General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

connection interrupt

Hi,An internal application is used for databese.It's default port is 5520when we saw this behaviour we wrote an application override rule for that tcp port and named a new application.after that we saw issue behaviour not changed(user is disconnectet from application sometimes, not everytime) but from logs we saw 2 applications match this traffi...

Destination NAT question

In this document is described how the NAT function at the Palo Alto.https://live.paloaltonetworks.com/docs/DOC-1517Has anything changed in the 5, in contrast to 4.1er?So far, the destination NAT zone was generally on the incoming interface as the source and destination zone.In the document is on page 20 (case3) and page 28 (Destination NAT) is t...

register by L1 Bithead
  • 2388 Views
  • 2 replies
  • 0 Likes

Resolved! Revert Panos

Hi,when we revert to 5.0.5 from 5.1.0 using maintenance mode (Panorama) will we lost all logs ? and config ?Thanks.

GlobalProtect clients logged as PA MGMT

Looking through my logs today and I noticed that connections initiated by clients using GlobalProtect are being logged as sourcing from the PA management interface. Is this expected/intended behavior? Shouldn't the log show the clients IP address?

Resolved! Data pattern

HI allI tried to created a data pattern with a regex like in the pan 205 training course.(Classified)|(CLASSIFIED) and this seams to be not working.and the workaround that I found is to create in the data pattern 2 pattern first : Classified second : CLASSIFIED and this work have you experiencing other issue with regex in panos ?

Gregoux by L4 Transporter
  • 2904 Views
  • 2 replies
  • 0 Likes

Strange URL request in botnet

Hi all, This morning, spending some time on my palo report and in botnet report there is many alert concerning repeted request to "84.39.153.31/SpamResolverNG/SpamResolverNG.dll?DoNewRequest"Does someone know what it is ? Is it part of Microsoft email server ?ThxV.

VinceM by L5 Sessionator
  • 2607 Views
  • 2 replies
  • 0 Likes

Resolved! Migration from Netconnect to GlobalProtect

Hi,We have a PaloAlto PA-2020 pair (active / passive) with PAN OS 4.0.14 and a lot of laptops with Netconnect installed.As we have been experiencing problems with Windows 7 64 bits when installing Netconnect we have planned to updatePAN OS to the latest versions.Wich is the recommended path upgrade?4.0.14 -> 4.1.0 -> 4.1.13or4.0.14->4.1...

URL Allow List filters are not functioning as documented.

URL filter is great when working with Categories, but when an exception is published in the allow list there are catches and exceptions.:smileyconfused:We block-continue Streaming Media, which contains Youtube, which we want to allow users access to without a block.I create an allow exception *.youtube.com/* and commit, open a new browser, clear...

allens by Not applicable
  • 4578 Views
  • 3 replies
  • 2 Likes

IP to user mapping unreliable

Situation: PC connected to our domain. Domain users log on to it. Domain users have internet access.The same PC is used for assessments. These (external) users log on with a local user account (not known as a domain user). These users are not allowed to have internet access.If a domain user has logged on to the PC, the IP is mapped to the user. ...

dieter_b by L4 Transporter
  • 19460 Views
  • 32 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels