General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 656 Views
  • 0 replies
  • 0 Likes

Resolved! SSL VPN user limit

Hello.

In technical description for PA-500 (each type has own) is limit 100 SSL VPN Users.

This is concurrent (in same time) capacity?

Can be defined 100+ users (from AD) but only max 100 will have connection?

What’s happen with 101 connections?

Than

...

noviko01 by Not applicable
  • 7519 Views
  • 1 replies
  • 0 Likes

DHCP on PA-2050

I have a PA-2050.  When setting up DHCP or modifying an existing configuration is there something I am supposed to do other than Commit the change to make those changes take effect?  Like reboot the thing?

Austin

godber by Not applicable
  • 2467 Views
  • 2 replies
  • 0 Likes

Resolved! | display set?

Hi, Everybody,

Does anybody know if there is an equivalent of the "| display set" pipe operator from Juniper SRX Junos in the configuration mode in Pan-OS?  Thank-you so much for your help answering my question.


Dan Sullivan

dsulli99 by Not applicable
  • 4742 Views
  • 2 replies
  • 1 Likes

VLAN's with Palo Alto - Primer/Tutorial?

One of our switches has a couple of untagged connections into our PAN.

Each connection is configured on the PAN as a regular L3 interface with an IP address assigned and the interface is in the appropriate zone.

I'm interested in reclaiming one of the

...

FIREWALL & PANORAMA

HI

.
I want to know more about panorama.

So my dubt about that.

I have panorama registered on my PAN firewall.IF my panorama stop of work , can i manage my firewall directly on my WEBGUI on firewall ?

Best Regards


Thiago Lima.

Thiago by L3 Networker
  • 1884 Views
  • 1 replies
  • 0 Likes

Blocking Chat roulette type sites

I would like to block all chat roulette type sites.  Omegle, chatroulette, chatrandom etc.  Unless I am missing something it is not as simple as it should/could be.  They don;t seem to be "applications" and there is not a URL category.

Any suggestions

...

BobW by L4 Transporter
  • 11338 Views
  • 6 replies
  • 0 Likes

Discard candidate?

Hello.

I'm new in PAN
To discard the candidate configuration changes, is it the same "Revert to running config" and "Load named config snapshot runningconfig.xml"?

Thanks

Luis

lmlopez by L0 Member
  • 2808 Views
  • 3 replies
  • 0 Likes

LDAP User Group Issue

All,

We are trying to start building URL filtering.  I'm noticing that when I try and set groups in the "Group Include List" it stops at a certain letter and just gives me the "more" option but I can never finish populating the list.

Any thoughts?

mrsold by Not applicable
  • 3738 Views
  • 4 replies
  • 0 Likes

Resolved! Google Translate

Is there any update on the issue discussed here - https://live.paloaltonetworks.com/message/7468

as mentioned in that thread, if you allow translation you can access sites in blocked categories.  This is despite Google including the original URL in th

...

4.1.5 withdrawn?

has 4.1.5 been withdrawn - I don't see it on the download page any longer though 4.1.4 and 4.1.6 are there.

if so, why?

Submitting Suggestions

While creating some File Blocking Profile, I discovered a particular file type I wanted to block was not available.  After searching the KnowledgePoint, I came to the realization, that we can't simply add a file type.  Other discussions, pertaining t

...

TLC_IT by L0 Member
  • 2110 Views
  • 1 replies
  • 0 Likes

tcp_drop_out_of_wnd

Hi,

on PanOS 4.0 I have to disable "tcp_drop_out_of_wnd" check with this command :

>configuration
>set deviceconfig setting tcp drop-out-of-wnd no
>commit

How to disable "tcp_drop_out_of_wnd" check on PanOS 4.1 (4.1.5) ??

Thanks,

Regards.

TCP Timeouts ... Again

I have a bunch of connection, 12 to be exact. From a webserver to a Oracle DB Server. They timeout every 2 hours. 

They pass through a Cisco ASA and a PA 4020. I've created and override rule with a custom app with no timeout. (see attached)

I'm in the

...

jickfoo by Not applicable
  • 8271 Views
  • 7 replies
  • 0 Likes

Help - Userid Responsiveness

We're at the point where we want to apply URL Filtering policies based on userid. This means its very important that Pan-Agent is accurately identifying users. We did a test and added a user to a monitored group. The policy started working properly.

...

jhickey by L3 Networker
  • 2239 Views
  • 2 replies
  • 0 Likes
  • 23951 Posts
  • 113 Subscriptions
Top Liked Authors
Labels