General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 1972 Views
  • 1 replies
  • 11 Likes

Resolved! clear arp

Hi,

Do we have a option to clear arp entry for only one entry ?

I tried this command but it seems it clears all arp for an interface.

panos by L6 Presenter
  • 15194 Views
  • 2 replies
  • 0 Likes

Resolved! Chrome Bypassing Captive Portal for Google Services

Hi,

PANOS 4.1.6

Client OS: Windows 7

Client Browser: Google Chrome 21.0.1180.89

I have PAN running with CaptivePortal (Public Certificate with AD Auth profile). Everything works fine when I use Firefox, Chrome and IE (in the case of IE except for the sma

...

actibit by L2 Linker
  • 7903 Views
  • 18 replies
  • 1 Likes

Resolved! OSPF between PAN devices

Hi all,

I have the following scenario:

CPD 1: Internet ISP1 -- PAN1 -- ROUTER1

CPD 2: Internet ISP2 - PAN 2 -- ROUTER2

And a layer 2 connection between CPD1 and CPD2 (in different locations). Initially, there were only router1 and router2 (with their res

...

SysLog setup not working

Hi,

I am using PA-2050, with PAN OS 4.1.3.

From few days I am trying to configure the syslog to be sent to a central logging system. I followed every possible documentation, but I am not getting any syslogs coming to the syslog server.  I tried on sys

...

Resolved! is this possible for syslog

Hi,

We want all policies option log forward as syslog.Can we make this for all policies at one time or shoul we go to every policy option to select syslog. There are many policies.

Thanks.

panos by L6 Presenter
  • 2855 Views
  • 4 replies
  • 0 Likes

PA500 arp cache limit reached - any ideas?

Hi

I have 2 PA500 firewalls running in a active/passive HA setup, the firewalls are fully integrated into active directory using the Identification client for security polices all clients on the network are set to use our core switch as their default

...

IPSEC VPN Tunnel Problem

PAN PA2020 PAN OS 4.16

I have a point to point vpn setup from our company to another company that is hosting our financial application.

We have 10 different proxy IDs setup to limit subnet's that can access the vpn for example:

Almost everyday, all pro

...

almay by L2 Linker
  • 2759 Views
  • 2 replies
  • 0 Likes

How to "fix" vulnerabilities.

Hi,

I have a lot of vulnerabilities that keeps triggering in my firewall, but I'm not sure whats causing it or how to fix it. 

Most "attacks" are done by servers or clients on my own network...

- Microsoft Windows SMB Fragmentation RPC Request Attempt

...

johnd by L2 Linker
  • 2205 Views
  • 2 replies
  • 0 Likes

Resolved! SSL for GlobalProtect / Captive Portal

Hi All,

I'm attempting to install a wildcard certificate on the firewall for Global Protect and Captive Portal without much luck.

Basically I'm trying to use the existing wildcard certificate, the organization has. Steps I've taken:

1) Export the certif

...

BTS_MS by L2 Linker
  • 3243 Views
  • 2 replies
  • 0 Likes

VoIP over NAT issues: Ring but no audio; disconnects

I have our VoIP PBX set up with an IP on our external side via NAT. The policy is a simple static NAT from the internal IP to the external. I also have the correct security policies in place to allow SIP/RTP traffic to pass freely to and from the ext

...

Resolved! PA-2000 HA Timers

Currently if I hard power down my primary firewall it takes about 6 Seconds for the secondary to take over, a bit slow really.

Changed most of the HA timers to their minimum, just checking to see if there is any other configuration that can be changed

...

http forward to proxy

Hi,

I try to forward my WiFi mobile users http communications to my proxy.

WiFi mobile users and proxy are in two different VLAN plug on Palo Alto (default gateway of mobile users and proxy is Palo Alto Firewall).

Is it possible with Palo Alto?

The probl

...

mlop by Not applicable
  • 7055 Views
  • 13 replies
  • 0 Likes

Resolved! Using ISA for OWA

Hi All

I'm looking to replace our Fortigate 110c with a new PA-500 and I've managed to write the security and NAT policies which when tested seemed to work well apart from OWA.

We have an ISA 2006 server which publishes OWA and OMA on a public IP and h

...

TDC by L1 Bithead
  • 2235 Views
  • 3 replies
  • 0 Likes