General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4139 Views
  • 0 replies
  • 0 Likes

What does this mean? (pan_dnsproxyd_parse_instance(mgmt-obj) failed)

Config commit phase 1 aborted(Module: device) pan_dnsproxyd_parse_instance(mgmt-obj) failed (Module: dnsproxyd) Commit failed Apart from the obvious (that the commit failed).I had just deleted the IP address of the management interface. What is the management interface really for? Do you have to use it? Do you have to have it configured? Why...

kjh by Not applicable
  • 2286 Views
  • 1 replies
  • 0 Likes

How to debug a Captive Portal Issue?

Hi, how can I debug the Captive Portal logon process?Because i getting a failed authentication error.The username and password are definitly correct.The user is in the group for the Captive Portal.Aug 29 09:51:32 pan_authd_process_authresult(pan_authd.c:1247): pan_authd_process_authresult: domain\name authresult not auth'edAug 29 09:51:32 User '...

Bypassing application control on PAN-OS

I stumbled upon a blog entry (http://www.what2code.net/?p=100) describing how to, sadly, bypass application control on Palo Alto Networks boxes.Author does not provide the source code, but I believe the method is not the work of his imagination.Any comment on this by PAN Team? Any possible cure for the virus?

Global Protect client silent configuration

Hello everybody,I have to distribute global plotect client to 200 notebook. I have successfully tried using GPO. The question is:How can I prevent manual insert username, password and portal address on 200 notebooks the first time?Thanks for the advice.Daniele

user ID agent log : can't find member

Hello,On my user ID Agent log on domain server, i have this line,10/25/12 10:20:36:823[Debug 643]: ldap_search.... 10/25/12 10:20:36:823[Debug 682]: ldap_search done 10/25/12 10:20:36:823[Debug 1094]: The number of entries returned was 1 10/25/12 10:20:36:823[Debug 1119]: total entries returned 1 10/25/12 10:20:36:823[ Info 945]: Add domain m...

anider by Not applicable
  • 2700 Views
  • 1 replies
  • 0 Likes

Resolved! Global Protect License

Hi,As I know if we use more than one gateway or HIP we need a license.I wonder if I use GP as below do we need a license :Pa2050 with 2 global protect portals.Each portal has different gateways(1 gateway this device and the other gateway another PA device ).With that config can we use GP ?users will select which portal they'll connect by themsel...

about connection between Panorama and paloalto fw

Hi All,I have some questions about panorama and paloalto fw connection that wantna confirm.1.How many bandwidth are needed between panorama and paloalto fw connection , even they are not in same location ? any suggest?2.Maximum logs received on panorama from paloalto fw every second? if over it, is there any notify can be seen on panorama or pal...

Resolved! Disabled Vulnerability Signatures in App+Threat Update 335

Can someone please explain why a high severity vulnerability signature has been disabled in update 335?Does this mean that this vulnerability will no longer be detected?What happens if we encounter this vulnerability, will it be allowed through?The same question also about the disabled spyware signature in the update 335 as well.

ERIKS by L1 Bithead
  • 4538 Views
  • 4 replies
  • 0 Likes

Blocking and Reporting Data on Cyber Bullying and Victims

Any way I can use PAN firewalls to stop cyber bullying and then generate a report on individuals trying to bully and who were the victims?For Ex: Access to facebook is granted (facebook file-sharing, posting, chatting etc) but when the individual tries to bully another individual using slang language (keywords), PAN firewall should prevent it (...

about "Succeed marking traffic log as exported".

HiI configure export traffic log by "FTP schedule Export".PA display is "Succeed marking traffic log as exported" after ftp export success.What this mean "Succeed marking traffic log as exported"?===============================================================2012/10/25 04:45:35info general general 0 Succeed exporting traffic log via ...

smaekawa by Not applicable
  • 3004 Views
  • 2 replies
  • 0 Likes

Google Drive Windows application

Hello,It seems like the Google Drive windows application application does not work with ssl decryption enabled.Maybe you need to add it to the list of applications excluded from ssl decryption?https://live.paloaltonetworks.com/docs/DOC-1423Is it possible to edit this list?Jo Christian

Resolved! Global Protect 1.1.7

Hi,when we use this new version and with out wildcard certificate it gives an error.Can't we use wildcard cert with GP 1.1.7 ?Thanks.

Resolved! 4.1.7 Problem with Domain Users enumeration persists.

I am running PanOS 4.1.7 on a pair of HA 2050's which use direct LDAP connectivity to multiple AD servers for group membership. I also have the UaInstall-4.1.5-1.MSI 4.1.5 user to IP agents running on my DCs. I do not have the group membership coming from the user to IP agent running on the servers. I have the 2050's enumerating group member...

EdwinD by L3 Networker
  • 3285 Views
  • 2 replies
  • 0 Likes

Resolved! Google Chrome Update

I'm seeing an issue with the latest version of Chrome that was released earlier today (21.0.1180.60) and SSL-Decryption. On either Mac or Windows platforms, any sites that are in the decryption policy (google, gmail, facebook, etc) are met with the following error: Error 324 (net::ERR_EMPTY_RESPONSE): The server closed the connection without sen...

  • 24340 Posts
  • 124 Subscriptions
Top Liked Authors
Labels