General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Applications and their dependencies

I am trying to figure out this APP ID and the dependencies

In order for symantec updates app to work, the FTP app must be allowed.  I discovered that to get to the doc's on palo alto network you need the app clearspace which is dependent on http-proxy

...

snormoyle by Not applicable
  • 3552 Views
  • 5 replies
  • 0 Likes

VTC NAT problem

I'm having a problem getting a standalone VTC box working.  We're replacing Cisco ASAs with PA-500s at our sites, so there are existing rules that should be working when translated to Palo Alto.  I'm fairly confident I have the requirements down:

tcp/

...

nwallette by Not applicable
  • 4305 Views
  • 6 replies
  • 0 Likes

Size limit for URL block list

Is there a size limit for a URL block list, anad if so, what is it?  (I understand that there is a size limit on each URL...I am referring to the size of the entire list of URLs)

jstiling by Not applicable
  • 4237 Views
  • 6 replies
  • 0 Likes

Resolved! Unable to download Dynamic Updates/

So, has anyone run into an issue with downloading Dynamic Updates? We are curently running a pair of PA-4060's in active/passive mode, with PAN-OS Software version 3.1.9. I have configured the firewalls to download only and sync to peer both the Appl

...

UAMSITSEC by Not applicable
  • 13567 Views
  • 9 replies
  • 0 Likes

URL filtering not active

Hello,

I have NFR PA-2050 device. Software is 3.1.1. Licence is valid (see screenshot).

Url filtering is not active. There is no activation button to activate it too (see screenshot)

request url-filtering upgrade/revert/install doesn't work.

request url

...

Resolved! PA-5020 NAT Limitations ?

All,

We're in the process of doing a Checkpoing to PA conversion and we think we've found a possible show stopping issue. On our Checkpoints we have a large number of NATs that we need to port over. Our vendor runs through the conversion tool and gene

...

steveo by L3 Networker
  • 3288 Views
  • 5 replies
  • 0 Likes

Panorama Logging with NFS

I'm currently making a log concept for our new PaloAlto firewall environment for our new internet perimeter. I have a few questions about that.

Here is what we want to build:

- a two stage firewall concept

- outer firewall is a PA-5050 cluster with Thre

...

ssl gateway not working after upgrade to 4.1.2

Hi

After upgrading to 4.1.2 from 4.1.1 the ssl gateway and protal is not working.

When accessing the portal the client certificate is presented but when pressing continue, the login page never appears.

I had to revert to 4.1.1 to get it running again.

An

...

FlexyZ by L3 Networker
  • 5154 Views
  • 9 replies
  • 0 Likes

User-ID Group Include List Error

On PanOS 4.1.2 I am trying to perform an LDAP lookup for the 'Group Include List' element of the User Identification setup i.e. to populate the 'User' field in policies.

When I do this I get an "bind-dn is invalid" error.  I know the account configure

...

apackard by L4 Transporter
  • 4932 Views
  • 11 replies
  • 0 Likes

NetConnect on Linux under Wine

Has anyone managed to get NetConnect to run under wine on linux?

I Use Firefox 9 for Windows under Wine, and managed to do an offline Java install  by downloading from here:  http://www.java.com/en/download/manual.jsp

I authenticate in the portal.  The

...

aseem by Not applicable
  • 1878 Views
  • 1 replies
  • 0 Likes

How many PAN support Admin account?

Hello.

I want to know about PAN admin account performance.

First. How many PAN support Admin account? Is it different from each PAN model?

Second. How many PAN support concurrrent logged Admin user?

Please let me know above question.

Thanks in advance.

Reg

...

ttongfly by L3 Networker
  • 1643 Views
  • 1 replies
  • 0 Likes

Resolved! Blocked traffic after Content Upgrade 289

World of Palo,

We have just seen an increase in blocked traffic (thus broken apps) after upgrading app content from V288 to V289.  The funy thing is its all low risk Microsoft LAN stuff.  Does anyone know if PAN have changed the action and not the sig

...

djmac by Not applicable
  • 7009 Views
  • 1 replies
  • 0 Likes

When does a rule go unused

I have a number of rules that are showing unused.  I've read the threads on the counter resets etc. but I'm still looking for a definitive answer - hence my post.  When does a rule become marked as unsed?  Is it after a month, 2 months, a year, since

...

Blocked Applications cause Reset, not Block Page

On our firewall users are getting 'Connection Reset' errors in their web browsers rather than the 'Blocked Application' page.

While the end result is the same, it makes debugging connection issues a lot harder!  Am I doing anything wrong - an applicat

...

apackard by L4 Transporter
  • 2719 Views
  • 1 replies
  • 1 Likes
  • 23553 Posts
  • 106 Subscriptions
Top Liked Authors
Labels