General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4223 Views
  • 0 replies
  • 0 Likes

SSL decryption and Http redirection

Hi,I am testing SSL decryption and it seems to work fine except when Http redirection is involved. E.g. when you try to connect to Https://gmail.com , google redirects you to https://www.google.com and it gives me a certificate error because of the hostname in the cert does (www.google.com in this case)not match with the hostname that you are c...

SLOW INTERNET

Hi GUys ,I`m deploying a PAN.Everything is OK , COnfiguration , URL Alerts , AV , AS everything on ALERT MODE.But my problem , after COnfigure a L3 INterface to receive IP via dhcp client from my ISP router , my connection with internet becomes very slow!I think the problem is on the PAN because when i rollback to my PF SENSE everything works go...

Thiago by L3 Networker
  • 5897 Views
  • 4 replies
  • 0 Likes

Antivirus Update Frequency

Is this specified anywhere?I can't seem to find where the antivirus update schedule is stated explictly.Or is it just part of the weekly content updates?

KGC by L3 Networker
  • 10180 Views
  • 7 replies
  • 0 Likes

HA Active/Active

Hi,Can anyone tell me if HA Active/Active on a PA-500 requires three links in total? As there are limited ports on the PA-500 this may cause an issue.Also, if this the case - is there any option on having an IPSEC VPN terminating on the passive firewall in an Active/Passive HA configuration (i suspect the answer to this is no).Andrew

singersit by Not applicable
  • 4565 Views
  • 4 replies
  • 0 Likes

Blocking traffic from another country

Hello,We have an Extranet server which sits on our DMZ... http and https are allowed through the firewall so that outside users can access the web app on that server. My server admin asked me if I can block all inbound traffic from China and Taiwan as he gets a ton of hack attempts coming from those countries. Our web app doesn't serve anybody...

dwoolley by L1 Bithead
  • 6292 Views
  • 5 replies
  • 0 Likes

Interesting RSS feeds or blogs?

I am curious as to what blogs, RSS feeeds and/or forums others follow regarding security/corporate level firewalls/etc.Side note: Unless I am missing something, the RSS feeds in PA support don't work.Thanks,Bob

BobW by L4 Transporter
  • 3707 Views
  • 1 replies
  • 2 Likes

Resolved! Cannot sync two machines in HA mode

Hi,Heres my case: Machine A and B was working in HA mode.Meanwhile their antivirus and threat licenses expired and we didnt renewed them. Both machines has valid and up-to-date URL filtering license.Machine B went dead after some power problems and no longer worked anymore.We replaced it with machine C. Registered Machine C on paloalto and insta...

Exchange Load Balancing

Hello,Basically the scenario is that we have one exchange server behind the firewall, external users are accessing this server usning a host name mapped by a service provider to two different Public IP's using DNS round robin,Is it possible to configure two NATing rules for the same single host (the server). This way what ever IP the host name i...

rsaber by L1 Bithead
  • 3697 Views
  • 3 replies
  • 0 Likes

Very strange problem with connection

Very strange problemHi,have paloalto PA-500.I have three internet providers.I have many branch offices (40).my case4.1.0 softwarefrom all branch office we ping WAN1, WAN2, WAN3 is OKthe weekend I did upgrade the software to version 4.1.3from all branch office we ping WAN1 is OKfrom 30% of the branch office is ok ping WAN2from 70% of the branch o...

PAN and NetMotion

We run our NetMotion connections through the PAN for our mobile clients. The troubled moblle application receives dispatch information from our CAD application and since switching to the PAN from our previous firewall the delivery of this information has become unreliable.We suspect that not seeing any traffic across the link, the PAN shuts dow...

cdpadmin by Not applicable
  • 3415 Views
  • 2 replies
  • 0 Likes

Multiple Public IP's on External Interface

All,I apologize if this has been asked before but I couldn't find anything related to my specific question. I am a newbie when it comes to firewalls in general. We are going to be migrating from ISA to the PA firewall shortly and I have a question about public IP's assigned to the outside(untrust) interface. On the ISA we "attach" all the pub...

tohoken by Not applicable
  • 12598 Views
  • 5 replies
  • 0 Likes

SNMP TRAP Recommend

Hi AllI want to set snmp traps to my snmp-server , are there any recommend about that ?I have got the snmp mip from paloalto support site, but there are too many descrpitions about trap, so maybe someone can give me some recommends about system health of snmptrap.ThanksJoy

Incoming Traffic failed in Active Active HA

Hi,I setup active/active configuration and everything seems to be working. We test HA by powering off the other peer and vice versa. All outgoing traffic are working as expected. But, we notice that we're not receiving incoming traffic if one of the PAN fails. I configured NAT and assign the active/active HA binding to both. Please help.Thanks,Rex

Resolved! cannot unlock a vpn user

when i press unlock, comes the following error message:Unlock failed for the following: consalco-int.local christoph.ramboeck: request -> ssl-vpn -> unlock -> user 'consalco-int.localchristoph.ramboeck' can be at most 31 characterscan someone write me here to help or know what to do

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels