Resolved! Detecting Flame exploit
It looks like the Snort folks have a signature for Flame, does PAN? If not, when is it coming? The CTOs will be asking if we are safe...http://vrt-blog.snort.org/2012/05/flame-malware-targeted-attacks-and-you.html
It looks like the Snort folks have a signature for Flame, does PAN? If not, when is it coming? The CTOs will be asking if we are safe...http://vrt-blog.snort.org/2012/05/flame-malware-targeted-attacks-and-you.html
Hello,We have for some time now blocked the use of Dropbox (as an app) and only allow a few users access, based on a domain group. Over last couple of weeks have noticed activity where non allowed users are able to access the application. In my initial investigation, it appears the sessions are not falling into the "dropbox" application object ...
If I were to enter multiple subnets (ex: 218.65.30.0/24) as entries in a Custom URL Category, will those entries been seen as the entire subnet or will they be seen as a URL (http://218.65.30.0/24)? I ask this because I'm looking at creating an outbound block/deny policy based off custom URL categories and I want to make sure I am actually bloc...
Hello,Is it possible to have a graph with the Realtime bandwidth consumed by each application in VWIRE mode ?I saw these: http://www.paloaltonetworks.com/products/QoS.htmlbut for applications, there is only a chart...Maybe is there a way to make it with the splunk tools?Regards,
Hi,Consider the following:All traffic (0.0.0.0/0) is NAT'd as 1.1.1.1 (public)The exchange server has an inbound NAT of 1.1.1.2 (public) > 192.168.1.1 (private).Now when the exchange server makes a connection to the outside world will it be seen as 1.1.1.1 or 1.1.1.2?If it is 1.1.1.1, then I must make a reverse NAT rule for all my inbound VIP...
I am currently working within Panorama and for one device group there are over 533 rules and editing them is terribly slow. I found this document and one of the fixes mentioned was limiting the row count in the policy editor to only 100. I would love to do that but I can't seem to find where in the interface I specify this.Any help would be v...
Is GlobalProtect 1.1.6-9 compatible with Windows 8?
Dear all,We have a special setup on our external firewall interfaces. There are two different Internet lines from two different ISPs:The yellow line (ISP b) indiaces the main Internet line. The green one is currently only used for outgoing e-mails using the "main" IP address 212.x.x.6. Now we would like to activate an additional IP range assigne...
Hi,I will do follow the procedure "Expending Panorama Storage Using a Virtual Disk", admin 4.1 doc, page 270, to have a 500GB disk for log. But a question popup!! (again)Here my question : can we expend, a second time, a expanded panorama storage? And if we do this, we will still have the logs? And how?just to be more clear :- let say toda...
Hi,I have config PA-2050 to send logs to panorama, using this doc:https://live.paloaltonetworks.com/docs/DOC-1267àBut i have old logs in PA that stay there. Just the new logs are send to panorama.There is a way to export all logs to panorama? i need to keep those log in the panorama engin for investigation purpose.thanks!
Is VM ESX 5.0 supported for Panorama? Thx HMAN
Hi,I have transfered all logs in panorama. Im working on understanding how logs work with disk space/partition, and some questions popup in my head! :smileygrin:I know where Threat and Traffic Logs are save (in a specific partition: threat and traffic) :admin@XYZ-PAN> show system logdb-quotaQuotas: traffic: 25.00%, 2.722 GB ...
Hi,I would like use PBF to secure and share 2 internet links (same ISP)When I configure public IP on the PA interfaces I have an error due to LAN overlap.the primary link eth4 x.y.z.99/24the secondeth3 x.y.z.185/24the ISP gateway is x.y.z.254 same for both links.my lan interface eth2 192.168.2.82/19my VR : 0.0.0.0/0 eth4 next hop IP x.y.z.254Ho...
Are there any links or references to a complete sample config for the PA firewall? I would like to see complete NAT examples and security policies for both inbound and outbound traffic. The Understanding NAT guide covers the inbound policy but not the outbound and does not cover all security policies. Also, I am looking for examples of securi...
Hi All,Are there any documents for config GER Tunnel on PANOS 4.1? I have searched many times in KP, but not found.Regards,Joy,
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 3 |

