General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 379 Views
  • 0 replies
  • 0 Likes

Having trouble configuring IPSec tunnel (PA-500)

We have a VPS system to which we need to grant access to our private office network.  The VPS is in a cloud service so there is no networking gear that we can use for the vpn end point.  Our office network is behind a PA-500 firewall.

The VPS is a Cen

...

safecloud by Not applicable
  • 2500 Views
  • 3 replies
  • 0 Likes

User-ID 4.1.2-2 and Exchange

I am attempting to gather user to IP mapping for exchange users with User-ID agent 4.1.2-2.  I am accessing our exchange server using the iphone mail app, but no information is for my IP address.  I know there is a known issue logging IMAP or POP3 us

...

User-ID / group mapped incorrectly

Hi all,

I've wanted to block some sites for specific users and created an AD group on my W2K8 R2 DC. Unfortunatly I have some problems that I haven't encountered before.

When checking the user I see the user is a member of my test group, so far so good

...

ebo by Not applicable
  • 3012 Views
  • 2 replies
  • 0 Likes

Application Logmein identified but not dropped by rulebase

Hello,

Sorry, but I hav  implemented a brand New PAN solution with Url cat and AV license.

All configuration works find. I have a visitor zone on a DMZ and I want them to access Internet but with my Url Categorisation, so I can't let them use Remote ac

...

d_aznar by Not applicable
  • 2039 Views
  • 1 replies
  • 0 Likes

Resolved! Cannot get OSPF to work through a tunnel interface..

Hello,

I have been working on my PA-500 trying to get OSPF to work through an IPSEC site to site VPN.

I cannot get OSPF to complete.  Looking at the status, I see LSAs sent, but none received.

I verified that the other end is configured exactly the same

...

mbehlok by L0 Member
  • 6562 Views
  • 4 replies
  • 0 Likes

VPN SSL - Verification of a login belonging to a AD group

Hi support,

I have a question regarding the authentification of users through the VPN SSL.

Here is the situation:

Login of the SSL VPN user: AdminLogin
Password of the SSL VPN user: AdminPass
SSL VPN name: AdminSSLVPN
Authentication Profile associated wit

...

novidys by L1 Bithead
  • 4951 Views
  • 7 replies
  • 0 Likes

Site is not loading

Dear All,

I failed load below site eventhough the url filtering is off. Any idea? This site is working well in dsl connection.

http://www.soti.net/

Thanks

Asanka

Asanka by L2 Linker
  • 1674 Views
  • 1 replies
  • 0 Likes

on Palo Alto Certificate create

We create a certificate on our local CA. We want to decrypt traffic in Palo Alto using this certificate. We decided to use the CN as "*" to match all destination hostnames the client will use. We installed the certificate and the intermediate and roo
...

L2 with Aggregate

Hi

  We would like to configure L2 with Aggregate between PANOS (4.1 - PA5050) with cisco switch

     -  After we do L2 Aggregate  , and assign IP Address on VLAN , we find that when we ping to this IP Address , there are many request-timeout.

     - If

...

apirachat by Not applicable
  • 1990 Views
  • 1 replies
  • 0 Likes

Filter activesync

Hello,

I wonder if the following is possible. (Question from a potential customer).

They want to filter/DENY MAIL from the activesync traffic to mobile devices (users in the organzation using phones that are not approved because of security).

But they w

...

Unable to Run User Activity Report After PAN OS Upgrade

We recently upgraded our appliance to 4.1.3, and now cannot retrieve any data prior to the OS upgrade when running User Activity Reports.  My logdb shows that we are near full capacity (but haven't reached the 80% threshold as of yet); however can on

...

Resolved! Net Connect Verus Global Protect

What is the difference between the license version and non-license version of the global protect? Is there some documentation on what we would get with the license version verus the non-license version? I would like to have some kind of documentation

...

HA questions

Hello,

I'm having trouble understanding how Active/Passive HA works in Palo Alto. In other solutions the active device has a virtual address on top of its physical interface address, and when the active device goes down the passive device 'takes over'

...

u5801 by Not applicable
  • 8882 Views
  • 10 replies
  • 0 Likes
  • 23835 Posts
  • 112 Subscriptions
Top Liked Authors
Labels