General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! SSL Decryption on Apps.

Outside of SSH and SSL applications can anyone if there is a lookup in applipedia to tell whether the SSL decode applies to an application?

amansour by L4 Transporter
  • 2189 Views
  • 1 replies
  • 0 Likes

Is there a reason to hide hotfixes in Software Update?

I was curious to know if there was some prevailing notion as to why PA would keep the hotfixes hidden or at least not readily available from the Software section of the firewall itself.It is displayed where deployment without the hotfix is a very bad idea such as 4.1.8.But for in cases like 4.1.7, where the PA tech informed us that we should abs...

Palo Alto Vmware image

Hi,I am planning to replace my company's firewalls with Palo alto instead of Checkpoint however I need try it out in a lab or something before I provide further information to my management team, Is there a way I can get a vmware image to try it out on Esxi,???Thnx Krishna

Krishna by Not applicable
  • 3538 Views
  • 3 replies
  • 0 Likes

Resolved! 5.0.2 upgrade question

I want to upgrade from 4.1.7 to 5.0.2, I am currently running Global Protect v1.1.6.. and pan agent user-id agent v4.1.4-3. Can I perform the upgrade without updating the GP client and user-id agents?

rrau by L3 Networker
  • 2899 Views
  • 2 replies
  • 0 Likes

BGP Dampening Profiles

All,Does anyone know the CLI command to use to view the dampening profiles status on flapping routes? There looks like a way to clear the status with clear counters bgp ... but I cannot find the available show command.Thanks in advance,Jason

4.1 series GUI dashboard

I have one box presently on 4.0.8 and one on 4.1.1. If I compare the dashboards, the 4.0 series one has the dates in the widgets in an international format (2012/01/12), which I have no trouble with. The 4.1 has the widget dates in a partial American format (01/12), which I read as 1 December for just a moment until I think. The times on the 4.0...

Resolved! DHCP / DHCPD server stopped working 5.0

PAN OS 5.0App Version 342-1602 (12/04/12)Uptime 22 daysPAN-OS DHCP server stopped working today (worked earliar only change wildfire & global protect updates)DHCP server status shows it is not enabled although configured.<says not configured>admin@PA-200> show dhcp server lease ethernet1/4dhcp server is not enabled on interface 'eth...

jkim2 by L3 Networker
  • 7928 Views
  • 7 replies
  • 0 Likes

Agentless User-ID with PAN5.x - AD Configuration

I have read the tech article "How to Configure Agentless User-ID in PAN- OS 5.0.x"I'd love to see this document broken into two docs - one that I can send out to customers to prepare for POC - the AD user account setup portion without the PAN firewall config portion . . . does this already exist somewhere?

cindyb by Not applicable
  • 5822 Views
  • 6 replies
  • 0 Likes

CP Policy

I'm trying to setup a captive portal and authenticate users via a user certificate, but I cannot get it to work in 5.0.1.I already have a client certificate profile created but which setting do I need in the CP policy (action):web-form => does not work since the user needs to specify username/passwordno-captive-portal => does not prompt th...

loosj by Not applicable
  • 4490 Views
  • 6 replies
  • 0 Likes

User Identification Agent Capacity

In your Pan Agent 2.1 documentation you did an excellent job of documenting User Identification from start to finish. I have yet to see one document such as this for 3.1.Please reference page 7 of the Pan Agent 2.1 document and confirm or correct what the current User Identification capacity is.Please consider updating the Pan Agent 2.1 document...

Resolved! Using VM firewall as "offline" configuration management for ALL models of PAN devices?

GroupI am pretty sure it can be done (have not tested), but I thought maybe a SE or partner could test and confirm, or provide warnings/pitfalls.I am thinking that if I offloaded a copy of a customer's FW, for archival purposes and then needed to make changes, when I am not at the customer site, that I could just load their configuration into my...

scantwell by L4 Transporter
  • 5698 Views
  • 6 replies
  • 0 Likes

Email Security

Is there a way for the PA firewalls to monitor scam email? For example, email that looks legitimate but has manipulated links (again that look legitimate) taking you to a redirected website that is malicious in nature? Is there a way the PA can monitor and alert me of this kind of activity?

Resolved! PA-500 Virtual Wire implementation (HA)

I am planning a deployment of two PA-500's for just Threat Prevention and URL monitoring. I am working through the best way to do it for physical cabling and figuring out where everything should go. I would also like to use the Active Directory integration to base URL Filtering policies to groups/users. My question is, will I need to connect ...

  • 24413 Posts
  • 125 Subscriptions
Top Solution Authors
Labels