General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Source user not shown in some logs

Hello,I have developed a script that collects user-ip mapping from a wireless controller and send this info to User-ID Agent. All these looks fine because I can see the users in the User-ID Agent monitor table, but when I look traffic logs on Palo Alto I can see some logs do not have a user identification and other logs have it, for the same sou...

Resolved! Anyone having issues with cacti after upgrade to 4.1.8

Grettings, just wondering if anyone else is having any issues with cacti after upgrading to 4.1.8. All my graphs stopped working even though cacti is able to quere snmp just fine. After I downgrade back to 4.1.7 everything is working fine again. Thanks

pvaughan by L0 Member
  • 3644 Views
  • 2 replies
  • 0 Likes

Resolved! Responding to DMCA takedown requests

I'm a recent Cisco ASA convert. I'm in an academic environment so bittorrent (and P2P in general) is permitted. We get an occasional DMCA takedown request. Finding the culprit in the ASA world was pretty straightforward: grep the syslog for the NATed port and see if there was a match near the alleged infringement time. I'm having a difficult tim...

MCmgt by L2 Linker
  • 3700 Views
  • 4 replies
  • 0 Likes

Resolved! Re: show routing route destination output

Hi,Sorry I know this is an old thread but figured I'd ask here as my issue is the same... I am interested in finding the specific route in the route table that will be used for a specific destination network lookup. So I do "test routing fib-lookup ip 2.2.2.2 virtual-router default" command but the output only shows the interface that will be u...

Resolved! certificate import for using captive portal

Hello community,we have running a PA-500 with a captive portal configuration. This config was build up last year on a PAN-OS 3.1.7. We haved used Debian Linux with openssl to generate a key-pair and a CSR. To correctly import the certificate I had to convert the certificates in Base64 format and copy&paste the intermediate certificate on the...

Resolved! Blocking traffic from specific AD Computer

Hello Everyone!Is there any way to treat trafic from an specific Computer in AD ?I need to block internet traffic and allow only internet corporate email (gmail) to some computers (doesnt matter the user logged in there)I can fix thos MACs to the DHCP so they will receive always the same IP and I can treat those traffic... But I would like to kn...

Panorama Edit turns to New and fails

I've seen this a few times and have finally decided to ask.Running Panorama 4.1.6, managing several devices. I switched context to a 2050 running 4.0.12 and created a new zone to be used for a second SSL VPN. The results of the commit show that I didn't "Enable User Identification". Returning to "Edit Zone", I select the check box and hit "OK". ...

scud by Not applicable
  • 2251 Views
  • 1 replies
  • 0 Likes

CLI "target" command

Can someone please explain what the CLI "target" command actually does? It says that its for a "management session target". What does that actually mean?

jwolach by L4 Transporter
  • 2769 Views
  • 2 replies
  • 0 Likes

Resolved! MS-RDP NAT Issue

I am trying to create a static destination NAT to enable RDP access on port 3389 for one of my internal servers, but no matter what I try, it just doesn't seem to work. I've read through several KB articles as well as https://live.paloaltonetworks.com/docs/DOC-1517 and I've set everything up as it seems it should be, yet no NAT session is ever ...

HSRP:- Ideas / suggestions thoughts on how to achieve this using Palo Altos in Active/Passive.

Greetings Evereyone,I need some ideas / suggestions / thoughts on:For reference, I just attached a hand drawn network diagram.Just to provide a brief description, I have a network scenario that presently uses HSRP to maintain Active/Passive configuration on the border Cisco FWSMs firewalls. I will be replacing these FWSMs with Palo Altos in HA....

ARP load sharing

We are planning to set up HA in Active Active mode. The boxes sit in separate locations with Layer 2 network between them. Currently our guest Network site on our second PA-2020 with our LAN on the first. Wer had to put the guest Network on second box as we had an issue where we was filling the arp table. When you run Active Active how does a...

BBHLTD by Not applicable
  • 3172 Views
  • 2 replies
  • 1 Likes

Resolved! Ldap Proxy

Hi,in what situations should we use user-id agent as Ldap Proxy ? And when we select this function, how agent behaves?

  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels