General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1656 Views
  • 0 replies
  • 0 Likes

Resolved! differentiate between IE and FF

Hi,

is it and when how is it possible to make a difference between a source which is using IE (company-standard) or firefox. I want to deny firefox-traffic.

We use v5.0.3

Cheers Klaus

kdd by L4 Transporter
  • 2963 Views
  • 2 replies
  • 0 Likes

SSL Sites bypass URL Category block

Good Day Guys and Gals

I need ideas on the following issue please! I have a block on all Social networking sites for the company. The Policy works great when the user tries to access http://plus.google.com, but when they use SSL (https://plus.google.c

...

u7285 by Not applicable
  • 10190 Views
  • 13 replies
  • 0 Likes

Resolved! Multiple IP addresses on an interface

I know that I can add a second IP to my outside interface by using a /32 instead of /24 like the first one has.  My question comes in with routing.  My default route shows a 0.0.0.0/0 going out ethernet1/1.  Since this interface has 2 IPs what IP doe

...

nthen by L3 Networker
  • 4326 Views
  • 3 replies
  • 0 Likes

Unable to assign Security Policy to Users or Groups

Hi -

We are using User-ID Agents to create user-to-IP mappings and I've got group mapping configured on the firewall itself and I can browse through my ldap groups.  However, when I go to Policies > Security Policy I am unable to select either individ

...

Looking for advice on App-id configuration

Looking through the white papers and documentation, I didn't really find much as to a recommendation on how to tackle the task of app-id configuration as a whole. Have any of you found any documentation that was helpful in this area? One approach I w

...

Route checking using CLI issue ?

Hello,

We are using PA3020 in L3  A/P cluster mode. PanOS is release 5.0.2.

We are using static routes to reach our different subnets.

When trying to check a route destination to verify the path using the CLI, nothing is shown as there was no route for

...

ldormond by L3 Networker
  • 4916 Views
  • 3 replies
  • 0 Likes

Current situation with Dropbox?

Hi,

what is the current "state" with PAN firewalls when it comes to decrypting Dropbox traffic? I found a lot of threads on the forum, some with contradicting information. It was said that Dropbox was put on an internal ssl-exclude list so the firewal

...

Resolved! Packet Capture stopped working

Hi,

the last days I did some captures on a PA-2020. At Yesterday I tried again but it doesn't work anymore. Tried via WebGUI and CLI.
If I start the capture it is shown running but no files are created. PAN-OS is 4.1.12.

Does anybody know this issue? C

...

JoergK by L2 Linker
  • 12372 Views
  • 9 replies
  • 1 Likes

Resolved! RADIUS and CISCO ACS v5.1

Hello!

Is it possible to configure the PA to read the RADIUS logs in Cisco ACS v5.1? Can the PA map users which have authenticated to a RADIUS server, the external DB being AD?

Resolved! Palo Alto drops current local login when using RDP

Hi!

We are currently using a PA500 appliance using User ID Agent on Windows Server 2008 R2.

My profile account (ex. super_user) is exempted to all which means I have no restrictions in accessing any websites.

Apparently, when I RDP our servers I have to

...

mapfre by L0 Member
  • 2676 Views
  • 2 replies
  • 0 Likes

Palo-Alto 500 replace bluecoat proxy server

Hi gues!

LAN -> Bluecoat | Palo-Alto -> Internet

Is any one have an experiance with raplace bluecoat proxy server with palo-alto.

Is palo-alto can be proxy server for network?

Please share your experiance.

Thanks in advance.

Ulugbekyu by Not applicable
  • 5574 Views
  • 4 replies
  • 0 Likes
  • 24215 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels