General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 407 Views
  • 0 replies
  • 2 Likes

Resolved! Need help with BGP in Active/Active HA

We have a pair of 5520's in Active/Active mode at a colocation facility.  The colocation facility is handing off to us 2 separate LC fiber connections, each has it's own public /30 address but utilize the same AS number for our BGP.  We have a /24 fr

...

Commit failure 4.1.10

After my Palo Alto 2050 in HA active/passive is up for about 1 week, I begin to get errors committing policies.

Management server failed to send phase 1 abourt to client logrcvr

Management server failed to send phase 1 abourt to client sslvpn

Management

...

EdwinD by L3 Networker
  • 4994 Views
  • 8 replies
  • 0 Likes

Resolved! The hunt is on - 0day for java 1.7u10

How many hours/days will it take for:

1) Wildfire customers

2) Regular customers

to get protected by a threat-db update regarding the latest 0day exploit for java 1.7u10 (and possible java 1.6u38) as descibed in:

Malware don't need Coffee: 0 day 1.7u10 s

...

mikand by L6 Presenter
  • 6382 Views
  • 14 replies
  • 2 Likes

Resolved! Upgrade Palo Alto version

Hi,

I have 2 problems:

1) I refresh the Software in my Palo Alto and i cant see the new versions 5.x. The last version that i can dowload is 4.1.11. Why i can refresh the new releases????? I attached a screenshot with the error and the succesfull conne

...

Resolved! Problem LDAP

Hi I have a problem with my firewall palo alto. I hope you can help me

I had configured an LDAP server (Active Directory) in my Palo Alto. Also I had created two Atuhentication profile. One for VPN access and another for the administration of Palo Alt

...

QoS

Hi,

Please help me out with the below issue and relevant links to configure QoS also will be helpful.

I have configured QoS Profile for class 8 traffic. and QoS Policy .. and then assigned the QoS Policy to an physical interface.

I have initiated some c

...

HA and stateless connections...

Ok, I have what may be a newbie type question, but it is one that I wanted to ask.

In the PA 201 class, they teach for HA, that stateless connections are not synched.

What is considered a stateless connection?  I do not think it would be UDP traffic (a

...

scantwell by L4 Transporter
  • 2750 Views
  • 4 replies
  • 0 Likes

Resolved! Global Protect portal authentication with LDAP fails

We have set up GP to authenticate against an AD server . User group mapping has done and u can pull the users . However, whenever you try to connect with one of the  users from the GP client or portal web page ,  you get authentication  fails message

...

usvi by L3 Networker
  • 3952 Views
  • 9 replies
  • 0 Likes

Resolved! vwire policies

HI all,

when we deploy the paloalto firewall in vwire mode and we have multiple zones (system zone, application zone, bdd zone), can we create rules to permit traffic between these zones through pan firewall ??

thank's in advance

atelcom by L3 Networker
  • 4626 Views
  • 4 replies
  • 0 Likes

Palo alto starter questions

Hi,


Iam a starter for paloalto .. I have few questions so any answers on this will be help full...


  1. What is dynamic block lists and how can we use that?
  2. What is disable server response inspection in a security policy?
  3. how to add virus exceptions based on
...

Wildfire - Time required to block known malware

Using the 'free' Wildfire service, does anyone know how long should I expect the delay to be before downloads marked as malware are blocked subsequently?

For example, today we had a download ("pdf_delta_ticket.scr" below) that was logged as upload-ski

...

apackard by L4 Transporter
  • 2570 Views
  • 3 replies
  • 0 Likes

Resolved! Panorama WildFire Reporting

Hello,

I could not find any documentation on this inquiry.  Is it possible in 5.0.x to get the Wildfire aggregation logs from all my PAN devices to the Pano log Monitor for central reporting? Thanks!

Mike

CRHC by L4 Transporter
  • 3032 Views
  • 3 replies
  • 0 Likes

Resolved! Skype IM Problem

Hi,

I've some problems with skype instant messaging.

Sometimes the messages are not sent.

Checking firewall logs I see when messages are not sent an 'unknown-tcp' connection is denied.

Same destination port (but different ip) were used and recognized bef

...

diennea by L3 Networker
  • 16359 Views
  • 40 replies
  • 0 Likes

Resolved! PAN-OS User-ID agent limits

I have found documentation that states that the UserID software agent can support up to 100 domain controllers and/or Exchange servers. Is this for both the standalone agent and the built-in agent on a 5.0 firewall. Or is there a smaller design limit

...

scantwell by L4 Transporter
  • 5140 Views
  • 1 replies
  • 0 Likes
  • 23695 Posts
  • 110 Subscriptions
Top Solution Authors
Labels