General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 3452 Views
  • 0 replies
  • 0 Likes

Restricting Application Port

I would like to create a custom App for SMTP submission. All I really want to do is restrict the "smtp" App to use 587/tcp only. It's usual "default ports" action is to allow 25/tcp or 587/tcp.

I just tried to create a Custom App based on "smtp," but

...

cosx by L2 Linker
  • 3719 Views
  • 2 replies
  • 0 Likes

Resolved! Split internal and external DNS lookups

I am wanting to split internal and external DNS lookups on my PAN appliance to cut down on some traffic hitting our internal DNS servers.  I think I can use a DNS Proxy to specify where the resolution occurs and what interface.  Does anyone have expe

...

nthen by L3 Networker
  • 4616 Views
  • 3 replies
  • 0 Likes

Resolved! System Alert:Failure to check wildfire content upgrade

In last two days, I started getting system alerts that says "SYSTEM ALERT : high : Failed to check WildFire content upgrade info due to generic communication error" and another that says "SYSTEM ALERT : high : HA Group 1: Anti-Virus version does not

...

awarsame by L1 Bithead
  • 8949 Views
  • 5 replies
  • 0 Likes

Resolved! zabbix

Hi,

anyone has a document configuring an already installed Zabbix snmp for PaloAlto device ?

Thanks.

Delete Antivirus Dynamic Update

Hello,

I tried threats & antivirus license on a PA 4020.

My license was end, so I deleted it using CLI -> works fine

But how to delete antivirus dynamic update package ?? I can't by using web, I tried with CLI : delete anti-virus update (but the pack is

...

Can PAN device publish client certificates?

I made 5 users into LocalDB, and I configured GlobalProtect Portal & Gateway.

It works fine so far.

Now I want to generate 5 client certificates for each user and use Client Cert Profile and Local DB as two factor auth. when I connect to GP.

My PANOS is

...

emr_1 by L5 Sessionator
  • 3678 Views
  • 4 replies
  • 0 Likes

Best 3rd party VPN Client?

Ive got some power users demanding a different VPN client than GlobalProtect.

Has anyone setup a 3rd party VPN client (preferrably Windows built-in or something GPL'ed)? Did it 'just work' or did you have to tweek it a bit?

I tried windows 7 built in w

...

choff123 by L3 Networker
  • 4870 Views
  • 4 replies
  • 0 Likes

Resolved! Master key

Hi,

should we change Master key after a new installation for security purposes ?

Or not configuring this will cause any security weakness ?

Resolved! Monitor vpn interfaces

Hi,

According other discution I know that monitoring for tunnel interfaces through snmp is currently not possible. Would like to know if someone have done something to monitor them through the API ans can agree to share with us ....

V.

VinceM by L5 Sessionator
  • 3917 Views
  • 4 replies
  • 0 Likes

App History and Old Release Notes

We recently had the issue where something that was working broke. It may have been a case where a new App was added or updated by PAN and some traffic that used to match a more general application (e.g. "ssl" or "web-browsing") now seen as a new appl

...

cosx by L2 Linker
  • 3387 Views
  • 3 replies
  • 0 Likes

Auto update polices to Palo Alto

Hi all!
I use Splunk to monitor the system. I use a script to automatically extract the IP from Splunk and want to send it to Palo Alto to block this IP?

How do i do it?

Thanks

dat.tran by L2 Linker
  • 4891 Views
  • 5 replies
  • 0 Likes

Problem exporting logs

Hi everybody

I'm trying to export a traffic monitor log but I always have the same problem. If I try to export a week or a single day I only get about 7-8 hours and a file of 16Mbs with no more than 50000 or 60000 rows. I have modified the "Logging a

...

SOC_CSG by L4 Transporter
  • 4492 Views
  • 6 replies
  • 0 Likes
  • 24302 Posts
  • 122 Subscriptions
Top Liked Authors
Labels