General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Multiple NAT and Private IP Addressing - Help Needed

Hi,I'm relatively new to PA firewalls, so please forgive me if this is not explained well.I have a PA-500 with PANOS 5.0.0. Im using three interfaces at present - e1/1 - internal network, e1/2 - Internet untrust, e1/3 internet untrust (private ip 169.254.0.1/32)At present I have my rules configured and my NAT commands for my internet connection ...

logged in user are sent to captive portal

heywe have a situation the loggen in users are sent to the captive portal. event a few minutes or an hour after they have logged in to the conuter.1) when this is happaning then the ip-user mapping shows no user for the IP2) we cant simulate this behaviour3) we played arround with the ip-port mapping timeouts4) client probing is turned on and we...

minow by L4 Transporter
  • 6162 Views
  • 11 replies
  • 0 Likes

Resolved! commit is failing

unable to commit please help in troubleshootingPA version: 5.0.3thanksadmin@PA# commit force..........................Management server failed to send phase 1 to client authdCommit failed[edit]admin@PA# run tail mp-log authd.logJul 11 17:33:53 pan_authd_generate_system_log(pan_authd.c:914): CC Enabled=FalseJul 11 17:33:53 pan_get_system_cmd_outp...

minow by L4 Transporter
  • 7044 Views
  • 5 replies
  • 0 Likes

Resolved! DHCP server runs out of ip pool interface Error

We are using a PA-200 for our test network and have DHCP configured on the FW. We have test devices that generate a new MAC address everytime it reboots.. so our scope is out of address. Is there a way to clear all current IP's and start fresh?

rrau by L3 Networker
  • 4586 Views
  • 2 replies
  • 0 Likes

User-ID Agent Logging

We're thinking about enabling user-id agent and captive portal to more closely monitor and segment our user permissions. I'd like to know, however, if there is a document somewhere that details what information is captured and logged regarding username->ip address mapping through user-id agent. Does such a doc exist?

Resolved! Traffic summary databese

Hi,When there is no log related to a date range we can take a report for tht range from traffic summary but not traffic(detailed).it is normal for detailed since there is no log.So how can we take report summary for that range.Why is that ?

Mult-Vsys Routing

Greetings,Currently, we have a project underway to extend our internet redundancy. We have a pair of 5050's that have 3 Vsys at our main DC and a pair of 5050's which currently had two identical Vsys (the 3rd Vsys is irrelevant in this case and will only reside on that one pair). Here is the breakdown (some simplification happening):Vsys 1 = E...

mrsold by Not applicable
  • 3925 Views
  • 4 replies
  • 0 Likes

Resolved! management GUI issue

Hi,I have a PA-200 with PANOS 4.1.13.After some changes in configuration and after a commit, I lost connection to the management interface and now it is impossible to connect by web GUI.Only SSH CLI is running. How can I check by CLI what happened ? The system services SSH, HTTPS and PING are enabled and all IP are permitted to connect to manag...

lauro7 by L0 Member
  • 9073 Views
  • 10 replies
  • 0 Likes

Layer3 forwarding

Hi all,Even I do not choose this function I can use layer2 vlan interface's as layer3.I could not understand what does "layer3 forwarding" function really do .Can someone explain this ?Thanks.

1.8 Migration tool - JunOS file issue?

Hi all,I've got version 1.8 of the migration tool running fine in vm.I SSH'd to my SRX JunOS firewall, did a "show conf" copied/pasted into notepad and saved it as config_junos.txt. File is uploaded, status bar shows file uploading, no errors.Then it dumps me into the JunOS panel screen. I'm expecting to see the objects, services, etc in the le...

H_Ax by Not applicable
  • 2410 Views
  • 1 replies
  • 0 Likes

Ipsec Vpn with NAT'ed partner gateway

Hi folks,we are already running several ipsec vpn successfully, but now we have a problem.the partner gateway nat their internal networks due to ip conflicts to the external public ip address of the vpn gateway (which works on a checkpoint gateway without any problems).To move it to the PA5050 I configured the external IP as gateway ip and as th...

Netflow stopped working

I am currently running PanOS 5.0.2 and I'm not sure with which update Netflow stopped but I noticed I am not getting any data as of late. I have Netflow configured to point to my monitoring server on the standard port 2055 and the monitoring software is called Sanforce Packet Trap. Netflow is working on the monitoring software because I also ha...

CBIJonE by L0 Member
  • 3760 Views
  • 4 replies
  • 0 Likes
  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels