General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 264 Views
  • 0 replies
  • 1 Likes

Resolved! JS/Trojan.redirector.cay false postive?

Hello,

Starting from what appears to be right after pattern update 683-936 was committed - we began receiving a very substantial amount of alerts from multiple internal "victims" for this Trojan.  I am still investigating this internally.  Has anyone

...

CRHC by L4 Transporter
  • 7713 Views
  • 9 replies
  • 0 Likes

Customize url report

Hi everyone,

     I use PAN-OS 3.1.6, I want to customize url report by filter some website don't show in my customize url report. I try use filter by url and operation is "!=" but it doesn't work. How I do it ?

Captive portal authentication with Radius/AD

Hello

     I try PAN-OS 4.1.3, I use captive portal authentication with Radius/AD. I config user in WiFi zone access to any zone must authentication with captive portal. It work normally. But I try set Proxy server and user in WiFi Zone config Proxy I

...

Drop DSCP marked traffic

Hi,  I am looking for a way to define a DSCP value as a condition for a rule.  I would like to drop traffic that was previously marked before entering the PAN FW. 

Any ideas?

Thanks!

Prevent virus with Data Patterns

We are receiving some spam e-mails that containing links to zipped exe files with malicious code.

All the exe files have in common a series of underscore characters, for example: fattura.pdf_________________.exe or informazioni.pdf____________________

...

finit by L1 Bithead
  • 5191 Views
  • 9 replies
  • 0 Likes

Resolved! antivirus feature on https

Hi all, i'm currently testing some features of our PA-500, i've activated the antivirus policies and going on eicar i can see it blocks the download of the file, when i try to download from https the download proceed. How i can check and block antivi

...

fcellini by Not applicable
  • 9106 Views
  • 15 replies
  • 0 Likes

problem of application dependency for security rule

Hi all.

I have a question of application dependency when define a security rule with application.
I’d like to add a security rule for a webex, and webex must requires SSL due to application dependency.
so  I add both of applications webex and SSL in a

...

willstech by L3 Networker
  • 3883 Views
  • 6 replies
  • 0 Likes

Global protect excluded networks

Hi all,

there is a method on global protect to send all my traffic into the tunnel, but exclude the subnet range of the customer to remain connected with the office network and browse the web protected from office infrastructure, but with the possibil

...

fcellini by Not applicable
  • 2485 Views
  • 3 replies
  • 0 Likes

IPSec VPN (non site to site)

Is there any document that shows how to configure IPSec VPN (or any vpn rather than SSL) on the PAN?  I am not looking for site to site.  I only found site to site configuration.  The solution will be for clients who can vpn in remotely from everywhe

...

Source Address/Source User

When both a source address and a source user are specified, is the rule match

  1. source address AND source user?
  2. source address OR source user?

My guess is #1, but I can't find documentation to back that up.

Thanks,

Bart

user group mapping

Using PanOS 4.1.2 on 5020

listing group mapping:

show user group name "<DOMAIN>\<GROUP NAME>"

we get something like this

[1     ] <DOMAIN>\<name>.<surname>

....

though in "user id identification->group mapping settings" under "user objects"

we discretely ch

...

mpaskevic by Not applicable
  • 3942 Views
  • 1 replies
  • 0 Likes

Intercept DNS requests

Hi all,

I've read in an article that it's possible to intercept DNS requests with DNS proxy without setting PA IP address as the computer DNS Server.

Following this article, I've enabled DNS proxy in a PA interface (inside), redirecting DNS request to

...

  • 23630 Posts
  • 107 Subscriptions
Top Liked Authors
Labels