General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 291 Views
  • 0 replies
  • 2 Likes

Resolved! Threat log columns

Hi Everyone,

I see two columns in the threat log that are "receive time" and "generate time". Is anyone knows what differents of them?

Thanks,

Joy,

Resolved! Accessing multiple network zones over IPSEC VPN

I am trying to setup a IPSEC tunnel between two PA-2020's, one on each side.  I have the tunnel connecting and can access devices over the tunnel. However I am trying to access multiple network zones over the tunnel, and I am not sure how to configur

...

cmateam by L3 Networker
  • 4112 Views
  • 3 replies
  • 0 Likes

IPsec VPN Tunnel with overlapping subnets.

Hi,

Has anyone setup two PAN FW point to point that connect with the same subnets on each side.  The reason for the same subnets is that we have our production network behind FW-A and a co-location network that mirrors our production network behind FW

...

cmateam by L3 Networker
  • 6260 Views
  • 5 replies
  • 0 Likes

rate-limiting qos policy

Hi,

I'm interested in creating a simple qos policy, which will rate-limit streaming applications for all users, except a group of power users.

I'm assuming that I would have to create two QOS rules (policies).

First one will assign streaming traffic for

...

bbivolaku by Not applicable
  • 5041 Views
  • 5 replies
  • 0 Likes

Resolved! Unusual Log entry

In the monitor tab, I'm seeing entries  as sys1+[zone Name] in both the "from zone" and the "to zone" columns. What could this mean?

weasel by L0 Member
  • 2505 Views
  • 3 replies
  • 0 Likes

Resolved! SNMP to split between Panorama and traps server

I have a question regarding the SNMP server settings on a 5020.

If I have specified to send SNMP to panorama and I also have a traps server listed for the same type (let's say 'informational') will the unit send to both Panorama AND the trap server?

Resolved! Ssl Exclude What for ?

I wonder when we need to use SSL Exclude option for certificate.When I try to write a decryption policy and try to test SSL exclude , I could not see any differences.

I looked to pdf and it gives just that info below :


SSL Exclude—This certificate excl

...

panos by L6 Presenter
  • 1634 Views
  • 1 replies
  • 0 Likes

Resolved! MAC 10.8 using NetConnect issue?

Hi,

                I used browser to login SSL VPN portal in MAC 10.8 client.

               At first time,there is no any problem to connect,

               but second time,the NetConnect can not get any IP from PA.

              Just one time succesfu

...

IPSEC WITH PBF

     Hi guys ,

I dont know what happens but when i use pbf on my isp`s , my ipsec vpn don`t traffic......

what can be?

best regards.

Thiago by L3 Networker
  • 1944 Views
  • 1 replies
  • 0 Likes

ELSTER and SSL decryption

In Germany one can use "ELSTER" to transmit tax reports electronically to the financial authorities. Elster is build in many ERP Systems and alike.

Unfortunately the certificate used by the authorities is self signed and therefor not trusted by the PA

...

u13550 by L3 Networker
  • 2727 Views
  • 1 replies
  • 1 Likes

Resolved! bi-direction NAT question

I have the following rule in the firewall and was wondering if I needed to create a second rule for the other direction or if the bi-directional option will take care of it for me.

example

source address :10.100.10.50   > destination address: FTPSERVER

...

  • 23648 Posts
  • 107 Subscriptions
Top Liked Authors
Labels