General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 388 Views
  • 0 replies
  • 0 Likes

A commit is pending. Please try again later.

Hi

I upgraded a few things, and all looks like they are completed, but I can't commit changes now - where can I see what the box is doing and progress?

URL filtering database was upgraded from version 3734 to version 3735 by the auto-update agent

11/09 ...

FlexyZ by L3 Networker
  • 5800 Views
  • 4 replies
  • 1 Likes

Configuring Virtual Route in 4.1 default gateway

I was trying to enter default gateway in Virtual Route when I commit it , it is asking to enter canont find interface.

I use to configure this in 3.1 same no problem.

Can anybody help tell me why ?

Thanks,

BPA by L0 Member
  • 2107 Views
  • 1 replies
  • 0 Likes

Exchange 2010 NLB Cluster

I have a NLB Cluster configured for our Exchange 2010 environment. I have manually added the ARP entry for the Cluster to the interface of the PA. Everything works fine, until you make any change to the PA and commit it. Once you commit it, the PA c

...

Steven by L1 Bithead
  • 8835 Views
  • 19 replies
  • 0 Likes

Natting Internal Hosts to a differente ISP`s

I'm trying to find documentation and/or any help to see if PAN firewalls are capable of NATing Two external ISP`s to a differents hosts IP.

My scenario:

My default gateway is 187.x.x.x

When i try to make a NAT with the seconde ISP 189.x.x.x , i don`t kn

...

Thiago by L3 Networker
  • 2857 Views
  • 5 replies
  • 0 Likes

Resolved! How to monitor bandwidth on Internet interface

I'm looking to monitor the bandwidth of the Internet facing interface (ethernet 1/8) of our PA-500 through SNMP (using Solarwind IPMonitor), but am unable to find what OID to use.

I've found several documents and lists, MIB's etc with various OID entr

...

lhank by L0 Member
  • 14796 Views
  • 7 replies
  • 0 Likes

Problems with PA-2050

hello friends....

I have a PA-20-50 configured as content filtering and is synchronized with a pan-agent, the problem I have is that the device is completely disconnected after 10 minutes and only restarting again operate.

Know if any physical detail o

...

ljuarez by Not applicable
  • 2398 Views
  • 4 replies
  • 0 Likes

Monitoring PA4020 with Cacti

Hi,

Has anyone managed to set up Cacti to manage the system resources, Mem, CPU, Sessions, Connections and so on?

I have tried the Netcreen tips as per https://live.paloaltonetworks.com/message/2968#2968

But this didnt help...

Any other tips?

Or can anyon

...

onesj by Not applicable
  • 3795 Views
  • 2 replies
  • 0 Likes

AIM-MAIL dependency

After a recent APP-ID update, AIM-MAIL is sqwauking about not having imap, smtp and pop3 dependencies enabled. Users still get access to their webmail, but I'd like not to continue getting the below warnings.  Ideally, I'd like PA to re-address this

...

AD/LDAP admin authentication in 4.1

Hi all,

does anybody have an exmple of howto authenticate a user based on it's group membership against active directory?

We have 3 kind of groups in AD which should represent the access level.

Could someone please post a small summary how to achieve th

...

muellerm by Not applicable
  • 5404 Views
  • 7 replies
  • 0 Likes

Object Reports or comapre groups option

Is there a way to print the details of a URL filter group or an Application Filter group? How about the ability to comapre 2 URL filtering groups or 2 Application groups?

We have 8 different URL filtering groups and 8 different Application filtering g

...

Captive Portal for AD Users

Hello,

I'm seeing an issue currently where a handful of my hundreds of AD users are being directed to the CP landing page despite their workstations being on our domain, and with valid AD user accounts. They are all on Macs and have the same configur

...

Conde01 by L1 Bithead
  • 3551 Views
  • 5 replies
  • 0 Likes

PA-500 throughputs?

I realize that is a difficult question to answer.  What kind of maximum throughputs are people seeing with their PA-500s?

For example: I monitor our firewall (not a PA) using PRTG via SNMP and see a fairly constant 20 Mbps with some 30-45 minute spike

...

XML Interface to PAN Agent

Hi


We are having a lot of issues with using the PAN Agent scraping the wrong user / ip information from our AD logs as we also have a mixture of local user logins and remote desktop RDP connections which change the user's login / ip address associatio

...

ERIKS by L1 Bithead
  • 3313 Views
  • 2 replies
  • 0 Likes

Resolved! Schedules object

Hi,


I have a question about the schedules object which is used in security policy.

Is there any notification can remind the firewall administrator to cleanup the policy after the schedule object expiration?

Thanks,

Richard

  • 23842 Posts
  • 112 Subscriptions
Top Liked Authors
Labels