General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Unable to download updates PAN OS 4.1.9 because of self signed certificate on updates.paloaltonetworks.com ?

Since november we have not received any content updates from updates.paloaltonetworks.com. We changed the rules so every update server (including amazonws.com) was allowed.Now the updates start, I see a succesful connection to updates.paloaltonetworks.com, but the job remains in download state at 0%.When I check the ms.log it shows:--2012-12-19 ...

Resolved! Panorama policies pushed to HA peer

I've got an HA A/P pair where the primary is included in a device group and managed via Panorama. The configs are sycnhed and everything is matched; however, the peer has no inherited policy from Panorama. Any ideas?

emelcher by Not applicable
  • 4548 Views
  • 4 replies
  • 0 Likes

UseridID-Agent best practices - where to install ?

I'm new to this world and am looking for some advice of where to install the UserID Agent.I'm thinking one of the most efficient places to put it would be a domain controller.User identification is very important to us and we want to be able to id and many users as possible. Anyone else put this on a domain domain controller ? Should I install ...

jhickey by L3 Networker
  • 17105 Views
  • 12 replies
  • 0 Likes

Resolved! Logging of threats - Possibly to set it globally ?

Hi,I am in the start of setting up Threat log forwarding to Syslog and/or SNMP-traps.Do I really have to enter every single rule to enable this logging or is it a smarter way of doing this ??I really hope that I am not forced to add the same log forwarding rule to one and every rule RegardsStig Einar BakkeDataEquipment

stig by L1 Bithead
  • 3906 Views
  • 4 replies
  • 0 Likes

Syslog via TCP?

I note that the PA-2050 units I have running 4.1.7 PanOS generate their syslogs as UDP/514. Is there any way to tell the unit to use TCP for syslog messages? Our SIEM/syslog collector (AlienVault) seems to be missing some of the syslog messages we (supposedly, according to security team) sent to it from the PA-2050 for whatever reason. We are e...

Resolved! Data pattern limitations.

Hi All,"Save the telnet" movement inspired me . I'd like to find out if any one is experiencing same limitations I do: - " at least 7 bytes" limit in Custom Data Patterns.- "regex" has very limited capabilities in Custom Data Patterns.Would adding this features be beneficial for the next release?I'm also curious about Predefined Patterns (CC nu...

Alarms - Log DB size over threshold

Hi guys,It looks like our PA-2050 is not purging old log files from the database. When we log in to the Web UI we get alarms like this:According to the documentation this error shouldn't occur. The PA box should automatically purge old log entries when the DB reaches 80% of the total DB size. Any ideas what we could do/check here?Thanks,Oliver

oschuler by L4 Transporter
  • 4346 Views
  • 4 replies
  • 0 Likes

Zone to Zone for OWA/activesync?

Our users private devices are on a separate subnet/vlan and a separate PA zone using the Google DNS servers. I have been forcing a captive portal in order to enable user ID for these devices. This has been working fine.I have set a rule so that these devices can access our exchange server via OWA/activesync by going out to the internet and hit...

BobW by L4 Transporter
  • 3280 Views
  • 3 replies
  • 0 Likes

Resolved! Panorama: Is it possible to assign an admin role to a vsys?

In Panorama, is it possible to assign an admin role to a vsys? I don't see the option on the admin role tab in Panorama. I only see it on the device itself. Please see attached screen shots as a comparison between the Panorama view and the Device view. Thank you.

bbsoc by L2 Linker
  • 5538 Views
  • 2 replies
  • 0 Likes

Resolved! Has anyone ever seen this on the physical interfaces.

Was working for a while the the interface decided to go down and I kept getting this warning every time I commit. I have checked both ends and it seems to me that the 10gig interface on the palo side is bad. Both are the same so I do not understand why I keep getting this message. e1/21 is green but e1/22 is red and will not come up.Warning: ...

Resolved! PA200 process running at 100%

Hi there,I've seen a task called pan_task taking up 100% cpu on two of my PA200's. Is this a PA200 specific thing? Not seen this on any other hardware platform, looking into it further it does not look like it's actually using 100% CPU, wondering if it's something to do with the single cpu architecture and splitting the two cores to backplane/ma...

Ante by Not applicable
  • 7055 Views
  • 3 replies
  • 0 Likes

Which logs to check for firewall auto reboot?

Hello,I need to go through the logs to check why the active PAN 2020 rebooted itself. I only have access to the cli (I have to ssh via the now active FW).Which logs should I check?? Under mp-log there is a whole bunch of logs I am not sure which one to check for system failure related issues.The reboot time is suspiciously close to the applicati...

BTS_MS by L2 Linker
  • 21476 Views
  • 3 replies
  • 1 Likes
  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels