General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4442 Views
  • 0 replies
  • 0 Likes

Resolved! MAP Widget bubbles

Can someone explain what the "Top 100" are with the map widget in the Monitor tab. Is it the most recent? Severe? Does it count multiple threats as the same from the same region?

amansour by L4 Transporter
  • 2852 Views
  • 3 replies
  • 0 Likes

Resolved! For Syslog

Is there a way to send the same syslog messages to two syslog servers at the same time ?

amansour by L4 Transporter
  • 2490 Views
  • 1 replies
  • 0 Likes

Re-evaluating current structure

I am currently managing users via AD groups but need a more granular approach. I recently added a BYOD device manager to my network. It divides my 2 main groups using a specific IP range. If I use this method to manage users I will probably have to reset all my policies. My question is should I start by blocking all processes then open just ...

Reports - IP to hostname mappings.

Hi.I get a daily report out of my PA which shows some user activity and other stuff.The report is not the issue - what goes into it is.Part of what I have in the report is the source host name. And, for some IP addresses values, the report comes out with resolved host names which I can NOT understand being there.These host names simply no longer...

darren_g by L4 Transporter
  • 2810 Views
  • 2 replies
  • 0 Likes

Resolved! Radius Authentication issue

Iam configuring a new PA-500. I have set it up for Radius Authentication. When attempting to log on to the device I received the error "invalid username or password" at the Web UI screen. On the device in system logs I get the error "User 'domain\username' failed authentication. Reason: Invalid username/password From: x.x.x.x.On the radius serve...

Steve1 by Not applicable
  • 7853 Views
  • 7 replies
  • 1 Likes

Resolved! Does Adding a Group Mapping Also Add the Users in that Group?

Hi,I'm wondering, if I were to add an AD group to the Group Mapping pane on the firewall, are all the members of that group also added? Or do I -definitely- need UserID for that?Thanks,A.(Now shamelessly adding the next 49 friend requests.)

Abs by L3 Networker
  • 3672 Views
  • 4 replies
  • 0 Likes

User id agent

Hi,can we use user-id agent version 5.x.x with panos 4.1.10 for example ?and can we use multidomain with panos 5.0 agentless systemthanks.

WildFire Logs versus Blocking.

For WildFire logs in 5.0.2 there is some confusion about the subscription. The question most ask is whether the lack of a wildfire subscription will still allow the logs in the WildFIre section to accurately alert if a file is potentially malware. And in a general sense what the WildFire subscription gives you.

amansour by L4 Transporter
  • 3387 Views
  • 3 replies
  • 0 Likes

facebook games block

When I searched I can see there is a custom app for farmwille facebook app. But when customers want to block all facebook games ? How can we do this ? is there any signature for that ?Or any update that PaloAlto works on facebook apps ?Thanks.

Resolved! XBOX Live

We are a small university with a PA 2050. Since we installed the box, our XBOX live gamers have complained that they can't connect to XBOX live, or that if they ever DO connect, it takes a long time. The message they receive, in particular, is that their NAT setting was set to "strict".I've allowed xbox traffic in the PA, I've even gone and spec...

Active-Active HA and 10G

Most users with a PA5000 in Active-Active HA are running these mutli-datacenter. Can someone explain how traffic over HA links would synchronize sessions if the connections are at 10G. We basically notice downtime when the appliances go down for perceivably all sessions. Does anyone know what sessions are synchronized, is there a way to prior...

amansour by L4 Transporter
  • 2203 Views
  • 1 replies
  • 0 Likes

Layer 2 Bridge and ARP Table.

Hi All; Quick post to help anyone looking for the answer to this. If you are randomly seeing slowness every few days from the network and eventually have to reboot your perimeter router or the firewall, it may be that your ARP table is full. When setting up layer 2 on the firewall in some cases a VLAN can be bridged across two physical interfa...

amansour by L4 Transporter
  • 3007 Views
  • 1 replies
  • 0 Likes

Resolved! Unable to Export CSR from Panorama?

Hi,I just generated two CSRs on Panorama, and I am unable to export them. When I try, I get an errors.txt file that says "Failed to prepare CSR <CertName> for export". I've worked around this by committing the configuration to the devices, and then exporting directly from the firewalls. I'm just wondering why I am unable to do so directly ...

Abs by L3 Networker
  • 2910 Views
  • 2 replies
  • 0 Likes

Resolved! Tracking application change in a session

Does anyone know if it's somehow possible to track application changes in a session?Let's say an application in a session first is identified as web-browsing, then facebook, and finally facebook-chat. Maybe not a realistic example, but you get the point Is there any way I can see that in the traffic logs, or through any other cli commands?

torm by L4 Transporter
  • 4610 Views
  • 3 replies
  • 0 Likes
  • 24375 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels