General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! URL-Filtering: Use profiles or specify categories in rules?

Hi,there are two ways to select which URL categories should be allowed/blocked: You can either create a URL-Filtering profile and attach it to firewall rules, or you can specify URL-categories directly in the firewall rule (destination). Specifying URL categories directly in the firewall rule seems to have the advantage that you can immediately ...

Resolved! Layer7 Filtering - Bad Bots

Hi all,I'm new to PAN OS and working on a project to migrate from a Cisco ASA to a PA 5020.With the migration I need to bring over a policy that drops http traffic with a user-agent header matching on a regx.I've created a custom vulnerability (see attached), but don't really have a way to test it out.Is a custom Vulnerability the best approach ...

AmyTyler by L2 Linker
  • 5535 Views
  • 5 replies
  • 0 Likes

Resolved! i'd like to show the disk usage on the M-100(Panorama Appliance).

Hello there. I have a M-100(Panorama Appliance) and I'd like to know command line to check the disk usage of a M-100(Panorama Appliance).If i use a command line on the PA-5060, i can see the current disk usage like below. command line : show system logdb-quota=== part of the result ===Disk usage:traffic: Logs: 11G, Index: 17Gthreat: Logs: 1.1G, ...

willstech by L3 Networker
  • 19884 Views
  • 4 replies
  • 0 Likes

Resolved! cacti graphs

Hi,I configured to use snmpv2 with cactiI found it's document on community but getting graphs empty.Aslo active sessions always -1

HA base on VM 100

I try to find information about HA on VM-100 some restriction exist or not with Active activ mode or active/passive modeor it is recomended to use the Hypervisor High availability foncionality ?

Gregoux by L4 Transporter
  • 3277 Views
  • 3 replies
  • 0 Likes

Resolved! Can a pa200 be configured for shutdown via ups

Ive confighred APC network shutdown on my windows servers but im not sure if i can do the same for the firewalls.I did something similar with my checkpoin firewalls from expert mode, but i used the redhat varient of the ups software which is what checkpoints kit is based on.Im not sure what panos5 is bassed on or if i can just use generic linux ...

Can I count the number of An-virus signature in my PAN device?

Hello, Guys.Thanks ahead first.Out customer want to know how many anti-virus signatures are enabled in their PAN Device. I've heard that there's no CLI command or information about this. Before I give my answer to the customer, I want to double-check this.And normally how do you react in this kind of situation? What's the best answer for the cus...

JTR by Not applicable
  • 3828 Views
  • 3 replies
  • 0 Likes

Setting Up PPPoE

Hi All,Having a little trouble in setting up a PPPoE connection.Does anyone have a working config they are able to share with me as to how the Virtual Router is configured, the L3 interfaces etc as well as the outbound and inbound NAT'ing as this IP on the PPPoE connection will be dynamic.Many ThanksMarc

Resolved! Certificates troubleshooting

Hi! we are trying to implement a SSL VPN connection through Global Protect using certificates from our own CA. We imported the root, intermediate and server certificate, but after configuring the portal we see an warning after commit: " cannot find complete certificate chain for certificate.." , and we don't see any traffic from the Palo Alto tr...

Diffrent global protect client configuration

Heywe have a setup that the client have 3 diffrent type of users connecting with global protect, and all need different configurationas i see it the only way is to configure 3 different portal for each user typeam i right?

minow by L4 Transporter
  • 3708 Views
  • 4 replies
  • 0 Likes

Non logging issue

OK a little background first I'm running 4.1 on a 5050 pair in A/P. I have a server that is trying to do 80 and 443 out to a specific address and we have some logging wierdness going on. If we don't have a rule in place allowing the traffic it will not show up with a log entry. If I do a packet capture I see it in the receive stage but not an...

Brinkman by Not applicable
  • 13453 Views
  • 31 replies
  • 0 Likes

Resolved! OCSP service route?

Question: What service route does the PA take for his OCSP requests?Since we can not choose anything under the service routes, I suppose it will use the management as default...Is there any way to change this to some other interface?Linus

mr.linus by L4 Transporter
  • 8479 Views
  • 8 replies
  • 0 Likes

connectivity issue when firewall HA failover

Did anyone encounter such issue?We noticed that whenever the firewall triggered a failover (FW1 to FW2).external services seem to be disrupted. eg1 :Gomes monitoring informed of connection/performance issues (though we test from some countries to be ok) eg 2: FTP services from various country reported connection problem (China, Taiwan) But when...

ateo by Not applicable
  • 4501 Views
  • 5 replies
  • 0 Likes
  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels