General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4237 Views
  • 0 replies
  • 0 Likes

FTP Brute Force attack blocked only after 13 seconds

Hello,Two months ago we correctly set up a rule to block Brute Force attacks on our FTP server in DMZ.The related information can be found here: https://live.paloaltonetworks.com/message/16977#16977We tested it manually by just entering wrong passwords quickly for the FTP server and after 10 attempts we were blocked from our own FTP server.The c...

palo alto安全防范是否支持一下功能????

具备Land攻击防范功能 具备Smurf攻击防范功能 具备Fraggle攻击防范功能 具备ICMP Flood攻击防范功能 具备地址扫描攻击防范功能 具备带路由记录选项IP报文攻击防范功能 具备超大ICMP报文攻击防范功能具备time-stamp攻击防范功能 具备带源路由选项报文攻击防范功能 具备端口扫描攻击防范功能 具备ICMP不可达报文攻击防范功能 具备ICMP重定向报文攻击防范功能 WinNuke攻击防范功能

Resolved! Pan-agent settings over the WAN

We are having some issues with our remote sites as they browse the internet through the central site however they authenticate to Domain Controllers locally in the remote sites.When we enter the remote site DC's in the pan-agent (which resides in the central site) the traffic generated by the agent when pulling the security event logs kills the ...

rds by L2 Linker
  • 9709 Views
  • 12 replies
  • 0 Likes

Using QoS to set application priority

Is it possible to set priority based on application? Most of the configurations I've found were to limit bandwidth to certain applications, so I'm curious if this is even possible.On my PA-500 I created a QoS policy with the smtp application and set it to class 2. The default QoS profile already has class 2 as a higher priority than the defaul...

Connecting a Tier 1 firewall pair to a Tier 2 firewall pair without a switch

Internet||Tier 1 FW||Tier 2 FW (Palo Alto Firewall) in Active/Passive mode||Core Switch (HA)Hi,Can I connect a pair of Tier 2 firewalls (A/P HA) to a Tier 1 firewall pair (A/P HA) without using a switch(s) in between? there will be 2 UTP from each T1 firewall - 1 to each Palo Alto Firewall.the main reason is that there's no available switches fo...

afiq by L1 Bithead
  • 4938 Views
  • 3 replies
  • 0 Likes

Allowing just the application "web-browsing" breaks websites

I’ve been trying to figure this one out and would appreciate input from the community. What recommended "helper" applications must be enabled along with the application “web-browsing” to have websites work as close to normal as possible? For example allowing just the application “web-browsing” and “SSL” is not sufficient since plenty of websites...

Quinton by L3 Networker
  • 10257 Views
  • 5 replies
  • 3 Likes

Packet with application status insufficient-data

Dear All,Do you ever face a problem in Paloalto with appliaction logged as "Insufficient-data"?My policies set to permit the connection, but every traffic that logged in Firewall always as "Insufficient-data", also the application can't establish connection.Thank you

User-Id Agent no longer showing domain

I setup the user id agent with the PA for an organization several months back. They reported it not blocking correctly so I logged in to take a peek. The PA used to report their username as domain\user but now it is just reporting the username (with no domain) which explains the rules not matching correctly.Their PA was last updated a month ago ...

SDorsey by L4 Transporter
  • 3100 Views
  • 1 replies
  • 0 Likes

Resolved! ftp export log traffic query example?

Can someone provide an example of the valid parameters and format for the query statement used in an FTP export? My immediate need is to limit to a specific vsys, and the size is too large to do through the GUI.I know the base command is this: ftp export log traffic start-time equal 2012/07/26@20:59:00 end-time equal 2012/07/27@21:05:00 to a...

u11756 by Not applicable
  • 3349 Views
  • 1 replies
  • 0 Likes

Resolved! How to Clear (remove) Pending CFG Changes

So I have a few changes that are in the candidate config waiting to be committed.However there are a few changes in there that I dont remember doing and they make me a bit nervous.How can I clear the candidate config so there is nothing to commit? I dont see an option to do that.Maybe I should save the current running config (which im happy with...

choff123 by L3 Networker
  • 13592 Views
  • 2 replies
  • 0 Likes

Resolved! Brightcloud update in Palo alto

Hi,On startm, I just want to stating that im french. You may have some difficulty to read next ! Its a question about how Palo Alto take new update of Brightcloud URL DB.We replace WebSense by Palo Alto, because PA manage more then just HTTP and a few of apps. a HUG more. so far PA is a great product. But...In WebSense, when i was asking a rec...

Resolved! reverse proxy key doesn't match certificate

We deployed our PA last month, generated an SSL certificate (forward trust, forward untrust, and trusted root CA), and created SSL decryption rules. Since the creation of the rules we are getting weekly medium system alerts (8 of them) stating "reverse proxy key ['cert_name]' doesn't match certificate issued to '1.1.1.1'." There are others tha...

sconley by Not applicable
  • 7128 Views
  • 1 replies
  • 0 Likes

ISP Failover and Global Protect (Routing Issues)

Hello All,I have a pretty simple setup here - single PA-2020 with dual ISP's (One Virtual Router). We're also using Global Protect (SSL VPN only) currently. I seem to have an issue that I cannot sort out.ISP failover works great through the use of PBF. All inbound services (policies and NAT continue to function) just fine...but here's the kic...

  • 24358 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels