General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! what's mean counter url_request_pkt_drop?

Hello guys.

I experienced increasing constantly counter "url_request_pkt_drop" when installed PAN to customer. PAN showed that counter means "the number of packets get dropped because of waiting for url category request"

So I think that means simply pa

...

ttongfly by L3 Networker
  • 4935 Views
  • 3 replies
  • 0 Likes

Resolved! Backup and restore Config

I have a PA-500 Firewall running software version 4.1 and have to make some rather drastic firewall changes due to changing ISP's and outside IP addressing.  I would like to backup and save my configuration, in case I mess something up.  How can I ta

...

kaysun by L1 Bithead
  • 3789 Views
  • 1 replies
  • 0 Likes

Skype & unknown traffic

Hello PAN,

It seems to me that in order to have skype working correctly - particually with multi-site PA's with Site2Site VPN tunnels in between - it is nessesarely to enable both unknown-tcp & unknown-udp.

At least - all our connection problems / deli

...

sitecore by Not applicable
  • 2249 Views
  • 2 replies
  • 0 Likes

Resolved! Known Malware passing through PA to Client

Hello PAN,

Today I had a client get infected with the "Windows Privacy Module" Fake AV, This wasn't cought by either PAN OS or Trend Micro while a MalwareBytes scan found it and removed it no problem. Is there something more I can do to increase the o

...

Bvance by L2 Linker
  • 2705 Views
  • 5 replies
  • 0 Likes

Getting Syslog in through PA 500

I have a router just outside my PAN 500, ver 4.0.5. I need to get syslog information in from it for my PCI requirements. Here is my setup:

The following objects are defined:

INT-NPM               Syslog server, IP address 172.15.10.8

TWC-RTR            

...

u7483 by Not applicable
  • 2516 Views
  • 3 replies
  • 0 Likes

URL logging in TAP mode

I have a business requirement to log URLs visited in an "out of line" manner for reporting and usage. There is no requirement to block URLs and it would be of great advantage not to use VirtualWire at this stage(still in pilot).

I understand it is not

...

loki by L1 Bithead
  • 1685 Views
  • 1 replies
  • 0 Likes

Multicast Support

Hi Guys,

Does PAN support IP multicasting to allow one IP packet to be sent simultaneously to multiple hosts for use in multimedia applications and video conferencing?

I did read somewhere that multicast forwarding / routing is now supported from versi

...

Stateful Package Inspection Features

Hi Guys,

I was just wondering if you someone could clarify a few doubts that are lingering in my mind.

1.  IP Checksum Enforcement

     -  Does PA have an option to enforce header checksums for IP headers and UDP packets?

2.  QoS

     -  Does have QoS sup

...

Custom Reports and Wildcards

Hello KPers,

My goal: To create a report of top X users who attempt to access blocked categories.

My problem: I would like to exclude a set of userids that share a common prefix.

What I've tried: I've created a URL log custom report based off of action

...

Global Protect - External IP as source in VPN tunnel

Hello PAN.

Trying to figure out why my connection on the VPN client was behaving a bit sporadic I noticed that *some* of the traffic send to the firewall from my GPA was using source IP = my client public IP, rather than my client private IP.

So. Some

...

sitecore by Not applicable
  • 1912 Views
  • 2 replies
  • 0 Likes
  • 23712 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels