General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 352 Views
  • 0 replies
  • 2 Likes

IPsec VPN Tunnel with overlapping subnets.

Hi,

Has anyone setup two PAN FW point to point that connect with the same subnets on each side.  The reason for the same subnets is that we have our production network behind FW-A and a co-location network that mirrors our production network behind FW

...

cmateam by L3 Networker
  • 6307 Views
  • 5 replies
  • 0 Likes

rate-limiting qos policy

Hi,

I'm interested in creating a simple qos policy, which will rate-limit streaming applications for all users, except a group of power users.

I'm assuming that I would have to create two QOS rules (policies).

First one will assign streaming traffic for

...

bbivolaku by Not applicable
  • 5079 Views
  • 5 replies
  • 0 Likes

Resolved! Unusual Log entry

In the monitor tab, I'm seeing entries  as sys1+[zone Name] in both the "from zone" and the "to zone" columns. What could this mean?

weasel by L0 Member
  • 2522 Views
  • 3 replies
  • 0 Likes

Resolved! SNMP to split between Panorama and traps server

I have a question regarding the SNMP server settings on a 5020.

If I have specified to send SNMP to panorama and I also have a traps server listed for the same type (let's say 'informational') will the unit send to both Panorama AND the trap server?

Resolved! Ssl Exclude What for ?

I wonder when we need to use SSL Exclude option for certificate.When I try to write a decryption policy and try to test SSL exclude , I could not see any differences.

I looked to pdf and it gives just that info below :


SSL Exclude—This certificate excl

...

panos by L6 Presenter
  • 1647 Views
  • 1 replies
  • 0 Likes

Resolved! MAC 10.8 using NetConnect issue?

Hi,

                I used browser to login SSL VPN portal in MAC 10.8 client.

               At first time,there is no any problem to connect,

               but second time,the NetConnect can not get any IP from PA.

              Just one time succesfu

...

IPSEC WITH PBF

     Hi guys ,

I dont know what happens but when i use pbf on my isp`s , my ipsec vpn don`t traffic......

what can be?

best regards.

Thiago by L3 Networker
  • 1953 Views
  • 1 replies
  • 0 Likes

ELSTER and SSL decryption

In Germany one can use "ELSTER" to transmit tax reports electronically to the financial authorities. Elster is build in many ERP Systems and alike.

Unfortunately the certificate used by the authorities is self signed and therefor not trusted by the PA

...

u13550 by L3 Networker
  • 2745 Views
  • 1 replies
  • 1 Likes

Resolved! bi-direction NAT question

I have the following rule in the firewall and was wondering if I needed to create a second rule for the other direction or if the bi-directional option will take care of it for me.

example

source address :10.100.10.50   > destination address: FTPSERVER

...

URL rewriting

Hi all,

I am in front of this issue and I don't know how to solve it, can anyone help me?

I have to migrate the configuration of some checkpoint security rules to a Paloalto PA-500 (panos 4.0).

On checkpoint there are some rules that make URL rewriting:

...

s_dutto by Not applicable
  • 4716 Views
  • 4 replies
  • 1 Likes

Resolved! Rules not applying to AD groups

Hi,

For some reason my Palo Alto 2020 has stopped recognizing rules that are applied to AD user groups. My 2 User ID agents are running on the Domain controllers and are showing green on my Palo Alto box.

It works if I apply the rule to a specific AD u

...

full mesh or hub and spoke VPNs running OSPF

Hi there,

is anyone managing this with let's say 50 sites and multiple connections (Internet, MPLS).

Currently we are using Juniper and the VPN manager inside the central management (NSM) does this job for us. The good thing is that when you have foun

...

hag by L1 Bithead
  • 3705 Views
  • 2 replies
  • 0 Likes
  • 23675 Posts
  • 108 Subscriptions
Top Liked Authors
Labels