalto-updates, paloalto-userid-agent and paloalto-wildfire-cloud App-IDs, but not one specifically for Panorama? (ssl on port 3978 essentially)

FQDN not resolved

HiOn a Palo Alto Firewall, we created an address object using FQDN Type.We use this object as a destination address in the security rule « TEST-FQDN-1 »But checking the security policy (show running security-policy) we can see the destination is not resolved (destination 0.0.0.0;)TEST-FQDN-1 { from any; source any; source-r...

Hub by L0 Member
  • 8975 Views
  • 9 replies
  • 0 Likes

Resolved! website slowness with DHCP Cable Modem

I recently installed a PA-200 and many websites are either very slow to load or have to be refreshed multiple times in the browser. Tried multiple browsers so not browser specific. Running a PA-200 with DHCP to Time Warner on the Untrusted interface. PA support had me change the MTU size on the untrusted interface to 1452 and also check "Adju...

danlukas by Not applicable
  • 8570 Views
  • 16 replies
  • 0 Likes

Resolved! Virtual Systems Shared Gateways

Is it possible to have multiple shared gateways when running virtual systems.I'm essentially trying to have 1 physical interface, shared among virtual systems, with an IKE gateway configured on it, so I can have multiple IPSec VPN tunnels established on that interface (the tunnel interfaces will belong to different virtual systems). And another ...

Resolved! no nat

hello i'am configuring a paloalto firwall wish is the backward firewall, i'm facing problem with nat , users must be integrated in the frontal firewall users passes by paloalto firewall first then the frontal firewall, when it pass by pan their adresses changes by nat , and the frontal firewall does'nt reconginze them ,wish is a hige probl...

atelcom by L3 Networker
  • 9388 Views
  • 10 replies
  • 0 Likes

RPC Service

hello everybody,I need to write a rule that allows RPC Service activity for SUN SNMP to DMI mapper daemon.any idea?thanks in advance.

  • 24340 Posts
  • 124 Subscriptions
Top Liked Authors
Labels