General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4115 Views
  • 0 replies
  • 0 Likes

Resolved! Question on Anti-Spyware DNS signatures

Hi,as far as I understand Anti-Spyware profiles, the DNS options will find DNS lookups to known malware sites. How exactly does this work? Will the actual DNS lookup be blocked or will the client's access to the site be blocked?Quote from the documentation:Additionally, hosts that perform DNS queries for malware domains will appear in the botnet...

Resolved! SSL: Firewall uses untrust-forward cert. for every site

Hi,I just set up SSL Decryption exactly as described in the Getting Started Guide (English)I have one trusted-forward certificate, imported into browsers, and one untrust-orward certificate, not imported into browsers.Now when I connect to SSL sites, my browsers complain about untrusted certificates, the firewall is clearly using the untrust-for...

Google Drive (Web) slow to load

Anyone experience slowness loading Google Drive on the web? On my network when i launch the Google Drive webpage it takes several seconds to load the content, however, if i load the page off of my network the content loads nearly instantly. There are no other signs of slowness on my network. Is there something on the back end that my PA 2050 ...

mgonzalez by Not applicable
  • 4234 Views
  • 4 replies
  • 0 Likes

Dataplane PA2050 restart with no reasons. why?

Hi, i hope someone can help me about this error.My primary (active) Palo Alto suddenly restarted yesterday with no reasons, thanks god HA worked and we are actually working with the secondary PA. I have checked the monitor system log and i cant find the reasons why my PA was restarted.I attached a screenshot with the monitor system log. Thanks ...

BBC iPlayer

Hi there,I have a PA5050 running 5.0.4 that I'm in the process of configuring (replacing an ASA). I'm new to PANOS but so far so good!The requirement is simple, allow access to BBC iPlayer (App-ID exists) but not general web browsing. My first step was allowing the 'app' iPlayer but this requires web-browsing. So I created a custom URL category ...

SteveG by Not applicable
  • 3675 Views
  • 2 replies
  • 0 Likes

PA send out '192.168.1.1' GARP when it boot up.

Hello Guys, When PA boot up , it send out 192.168.1.1 GARP through the MGMT port no matter what you set the MGMT IP.And after 30 second later, it send out its MGMT ip address you set with GARP.I know that '192.168.1.1' is the factory default setting for the PA. But I think this mechanism can spoil the customers network if they use 192.168.1.1 fo...

JTR by Not applicable
  • 2726 Views
  • 2 replies
  • 0 Likes

Cisco - trunk- PA - trunk - Juniper SRX

Cisco - trunk- PA - trunk - Juniper SRXPlease help to configure PA-2050 for trunk ports between cisco and juniper.Which type of interface I should to use for this config.We can not use VirtualWire interfes, because from one side one port is connected to Cisco and for Juniper we have two ports. (Juniper Cluster)Thanks in advance.Bek.

Ulugbekyu by Not applicable
  • 4237 Views
  • 5 replies
  • 0 Likes

VPN Two-Factor Authentication integration into PAN ?

Hello all,recently I learned the Two-Factor Authentication solution from DUO Security. Basically it requires a PAN FW, an AD/Radius Proxy software provided by DUO Security and an Account/API Key.The Proxy software is the interface between AD/Radius and DUO Servers.Since PAN already connects to an existing AD/Radius I am asking myself whether it ...

gafrol by L4 Transporter
  • 7673 Views
  • 11 replies
  • 0 Likes

SMB: User Password Brute-force Attempt 40004

Hello all. I have a PA-5020 operating as our Layer 3 router between all of our VLAN's. For the past month or so the ACC on the Palo shows SMB: User Password Brute-force Attempt (ID:40004) as the #1 entry in Threat Prevention section. The attacker is our Antivirus (Kaspersky) Administration Server on VLAN 199 and the victim is a kiosk PC that ...

sadams by Not applicable
  • 23621 Views
  • 3 replies
  • 0 Likes

Is there a list of options / filters I can use in the Web GUI ?

Hi,Is there a list, a document that would explain how I can use filters in the Web GUI ? I know how to apply simple filters by clicking on a field -> filter, but I would like to use more advanced features.As exemples :- (tag/member eq 'TEST') will list all security policies that have "TEST" in their TAG list. How can I negate that so that onl...

PatrickD by L1 Bithead
  • 4199 Views
  • 4 replies
  • 0 Likes

brightcloud vs Paloalto URL DB

Hello,I'm thinking to migrate from brightcloud to Paloalto URL DB since I had to request a lot of recatogorization.Where can I find Categories list migration ? Does all categories match ?To migrate is enought to follow this doc https://live.paloaltonetworks.com/docs/DOC-4388 ?Can be reverted back ?Does anyone has feedback about migrating from br...

Global Protect Client Error Message

Hello all,I don't connect GP. GP client display error message.It is 'An error occured int the secure channel'.I use Window XP service pack 3.Only this desktop doesn't connect GP.Other desktop(window 7 , same account) connect.Please let me know resolved way.loThanks.

  • 24333 Posts
  • 124 Subscriptions
Top Solution Authors
Labels