General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 442 Views
  • 0 replies
  • 2 Likes

Resolved! PANOS 4.0.8 - How to determine cause of DROP

Very basic configuration, an any any rule and a PAT rule for nat... trust and untrust zones and a default route and an internal summary route... what is happening is that from a traffic log perspective its being ALLOWED, from a NAT perspective I can

...

joshstout by Not applicable
  • 2020 Views
  • 1 replies
  • 0 Likes

Resolved! URL Categorization

Is there a way outside of making duplicate custom categories to re-categorize a site?  (Outside of requesting Brightcloud to change it).

If BrightCloud says a site is "Weapons" and I want it to be seen as "Government" how would I do so?

Thanks!

mrsold by Not applicable
  • 2318 Views
  • 1 replies
  • 0 Likes

Resolved! syncronize admin roles via panaroma to pa-500

Hi,

we are currently running PAN-OS 3.1.8 on our pa-500s and we are using PAN-OS 4.0.2 on our panaroma server.

Is there any way to create admin-roles on panorama and push them to the devices or must we create each role on any device separately.

Thanks f

...

Vwire with WCCP

Hi

I am planing put PAN Device on vwire mode  just before traffic reach their Proxy solution. Traffic redirect using WCCP web traffic from Cisoc switch to Cisco Ironport.The Proxy device only has one NIC interface.In this secenario What we will see?

...

shabeerc by L2 Linker
  • 3320 Views
  • 3 replies
  • 0 Likes

Inbound server failover between two ISP's

Hi All,

I have a PA-2050 setup with two IPS's.  One is primary, and if that goes down, the secondary takes over.  This has been tested and it works great.

There are three servers that recieve incoming traffic.  They have been setup to use the primary I

...

jgrabows by L0 Member
  • 1790 Views
  • 1 replies
  • 0 Likes

Global Protect Portals/Gateways HA sync

Hi,

I wonder if portals/gateways config are automatically synchronized in a HA environment or do the have to be created manually on each devce?

On our passive HA unit, there are no portals/gateways shown under global protect (only on the active unit).

t

...

PAN OS 4.1.1. How to delete user-group mapping

Hi, I'm using PAN OS 4.1.1 and I'm testing pan-agent and user-id agent. Actually I don't know how to delete my old user-group mappings. In CLI I type show user user-IDs and I see all the users, what I had with pan-agent and an old Active Directory an

...

ssancho by L2 Linker
  • 2992 Views
  • 1 replies
  • 0 Likes

Traffic Between DCs after User Agent Install

I installed the PAN user agent on a customers core DC and we are now having some issues. The traffic between the DC with the user agent and the firewall is pretty minimal and everything is working correctly. However we are seeing a lot of additional

...

Panorama

I have multiply firewalls but all the 3 firewalls holding different set of rules, in this case how panorama will help to manage centralzied.

dpgowe by Not applicable
  • 1705 Views
  • 1 replies
  • 0 Likes

VPN peer with dynamic IP

Hello,

I tried to make a VPN between a Palo Alto (static IP)  and a Netscreen 5 (dynamic IP).

I succeeded when I declared Netscreen's IP as static, so phase I and phase II, proxies and so are correct.

When I change peer address to dynamic, VPN doesn't w

...

nevot by Not applicable
  • 3818 Views
  • 3 replies
  • 0 Likes

Resolved! Regular Expression Fail

I keep getting the following error "is invalid. pattern must be at least 7 bytes"

Example match: 378282246310005

How I would normally match via regex: .*[3][47][0-9]{13}

How I am interpreting Palo Alto wants me to write it: .*(3)[47].*([0-9][0-9][0-9][0

...

rroberts by Not applicable
  • 4072 Views
  • 4 replies
  • 0 Likes

Resolved! Custom App don´t appear in Custom Reports

Hi,

I make some custom applications, those app works fine and appears in ACC and logs. But when I make new custom report and filter for application, no my custom app appear. Any idea?

Regards

COMIP by L2 Linker
  • 2682 Views
  • 3 replies
  • 0 Likes

Scheduled Log Export CSV File Size

I scheduled a log export and ended up with a ton of small (~30MB) CSV files on my ftp server.  Is there any way to specify the size of each exported log file?

I already tried setting the "Max Rows in CSV Export" (Device>Setup>Management) to the max v

...

PeteS by L1 Bithead
  • 5716 Views
  • 9 replies
  • 0 Likes
  • 23701 Posts
  • 110 Subscriptions
Top Solution Authors
Labels