General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 678 Views
  • 0 replies
  • 0 Likes

Mail server getting blocked when downloading files

I have an exchange server that is getting block-continues for file types that are not being explicitly blocked...pdf, jpg, etc.

It has no way to continue.....

I believe it must be some default behavior I am not aware of in the AV or AS profiles?

Where a

...

Resolved! Unable to connect Global protect portal,..

Hi All,

I am able to download GP client software, But using the same credential not able to connect to portal, giving error : portal error - unable to connect to portal. Only through one machine i am able to connect to portal using same credentials wh

...

Gururaj by L4 Transporter
  • 2172 Views
  • 1 replies
  • 0 Likes

Resolved! Tunnel Interface IP Address

Can somebody explain to me the need for the tunnel interface IP address? Apparently a VPN tunnel requires a tunnel interface configured with an IP address when using dynamic routing. Is that a dynamic gateway the PA is connecting to or the PA is usin

...

Resolved! what is standard port of ms-dtc app-id?

Hello.

I checked that ms-dtc standard port is tcp 139 on applipedia. I created couple of security rule for ms-dtc app-id and one was applied application-default at service column and other was applied specific service port tcp-49210, tcp-49217, tcp-49

...

Roh1 by Not applicable
  • 4686 Views
  • 3 replies
  • 0 Likes

Resolved! SNMP request failed

Hi, I try to request to PA-5020 with S.O. 1.4.7 some snmp traps for extract certain information about fo temp, cpu used, max sessions, etcetera.

But when i try to extract the information since my snmp tool called snmpcheck the result is "Request Faile

...

Juniper ScreenOS VPN to PANOS

I have a Juniper firewall with ScreenOS 6.2 that I am attempting to build a LAN to LAN VPN tunnel to a PAN firewall with 4.1.10.

A quick overview of my setup. We have to frequently setup networks that are "mobile" for company meetings or whatever. We

...

Dynamic updates download but not install on HA

We've got an HA pair of 5050s.  They both have a job to download and install dynamic updates at 12:00 AM.

I've seen occasions where one of the boxes will download but not install the update.  They are also set to push a version of the update to the HA

...

aglej by Not applicable
  • 2229 Views
  • 1 replies
  • 0 Likes

Resolved! Device Group and Template admins in Panorama 5.0

After upgrading Panorama to 5.0 I can't find the option to limit access for an administrator to a specific device groups or templates in the webgui. In 4.1, it was possible to configure this under "Administrators" in the device tab. This option seems

...

torm by L4 Transporter
  • 2436 Views
  • 2 replies
  • 0 Likes

Approach to manage FTP

Based on recent research by Palo Alto there appears to be a greater emphasis needed  on managing FTP.  What approach have you found  most easily to deploy?  The two options I can think of are:

1. Controlling who can do FTP

2. Only allowing FTP access t

...

HITSSEC by L4 Transporter
  • 2067 Views
  • 2 replies
  • 0 Likes

Resolved! Could M-100 support shared policy of panos 4.1 device?

Hello.

I wonder about M-100 could support shared policy of panos 4.1 device or not. I tested about that and M-100 could not sync of shared policy for panos 4.1 device but panos 5.0 device is doing well.

Thanks.

Regards.

Roh1 by Not applicable
  • 2259 Views
  • 2 replies
  • 0 Likes

Custom URL Filtering

Hi All

I am trying to get customer URL filtering working and it's not making much sense to me.

What I need to do is protect the Exchange server by allowing only connections to OWA and not ECP etc.

I've created a Customer URL Category called 'OWA Sites'

...

TDC by L1 Bithead
  • 4516 Views
  • 3 replies
  • 0 Likes
  • 23961 Posts
  • 113 Subscriptions
Top Liked Authors
Labels