General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Pan vs proxy???

Hi all!I am newer and I meet some problems with PA 2050I want use PA 2050 to monitor traffic in my network.I setup PAN in Mode Layer 1 ( virtual wire)I setup Polices is aler ( not block - i sure it)I have a proxy, client can access internet through Proxy or not, all ok!But after i put PAN, client can't not access internet through Proxy,but if cl...

dat.tran by L2 Linker
  • 2589 Views
  • 2 replies
  • 0 Likes

Global Protect ios,iphone

Hi,I want to use my iphone and ipad devices automaticly to connect throught Global Protect to internal network and they will use as internet their own connection.Just for internal access they will use Global Protect.The real question is : when we configure this for the phones, Do we have a option that iphone user will always be connected to Glo...

Wildfire automatic signature via daily AV updates

When the Wildfire Automatic Signature gets distributed via the daily AV updates, is it safe to assume that the only AV Profile that gets the block action for the new signature is the "default" or do all of the AV Profiles that have been created get the block action?

jwolach by L4 Transporter
  • 2736 Views
  • 3 replies
  • 0 Likes

HA2 problems

Hello together,We have a A/A cluster with PA-5050 boxes running PAN-OS 4.1.5At the moment one node is suspended due to another problem. We had the problem that we lost the HA2 connectivity (main/backup) between the cluster nodes and traffic through the active box where stopped.From my point of view this should not happen as this link is for sync...

muellerm by Not applicable
  • 6731 Views
  • 7 replies
  • 0 Likes

Resolved! What is policy order inspection on Palo alto?

Hi All,in policy tab there are a few policy like security, NAT, Qos, PBF, Decryption, Application override, captive portal and DOS protection. my question is what is policy order inspection on Palo alto.which policy palo alto will look first?thanksIndra

el by Not applicable
  • 10590 Views
  • 6 replies
  • 0 Likes

Resolved! Merge XML configs in Panorama?

Hi -I was wondering if it's possible to merge a portion of the Panorama config that I'm manipulating offline (say in Notepad++) with the existing Panorama running config? Specifically, I've got objects I'm defining in a device-group and I'm defining those in an XML file offline. What I'd like to do is upload/import this XML file and merge it i...

DLP and Custom Reporting

I was wondering if there was a way to create a report off of any DLP policies that are triggering daily so you can get a username and ip of anyone triggering this policy. Just was curious if anyone had any success in custom reports doing this.

netslh by Not applicable
  • 3890 Views
  • 3 replies
  • 0 Likes

Resolved! Erros when update software and signature in PA 2050 v 4.16

HI all,I am newbeeWhen i update software and database for Antivurs, threat preventionBut i met a erros:Failed to install with the following errors. Image File Authentication Error Failed to load /opt/pancfg/mgmt/sw-images/PanOS_2000-4.1.7 Pls hepl me!Thanks

dat.tran by L2 Linker
  • 3480 Views
  • 4 replies
  • 0 Likes

Dual ISPs with 2 PAN Firewalls

I am in need to set up a branch office with Dual ISPs and PAN firewalls. Everything I've seen & read detail the process with a single PAN and PBF's. Has anyone accomplished the same with 2 PANs?? I am trying to get the set up in my head & having issues obviously. Regards, Dan

Exclude certificates generated by a third party CA from being decrypted

Hello, The use is very simple : many government agencies (social security, tax collecters...) are using SSL websites signed with own CA (which is great for their own security) but creates many problems with PA decryption. Is there a way configure PaloAlto to exclude from Decryption of certicates generated by a list of third-party CAs I would fee...

essnet by L4 Transporter
  • 2598 Views
  • 2 replies
  • 0 Likes

Problem updating software

Hi,I have a brand new PA-200 that for some reason refuses to update it's software.This is the error I get when I try:"Successfully downloadedPreloading into software managerImage File Authentication ErrorFailed to load into software manager. Please retry.Post processing failed. Please retry."Does anyone know what could be wrong?Thanksmario;

MarioG by L1 Bithead
  • 5160 Views
  • 5 replies
  • 0 Likes

Resolved! Extended validation certificates, Global Protect

Hi all,I'm trying to use Extended Validation certificates on my Global Protect so that users connecting to the web-portal will see our EV certificate. I've successfully imported my certificates and assigned them as the server certificates in both the Global Protect Gateway and the Portal. When I connect to the portal I get "no green bar"... I've...

Resolved! PA-200 - SMTP \s

Cant send emails out. Reviving emails works fine.If i try to telnet out to a known working MX it times out.tried to allow outgoing firewall rules with app ID and Service. nothing works.Running PAN OS 4.1.7This worked on earlier versions of the PAN-OSRegards,Peet

PoTski by L0 Member
  • 3865 Views
  • 1 replies
  • 0 Likes
  • 24431 Posts
  • 125 Subscriptions
Top Solution Authors
Labels