General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1964 Views
  • 0 replies
  • 0 Likes

Policy allowing ping/snmp not performing as expected

I have a policy which allows icmp / ping / snmp-base / snmpv1 / snmpv2 however when I review the logs the traffic which matches this policy is being caught in a lower policy that is more general (and we are trying to get rid of). Someone told me that

...

Resolved! Traffic log CSV Export Bytes Column

Hello everybody,

Software Version 3.0.5

when we make an CSV export for the traffic logs,
we have three columns with Bytes, called

- Bytes
- Bytes Send
- Bytes Received

All three columns have for the same row the same Byte values.
So, what is it for!

I thought

...

indevis by L2 Linker
  • 6231 Views
  • 7 replies
  • 0 Likes

Resolved! Vulnerability Protection - Exceptions?

Dear all,

We've got one, okay, two little questions on the configuration of vulnerability protection:

Assuming we have a security policy configured with the pre-defined vulnerability protection profile named "strict". From that policy we're getting "LD

...

oschuler by L4 Transporter
  • 5179 Views
  • 4 replies
  • 0 Likes

Resolved! Reports - Best way to see top URLs visited?

I'm struggling a little with the documentation on how to generate useful reports.

If I look in the ACC or default reports I can see destinations but they are simply a mix of raw hostname and rdns lookups - they might show a lot of traffic to, say, a88

...

SSL Weak CBC Mode Vulnerability

Our box was scanned by Qualys and the SSL VPN portal cames up with the following message:

If possible, upgrade to TLS v1.1 or TLS v1.2. If upgrading is not possible, then disabling CBC mode cipher will remove the vulnerability.

Any ideas how to disable

...

u5273 by Not applicable
  • 2905 Views
  • 2 replies
  • 0 Likes

Advantages of Virtual Systems...

...What are the advantages of using Virtual Systems, other than being able to divide Management and Reporting of "Virtual" firewalls.  In my case, I have a DMZ, Wireless, Trust and Untrust networks connected to a PA 5020.  Should I split up the DMZ a

...

jambulo by L4 Transporter
  • 5351 Views
  • 4 replies
  • 0 Likes

Resolved! BGP Configuration Clarification Needed

I am new to BGP. I am attempting to configure BGP as layed out in the following documentation with the Active/Passive configuration. I've been given an AS number and a block of /24 from ARIN. Step 2 under "Configuration for the Active/Passive Pair"

...

mario11584 by L4 Transporter
  • 16325 Views
  • 10 replies
  • 0 Likes

Unknown user after install and configure UI Agen

Dear All,

     My PAN is 500 with 4.1.6 OS. I just migrate PAN agent to UI agent with version 4.1.6-5.  After installation and configuration, I check the user-mapping the result show as following;

> show user ip-user-mapping all

IP              Ident. B

...

AD Groups in Firewall Policy - Inconsistent Behaviour

I have two issues with managing firewall policies when using AD groups; running 4.1.7 - so am using the 'on-hardware' group retrieval rather than the PAN Agent.

1) When adding new groups to be mapped they do not appear in the GUI i.e. cannot be select

...

apackard by L4 Transporter
  • 3594 Views
  • 4 replies
  • 0 Likes
  • 24204 Posts
  • 117 Subscriptions
Top Liked Authors
Labels