General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4121 Views
  • 0 replies
  • 0 Likes

Resolved! active directory lgon session timeout

hi,i have two questions i just need a clarification about them : /* Style Definitions */ table.MsoNormalTable {mso-style-name:"Table Normal"; mso-tstyle-rowband-size:0; mso-tstyle-colband-size:0; mso-style-noshow:yes; mso-style-priority:99; mso-style-qformat:yes; mso-style-parent:""; mso-padding-alt:0cm 5.4pt 0cm 5.4pt; mso-para-marg...

u3974 by Not applicable
  • 4035 Views
  • 4 replies
  • 1 Likes

Resolved! Change HIP Interval for OS X

Hi,I see on my GlobalProtect OS X client that the HIP Interval is set to 3600, i would like to change this to 60.My problem is that I can`t find any documentation on it or any config in ether CLI or GUI.I`m running 5.0.3 on the PA-200Regards,Kristian_

kristian by L3 Networker
  • 3699 Views
  • 1 replies
  • 0 Likes

Flowcharting rules

It sounds as if my situation is a bit different than most as from what I gather most people do not use the scheduling feature of the firewall. I am at a pre-K-12 boarding school with dorm students, dorm parents, etc. which means I use the scheduling piece in almost every rule! As part of this I am struggling a bit of following the logic of my...

BobW by L4 Transporter
  • 7706 Views
  • 10 replies
  • 0 Likes

Testing WildFire

I did some test on WildFire. I've created backdoors, link backdoor with a legitimate file, and playing around with malware, and obscure malware with the goal to bypass.The result and scenarios can be found on my website.Any comments or remarks are welcome

JohanL by L2 Linker
  • 13596 Views
  • 10 replies
  • 4 Likes

Resolved! Storage Upgrade

Is possible to upgrade storage from 160ssd to 320gb or more? Does Palo Alto offers storage bay upgrade?

TSPI by L1 Bithead
  • 5149 Views
  • 5 replies
  • 0 Likes

Resolved! Convert Brightcloud into PAN-DB

We have an active Brightcloud URL filtering license. We would like to start using PAN-DB. Our sales tells me this is only possible at time of license renewal (that would be another 9 months for us).I find this hard to believe. Is there no way the Brightcloud URL filtering license can be converted into a PAN-DB license ?

dieter_b by L4 Transporter
  • 5447 Views
  • 4 replies
  • 0 Likes

Global Protect SSL error

Ok group I have a nice and simple question about trying to get GP up and running. Everything (I think) looks right, and configured, but I am not able to quite get my client connected to the Gateway(T10944) 03/12/13 11:56:27:075 Debug( 742): File C:\Program Files\Palo Alto Networks\GlobalProtect\tca.cer exists. File is tca.cer (T10944) 03/12/13 1...

scantwell by L4 Transporter
  • 9917 Views
  • 7 replies
  • 0 Likes

PA-200 USB port

Hello,So have any of you found any cool uses of the USB port on the PA-200?I myself have connected my Raspberry Pi to it. The PA-200 gives more than enough power and I have also connected a wireless usb adapter to the raspberry.The raspberry serves as my internal dns and dhcp server at home. I could also use the wireless usb adapter for setting ...

Captive Portal

Scenario:I want to authenticate unknown users from my network to the internet.I´m able to authenticate users in my ldap server using the web form, from my captive-portal in my pa-500.But my issue is this:Before the users receiving the portal page they receive the error in the browser saying, that is an invalid certificate. I understand this, bec...

Anti Virus Logging

Hi,Where do antivirus profile alerts log to?Also, if I set the action to "block" for a decoder in the antivirus profile, does it still log the event?Any help is greatly appreciated.M

charger by L2 Linker
  • 3159 Views
  • 3 replies
  • 0 Likes

Resolved! PA-5050, Agent-less user-id to AD, exclusions not working?

Working on setting up a 5050 with user-id mapping against 2 domain controllers. the agent-less, WMI based setup is working fine thus far, except I cant figure out how to exclude certain IP ranges.For instance. We have a VPN appliance that does Kerberos authentication to the AD Domain. Everytime a user logs in, it associates the IP of the devi...

Resolved! March Madness and QoS

Every year our network is brought to a crawl by users watching March Madness. I am wondering what I can do to minimize the impact on our network this year?We currently have QoS setup up limiting traffic for certain apps. I am wondering what apps others have applied to QoS and perhaps other methods to limit the amount of bandwidth going to those ...

Howto validate security policies for content inspection enabled ?

Dear all,How would it be possible to validate the security policy rules to have all a content inspection profile enabled?Because the "option" field does not allow to be selected as filter in the editor tab. (as this is the case for e.g. addresses or zones)Custom reports do also not include the ability to select content profile as an attribute.Th...

wimjuste by L1 Bithead
  • 3887 Views
  • 5 replies
  • 0 Likes

IP-RBLs for firewalls

Riddle me this…We have issues with malicious traffic coming from Open Proxies, Known Bad Hosts, etc. Is there such thing as an all IP, Realtime Blacklist for firewalls. There are certain external servers I dont want to be accessible by known bad networks. I’d love to write a rule like this:Source = RBL-or-Block-of-BAD-IPs-maintained-by-someone-e...

jhickey by L3 Networker
  • 3819 Views
  • 3 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels