General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Need help with Enterasys NAC/NMS and PaloAlto UserID

I am trying to make the Enterasys/PaloAlto integration from this doc work:

Running 4.1.6 code on the PA-4020 and the associated UserID agent on a single server.  I followed the directions exactly but see no evidence info is making it to the UserID age

...

keklund by L1 Bithead
  • 1801 Views
  • 1 replies
  • 0 Likes

ARP Cache Limit on PA-500

Hi PAN,

When is that the PA-500 will have an ARP cache limit of 1000?  I was promised during the launch of version 4.1 that the ARP cache limit had been increased to 1000 from 500 just to realise that it never happened. 

I am desperately waiting for s

...

Resolved! Renaming a VSYS

Should I expect any issues if I rename a VSYS? I assume it should rename all VSYS names in the config where applicable?

jambulo by L4 Transporter
  • 4214 Views
  • 4 replies
  • 0 Likes

Traffic log database exceeds alarm threshold

Hello,

This is not very clear on Palo box, since months we have issue that every
week we have alarm indicating that the log was exceeded 80 of the quota, in
fact we want to log all traffics and don’t want to disable logging on some
rules, I monitored dur

...

BSadozai by L2 Linker
  • 7793 Views
  • 6 replies
  • 0 Likes

Public IP's and DMZ

I am currently setting up a DMZ using a class C address range provided by my ISP. So far I have an untagged interface built connected to a switch and a VR built.

Example:

I have the subnet 10.10.10.0/24

I set interface G1/2 with address 10.10.10.1/24

I

...

mgross by Not applicable
  • 2824 Views
  • 3 replies
  • 0 Likes

Resolved! Issues installing the Terminal Server Agent on Server 08R2

I have this same issue at two separate clients. I installed the agent under elevated priveledges but once it is installed an I open it, I cannot click on any of the menu options. If I click on Restart Server, it says "query service fails with error5"

...

SDorsey by L4 Transporter
  • 3027 Views
  • 4 replies
  • 0 Likes

Ethernet link speeds

I am curious what the recommended link speed settings for the various ports. The external port has to be hard speedcoded to 100/full as that is required by the ISP.  The internal connection is to a gig core switch at auto detect (1000/full).

Should th

...

BobW by L4 Transporter
  • 4464 Views
  • 5 replies
  • 0 Likes

Site to site VPN terminating in DMZ possible?

Is it possible to setup a site to site VPN and have it terminate on the DMZ interface rather than the WAN interface? We have numerous remote locations that are running small sonicwall firewalls and connecting back to our corporate site. They currentl

...

High Availability across a Fibre connection

We are preparing to configure High Availability in Active Active mode on our PA-2020 firewalls in London.  Our first firewall sits in our main site in central London with our DR site sitting outside central London connected together via a 1Gbp Fibre.

...

BBHLTD by Not applicable
  • 2887 Views
  • 2 replies
  • 0 Likes

Resolved! Outbound NAT pool question

For reasons I will not go into here, I want to take outbound traffic from secure to unsecure and convert it from a many to 1 NAT rule to a many to many NAT rule.   I have 1024 public IP addresses.  I want to take a section of my network and provide a

...

EdwinD by L3 Networker
  • 2163 Views
  • 2 replies
  • 0 Likes
  • 24034 Posts
  • 102 Subscriptions
Top Liked Authors
Labels