General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! PAN Agent not seeing changes in AD

Hi,

we have just become new users for the Palo Alto.

I have created some additional AD OU's to help managed our URL filterting, however the PAN agent is not seeing the changes.

We have tried the following:

Reboot of both domain controllers

restarting of t

...

djbisbey by Not applicable
  • 1502 Views
  • 2 replies
  • 0 Likes

Virtual Systems in Layer 2

Existing network as shown above in Fig:1 (Attched)..

·         Each device has its redundancy as shown above (Active/Passive) except for the IPS.

·         Each service has two servers to ensure the redundancy.

·         Routing is done by the Load ba

...

roshithw by Not applicable
  • 1690 Views
  • 2 replies
  • 0 Likes

Evaluation unit- Multiple questions

Greetings,

During my evaluation of a PAN device, I have found I have many questions regarding the capabilities of the device.  I won't list them all in this one post but maybe just several for now.  If it would be better to list these as separate post

...

cnelson by Not applicable
  • 1284 Views
  • 2 replies
  • 0 Likes

SSL VPN Authentication

Hi Guys,

I have an issue with the SSL VPN authentication via RADIUS.

I have configured the RADIUS Server with this options:

Name:PANSSL

Address: 10.0.0.8

Vendor Name: RADIUS Standard

The Policy and Connection Type, is as follows:

Name: AccessVPN

Conditions:

...

Evaluating- Secondary TCP/UDP connections

Having some trouble finding a way to enable the use of secondary tcp/udp connections for a rule.  For example, in our current FW I can configure a rule with a UDP primary connection with a range of ports using Receive/Send, then set it up for a UDP s

...

cnelson by Not applicable
  • 1595 Views
  • 4 replies
  • 0 Likes

Resolved! Hard disk usage on PA series

Hi,

Anyone knows the internal harddisk partitioning on PA series? Any different on those appliances? In fact, what is the size of logging info/packet info that the PA stored? Thanks!

Johnny

Resolved! PA-500 work in cluster mode

Does the PA-500 work in cluster mode balancing load to two isp’s? if the answer is no please provide me an option for this tread.

roshithw by Not applicable
  • 1543 Views
  • 2 replies
  • 0 Likes

Resolved! Leds in failover firewall with high Availability

Hi, is it normal that in passive unit of high availability the link leds of interfaces are switch off?. the high availability it's ok and synchronized.

I don't find anything about that in documentation.

Thank you

Samuel

High CPU usage of Panorama

Hi,

Our Panorama is running on a dual quad-core 2.66GHz + 4GB RAM + VMServer 2.0.  We have a PA4020 appliance which has a persistent session count of roughly 250000 sessions.  When we direct the logs of this PA4020 to Panorama, the CPU usage of Panora

...

ccnetwk by L0 Member
  • 3072 Views
  • 1 replies
  • 0 Likes

Vsys resource management

Hi Folks,

We are in the process of evaluating Palo Alto.  Can folks share some of their experiences on how to manage resources between Vsys?  How do you manage Vsys 6 only gets x% of CPU etc...vs what other Vsys's are allowed.  What is the max number

...

jsdietz by L0 Member
  • 1340 Views
  • 1 replies
  • 0 Likes

IPSEC VPN Help?

I have a PA-500 at our main office.

We have a smaller site that currently we have a point to point circuit to, however we may not renew the contract on this, and instead put in a cheaper but faster internet leased line, the idea being to link the two

...

Top Solution Authors
Top Liked Authors