General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2188 Views
  • 0 replies
  • 0 Likes

Best Practices for Application Policies?

I was wondering if there is a best practices document for setting up a policy to control particular applications. I've already dug through the Skype tech document which tells to enable unknown applications. Are there any other applications that work

...

nugentec by L1 Bithead
  • 13773 Views
  • 19 replies
  • 0 Likes

SMB Fragment Packet Found(32332)

Hi,

Anyone have experience of this firing off continuously for 'normal' LAN traffic (deffo not being used as an evasion technique) since the signature was modified (v337)?

Cheers

apackard by L4 Transporter
  • 2097 Views
  • 1 replies
  • 0 Likes

VMWare series firewall

Just noticed a section of he help file for PANOS 5 which mentions a virtual firewall series from Palo Alto.  Sure am interested in some more info....

Bob

BobW by L4 Transporter
  • 1798 Views
  • 1 replies
  • 0 Likes

Resolved! Problem with multiple Netflow profiles

Hello,

I encounter a problem using multiple netflow profiles on our PA-500 running PAN-OS 4.1.8

I have defined 3 different neflow profiles, each refers to a specific port on the same host.

Each profile is assigned to exactly one physical layser 3 interf

...

lavision by L2 Linker
  • 5063 Views
  • 5 replies
  • 0 Likes

Block page and SSL

Hey all,

So, we have a need to block everyone but a small AD group access to a couple pages.  Now, we don't want to just "deny" them in the rule (we have a comfort page that promps them they are blocked and allows them to request access) - I don't wan

...

mrsold by Not applicable
  • 5329 Views
  • 6 replies
  • 0 Likes

Resolved! Application = insufficient-data?

We have some outgoing UDP traffic that shows up in the traffic log with "insufficient-data" in the application field. The problem is that this traffic is being allowed through the firewall because it's being matched to a rule that allows FTP traffic

...

ahopkins by L2 Linker
  • 20467 Views
  • 7 replies
  • 0 Likes

Resolved! Panorama license limit

Does anyone know if a customer owns a Panorama 25 device license and wants to add device #26, will it not allow them to add the 26th device or will it?

Thx

jwolach by L4 Transporter
  • 6785 Views
  • 8 replies
  • 0 Likes

Threat exception for selected hosts

Hi,

We have defined vulnerability group which consists of AV, Anti-Spyware and Vulnerability profile. The vulnerability profile is configured to block critical events and alert on high and med. I have a need to except few hosts which are alerting for

...

Resolved! 4.1.7 inspection causes corrupt download and speed issues

I have two 2050's in an HA pair A/P on 4.1.7.    I have a BGP setup with 100Mbps on one link and 250Mbps on another, and Gb to the LAN and DMZ.  I have transferred just over 3G through the PA in the last 60 minutes.

When I turn on inspection (Antiviru

...

EdwinD by L3 Networker
  • 8191 Views
  • 9 replies
  • 0 Likes

Exclude iTunes/App Store from decryption

I am using SSL decryption for all outbound traffic. Prior to the decryption rule I have a rule to attempt to exclude iTunes and App Store traffic from decryption.  The rule seems to be working, but the App Store fails with "NSURLErrorDomain error -10

...

  • 24251 Posts
  • 119 Subscriptions
Top Solution Authors
Top Liked Authors
Labels