General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Vwire NAT

I am trying to setup NAT with vwire.  According to Palo Alto this is possible with PAN OS 4.1 and I am on PAN OS 4.1.6.  I have setup NAT with L3 on the PAN devices so I have an idea on how to do this setup.  When I setup NAT policy on the PAN device

...

snormoyle by Not applicable
  • 1978 Views
  • 3 replies
  • 0 Likes

Using Purchased Certificate for SSL-VPN Portal/Gateway

We have our GP portal/gateway externally facing. We’ve designated a host name for people to access the portal so they don’t have to remember the IP address - from both Untrust and Trust Networks. Currently the portal throws a certificate warning in i

...

cmateam by L3 Networker
  • 2399 Views
  • 2 replies
  • 0 Likes

Active-Active or Active-Passive

Currently, we have two PA 2050s each hooked into a Brocade FCX switch, which are stacked together. We cando a heartbeat connection over our datacenter's switch, so if one of our drops fails, it will failover. However, reading through the configuratio

...

lorr by Not applicable
  • 3661 Views
  • 1 replies
  • 1 Likes

Hide Public IPs

I've been getting a lot of traffic from 'unfriendly' countries trying to gain access to a service we provide via one of our NAT'ed public ip address. I know for a fact they have no business connecting to that service. Is there a setting on the Palo A

...

mark1ped by Not applicable
  • 2319 Views
  • 1 replies
  • 0 Likes

Resolved! IPSec VPN tunnel no longer working

Hello guys

We have a few VPN tunnels between our PA-2050 (in HA cluster) and some WatchGuard firewalls (different models). We migrated these tunnels to the PA-2050 a few weeks ago and they ran stable. Now suddenly two of 10 tunnels are down and we don

...

oschuler by L4 Transporter
  • 12749 Views
  • 18 replies
  • 0 Likes

Resolved! Internal route problem

Had a question about internal routing.

We have eth port assigned to a trust network which is a 192.168 network.  We also have a Avaya VoIP PBX that is vLan'd on this network and the routing is managed on an internal core switch to access this network.

...

cmateam by L3 Networker
  • 3376 Views
  • 3 replies
  • 0 Likes

VWire

I have configure a 2050 in a vwire configuration can I still utilize layer3 on the device.  From what I have been reading if I configure PAN device for vwire then the device cannot due any layer3 funcationality.

snormoyle by Not applicable
  • 1787 Views
  • 2 replies
  • 0 Likes

SMTP traffic mis-classified as FTP ?

The other day we discovered that our SMTP server was unable to send email to the silvacom.com domain.

The problem was traced to our PAN rule which allows only SMTP traffic to eminate from our email server, on the application-default port. All attempts

...

KGC by L3 Networker
  • 2908 Views
  • 3 replies
  • 0 Likes

SSL-decryption slow

Hello,

So I have tested SSL decryption today, and I made it work. But for some reason some of the webpages that are being decrypted are extremely slow. Facebook and even support.paloaltonetworks.com are two of them.

I exported a CA certificate from our

...

  • 24250 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels