General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

VPN Tunnel Management

I would love to see an easy way to enable and disable ipsec tunnels and / or individual proxy ID's within the ipsec tunnel in order to force the tunnel to renegotiate via the GUI interface. Why does such a basic function not exist on the PA in the gui?-Dan

PA installs - the missing details

Hello all,since I'm just getting to grips with the support processes here apologies if I've missed a nice handy guide anywhere about this. My various questions don't seem to be covered in the Tech Notes though.I'm installing some Palo Altos in to an existing network with multiple security elements. I'm missing some of the critical configuratio...

Security policy rule to allow users to download from certain URL's?

Just implemented a 3020 and have many Engineers looking to download EXE, ZIPs and ftp to sites all over the place. I am looking to allow them to use these services to certain URLs only. i have tried to create a custom URL list and File Transfer group but the problem i am having is created a rule that allows access to certain sites but not allo...

gkauno by L1 Bithead
  • 6122 Views
  • 5 replies
  • 0 Likes

Do I Understand Profile Exceptions?

Hi,Created a Vulnerability Protection profile.Noticed that I was seeing a lot of "Microsoft Windows Registry Read Attempt" entries in the threat log. These appear to be benign. So I edited the profile, clicked the exceptions tab and checked the "enabled" checkbox for this vulnerability. I assumed this meant that this vulnerability would now be i...

charger by L2 Linker
  • 6614 Views
  • 3 replies
  • 0 Likes

Upgrading to Pan OS 5.0.4 Error

Hi All,I just attempted to upgrade my existing pan os 4.1.2 to Pan 5.0.4. Everything went fine but my main link to router was down and so there is no internet access. I restarted the router and it was still no link. So i downgraded back to 4.1.2 and the link was back as normal. Anyone got this issue ?ThanksBen

mmxong by Not applicable
  • 3928 Views
  • 3 replies
  • 0 Likes

Resolved! Global Protect license question when using different PAN OS versions

Please let me know what the license situation is for Global Protect when using different PAN OS versions:4.04.15.0Do you I need a Global Protect license when using PAN OS version 4.0?Do you I need a Global Protect license when using PAN OS version 4.1?Do you I need a Global Protect license when using PAN OS version 5.0?Thank you!

bbsoc by L2 Linker
  • 2506 Views
  • 1 replies
  • 0 Likes

botnet-domain alert in GUI

Hello,on the cli show command I see under "XX Anti spyware" profile the botnet-domains policy but I'm not able to find it on GUI under object-securityprofiles -> antispyware.Where botnet-domain behavior is configured on GUI ?thank's .. here below the Cli output:spyware { "XX Anti Spyware" { rules { simple-critical { severity c...

Resolved! Blocking Single URL

Our students have decided it is fun to install the nCage Chrome extension which changes all images on a web page to a picture of Nicholas Cage. What is the best way to block a single URL from being accessed -- they are installing it via the Chrome Web Store.We have a PAN-500.The url in question is: https://chrome.google.com/webstore/detail/ncag...

Reverse-Proxy

How can I use Palo-Alto as reverse proxy. Suppose I have a DMZ zone that has all the web servers and I want the DMZ interface to act as reverse proxy.The untrusted interface facing the internet would do the NAT translation. Then send the traffic to Dmz1 interface. At this point I want the Palo-Alto to act as reverse-proxy.

knesan by Not applicable
  • 4934 Views
  • 1 replies
  • 0 Likes

Resolved! How can I detect and stop 3rd party VPN tools used to bypass my network security

We are a private high school with a growing laptop population but these kids work hard trying to circumvent our security. They have found using 3rd party VPN tools, mostly single exe's they hide in their recucle bin when they fear exposure. This tool comes with statements telling the user it is illegal and it will get them around the "best sec...

Sessions aging , scaling , app tricking etc

Hi,Could someone briefly describe the significance of these values shown in the output for "show sessions info" and how they may be tweaked from a performance perspective ?-Session accelerated aging: True Accelerated aging threshold: 80% of utilization Scaling factor: 2 X--...

Resolved! App-ID number mapping to App-ID name

Does anyone know how can we get the App-Id name from an App-Id number? We can get statistics of the running App-ID cache ("show running application cache") but i can't find an easy way to map the App-Id number to the App-Id name.Thanks,Adriano Carvalho

adcar76 by Not applicable
  • 3618 Views
  • 2 replies
  • 0 Likes

Vulnerability Vs Successful Expolit

Hi,I would like to know how easy or hard it might be to link a vulnerability to an actual successful exploit. The threat details are provided below and a screenshot of the actual threat incident seen in attached. I am assuming this is just a random attempt at the recent timthumb attack. As I do not see the next stage which would have been , as ...

  • 24413 Posts
  • 125 Subscriptions
Top Solution Authors
Labels