General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4142 Views
  • 0 replies
  • 0 Likes

Strange URL request in botnet

Hi all, This morning, spending some time on my palo report and in botnet report there is many alert concerning repeted request to "84.39.153.31/SpamResolverNG/SpamResolverNG.dll?DoNewRequest"Does someone know what it is ? Is it part of Microsoft email server ?ThxV.

VinceM by L5 Sessionator
  • 2614 Views
  • 2 replies
  • 0 Likes

Resolved! Migration from Netconnect to GlobalProtect

Hi,We have a PaloAlto PA-2020 pair (active / passive) with PAN OS 4.0.14 and a lot of laptops with Netconnect installed.As we have been experiencing problems with Windows 7 64 bits when installing Netconnect we have planned to updatePAN OS to the latest versions.Wich is the recommended path upgrade?4.0.14 -> 4.1.0 -> 4.1.13or4.0.14->4.1...

URL Allow List filters are not functioning as documented.

URL filter is great when working with Categories, but when an exception is published in the allow list there are catches and exceptions.:smileyconfused:We block-continue Streaming Media, which contains Youtube, which we want to allow users access to without a block.I create an allow exception *.youtube.com/* and commit, open a new browser, clear...

allens by Not applicable
  • 4585 Views
  • 3 replies
  • 2 Likes

IP to user mapping unreliable

Situation: PC connected to our domain. Domain users log on to it. Domain users have internet access.The same PC is used for assessments. These (external) users log on with a local user account (not known as a domain user). These users are not allowed to have internet access.If a domain user has logged on to the PC, the IP is mapped to the user. ...

dieter_b by L4 Transporter
  • 19561 Views
  • 32 replies
  • 0 Likes

In 5.0.1, what is the full URL to the various captive portal pages?

Hey everyone,I'm using a PA-2020 on the latest version, 5.0.1. I need to be able to test the end-user experience with Captive Portal. I am also extending some effort to customize the various result pages that users will see, so I need to be able to validate them also once my custom pages are uploaded. I was thinking that the best way to test th...

jmegna by Not applicable
  • 3105 Views
  • 1 replies
  • 0 Likes

How to handle firewall self-traffic (management traffic / service routing)

Hi,when I have a global clean-up rule that blocks/logs all unwanted traffic, my firewall management traffic (DNS lookups, PAN-DB updates etc) stop working if I configure it to use any other interface but the dedicated management ports. So I added a lot of rules to allow this traffic. Which is really not what I want. I also see inconsistencies. ...

WWW vs No WWW

I submit URLs to BrightCloud regularly (several times a week). Most URLs once updated to the filter database work fine with or without the www as part of the URL. Every so often I will come across a situation where a URL won't load. For instance, http://www.paloaltonetworks.com won't load (says category: unknown) but http://paloaltonetworks.c...

TNaami by L1 Bithead
  • 4457 Views
  • 5 replies
  • 0 Likes

Blocking Cloud-Based services

Hi GroupI am looking for some practical experience on how to best block as many cloud-based services as possible.I know I can probably create some Dynamic Filters for some apps, but other may need to be controlled differently (SSL decryption, block the domain name, etc).I am wondering what the bulk of firewall admin or others are doing in such c...

scantwell by L4 Transporter
  • 3492 Views
  • 2 replies
  • 0 Likes

Multiple Domain and domain name

Hello,I have deployed 1 cluster of PA 3020(5.0.5) and UIA on 2 servers of the domain.The domain architecture is as following:1 parent domain: idf.local6 child domain: xx.idf.local, yy.idf.local, ...UIA works well and we have good informations on the PA with NETBIOS domaine nameshow user ip-user-mapping all:IDF\user1XX\user2YY\user3But with the g...

Panorama Log Collector - No Seq Num Acked

I have a deployment that has a pair of M-100s in HA and each of them has a full disk array that's split out into two separate log collector groups. It seems as if there's an issue of Panorama communicating to the collector devices that should be forwarding to the collector group. If I look at the local device I see:"'Log Collector log forwardi...

dmeier2 by Not applicable
  • 3163 Views
  • 3 replies
  • 0 Likes

Problem on Web Management Interface

Hi All,Our PA500 (PAN OS 5.0.4) recently behave unusual, sometime its kick user from web interface after log in for 10 or 15 minutes.The only error message that I received in the browser said "XML not responding".Further check in the logs I got this error :websrvr: Traceback (most recent call last):. File/usr/lib/python2.4/site-packages/masterd/...

URL Security Profile DENY not logging

Having an issue with URL filtering not logging the Streaming Media....BLOCKED. PA is allowing certain individuals based on Security policy and logging it to MONITOR. It also is blocking other users not allowed by the URL Security Profile, but not logging in MONITOR with a DENY ... Any Ideas? Thanks Jerry

Jshively1 by Not applicable
  • 2183 Views
  • 2 replies
  • 0 Likes
  • 24340 Posts
  • 124 Subscriptions
Top Liked Authors
Labels