General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Multicast stream from one VR to another.

Hi,We have a IPTV multicast stream coming in on one of our virtual routers, and its working very well for all networks in this VR.However, when we try to "route" this multicast stream to another VR on the same box, we can't make it work.We have basically the same setup on this VR, except that we use "Remote Rendezvous Point" instead of the local...

johnd by L2 Linker
  • 3233 Views
  • 2 replies
  • 0 Likes

VPN SSL & Linux

Hello,Here are some questions about VPN SSL Linux support :- When do you plan to provide a Linux SSL client ?- It would be great to not need the root privilege to be able to download and/or upgrade the VPN client.Thanks :smileycool:

bdaussin by L0 Member
  • 15555 Views
  • 29 replies
  • 0 Likes

Committing Firewall changes

Does committing firewall changes bring the firewall down or will it remain functional while updating the configuration. I basically want to know if I can commit a NAT policy change without bringing down my tunnels

Bagar390 by Not applicable
  • 4168 Views
  • 3 replies
  • 0 Likes

Resolved! User identification

Hi,I´m trying to configure the User Identification based on LDAP to Win2K8 Domain Server.Apparently everything is fine - I can connect to AD Server and see the directory in User Identification -> Group Mapping Settings -> Group Map ProfileMy problem is that just groups are displayed, no users and no computers.I think that that maybe it is ...

rrunge by Not applicable
  • 5038 Views
  • 1 replies
  • 0 Likes

Resolved! Wildcard/UCC SSL Certificates

Are there any issue(s) when using one of these for the reverse proxy (i.e. DMZ websites that use SSL) on the PAN please?Specifically thinking of using Digicert.

Slow Mac upload speeds while connected to Global Protect VPN client

Anyone else having this issue? I have tried from multiple machines. The download is fine but when uploading files back to our file share the speeds are "turtle" like. If I upload the same file using our FileVista web based file transfer it is 3 times as fast and it uploads to the same share.

dboyle by L0 Member
  • 2661 Views
  • 1 replies
  • 0 Likes

Resolved! Threat log columns

Hi Everyone,I see two columns in the threat log that are "receive time" and "generate time". Is anyone knows what differents of them?Thanks,Joy,

Resolved! Accessing multiple network zones over IPSEC VPN

I am trying to setup a IPSEC tunnel between two PA-2020's, one on each side. I have the tunnel connecting and can access devices over the tunnel. However I am trying to access multiple network zones over the tunnel, and I am not sure how to configure that. I've typed up my setup below.Site-A (main site) has a 192.x.x.x/16 and a 10.10.x.x/16 ne...

cmateam by L3 Networker
  • 5417 Views
  • 3 replies
  • 0 Likes

'Unknown Error' on Commit of Network and Device Configuration

I am currently trying to find a way round the issue where by a commit causes a drop in the BGP connections that are peered with the firewall.During the testing upgraded to 4.1 to use the gradual commit but if i try and install just the Network and Device configuration from the advanced option in the commit it get the attached error - not very de...

IPsec VPN Tunnel with overlapping subnets.

Hi,Has anyone setup two PAN FW point to point that connect with the same subnets on each side. The reason for the same subnets is that we have our production network behind FW-A and a co-location network that mirrors our production network behind FW-B. This is for disaster recovery and quick turn on of machines in the event of a disaster, etc....

cmateam by L3 Networker
  • 9209 Views
  • 5 replies
  • 0 Likes

rate-limiting qos policy

Hi,I'm interested in creating a simple qos policy, which will rate-limit streaming applications for all users, except a group of power users.I'm assuming that I would have to create two QOS rules (policies).First one will assign streaming traffic for power users (source user = power users). In this case I would probably omit class, so that the d...

bbivolaku by Not applicable
  • 8006 Views
  • 5 replies
  • 0 Likes

Resolved! Unusual Log entry

In the monitor tab, I'm seeing entries as sys1+[zone Name] in both the "from zone" and the "to zone" columns. What could this mean?

weasel by L0 Member
  • 3425 Views
  • 3 replies
  • 0 Likes

Resolved! SNMP to split between Panorama and traps server

I have a question regarding the SNMP server settings on a 5020.If I have specified to send SNMP to panorama and I also have a traps server listed for the same type (let's say 'informational') will the unit send to both Panorama AND the trap server?

Resolved! Ssl Exclude What for ?

I wonder when we need to use SSL Exclude option for certificate.When I try to write a decryption policy and try to test SSL exclude , I could not see any differences.I looked to pdf and it gives just that info below :SSL Exclude—This certificate excludes connections if they are encountered during SSL forward proxy decryption.Does anybody have an...

  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels