General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4125 Views
  • 0 replies
  • 0 Likes

PBF based on domain/URL/FQDN

After research in KnowledgePoint, I understand application is not recommended to be used in PBF as single session will always be forwarded the same way. i.e. application shifts will not change the forwarding behavior.If we want to forward traffics from internal to specified url URL e.g. www.facebook.com to 2nd ISP, is it possible?Any simple wa...

linusso by L1 Bithead
  • 5676 Views
  • 3 replies
  • 0 Likes

Asterisk PBX (Gemeinschaft)

I got one Asterisk Digium PBX it runned since october without issues but now it looks like the traffic dosn't get match anymore.I read I could use Application Override. Can someone explain what I need to configure excatly?RegardsGuido

gsteiner by L3 Networker
  • 2197 Views
  • 1 replies
  • 0 Likes

Block Page Redirection to Company website

Hi all,Does Palo Alto has the capability to redirect the users block page to company website. Example if a user accesing a block url, instead of receiving a Palo Alto block page it will redirect it to company website. Everytime a users is accesing a block url it will redirect it to a company website.Thanks,Jan

janm by Not applicable
  • 2803 Views
  • 2 replies
  • 0 Likes

Resolved! Overcoming an application filter and url groups

This example is fictitious, but you will get the idea.I would like to use an application filter to block all "peer to peer". So I create the necessary filter. Then I determine that I want to allow one of the items which is defined in the "peer to peer" filter. Is there some way to overcome/remove the app from the filter?I hope there is, other...

BobW by L4 Transporter
  • 3726 Views
  • 2 replies
  • 0 Likes

Conference With H.323

Hi Guys ,It`s possible to configure a Destination NAT FROM WAN TO MY LAN WITH H.323 ?How can i do that ?Best Regards.Thiago Lima.

Thiago by L3 Networker
  • 2069 Views
  • 1 replies
  • 0 Likes

Cisco VPN client windows supported by palo alto ?

Hello,Can the Cisco IPSEC VPN Client (running on a laptop Windows 7 64 bits) be supported by Palo Alto?I know it's possible to connect an IPAD/Iphone with the CISCO VPN Client, but is is also possible with a laptop ?When I try it on a laptop Windows 7 64 bits, the connexion is OK, however once I am conected, I get a default route while I should ...

alliance by Not applicable
  • 4348 Views
  • 4 replies
  • 0 Likes

Problem with MLSD command on FTP after upgrade to 4.1.0

Hi everybody,After waiting a week I upgraded one of our PA-500 boxes to software version 4.1.0.One of the services that are no longer working correctly is FTP. The MLSD command is causing an error at the client connecting to the service:Status: Resolving address of mev.blahdieblah.comStatus: Connecting to 87.249.xxx.xxx:21...Status: ...

surfright1 by Not applicable
  • 10906 Views
  • 18 replies
  • 0 Likes

Response Pages that adjusts to frames

hiis there way to get the response page to adjust it self to a frame, if you block FB-social plugins and this is just a ad on a site that is outerwise ok the block page looks wierd and the users cant read the information in that page.

u3786 by Not applicable
  • 1891 Views
  • 1 replies
  • 0 Likes

Resolved! What is flow_host_pkt_xmt Counter?

Hello All,I'm seeing this counter hit and would like to understand what it is.What is the flow_host_pkt_xmt counter?If it matters, this is under 3.1.10.Thanks,MJ

markjx by Not applicable
  • 2473 Views
  • 1 replies
  • 0 Likes

Traffic data

we are on 4.1.4, noticed some very odd traffic data from ACC.1, some internal traffic happened at 9am - 930am, PA ACC showed it happened at 3pm afternoon.2. about 35G data from one machine out to the facebook within one hour, but our connection is only 40M, shared with 300 people, I dont think it could send that kind amount data out?wondering if...

akqaking by L0 Member
  • 2180 Views
  • 2 replies
  • 0 Likes

Resolved! Question regarding SFP

Hi,I have a quick question regarding the insertion of an SFP Module into a Palo Alto Networks 5050. I have a Finisar FTLX8571D3BCL SFP module that works fine in Ether Port 1/13 (i.e I get link state). From reading the vendor documentation for this module, I am fairly certain that the module is an SFP+ module.The output of the following command...

dsulli99 by Not applicable
  • 6818 Views
  • 4 replies
  • 0 Likes

Netflow panos 4.1.0

I configured Netflow on OS 4.1.0,for testing reasing i started with 2 interfaces...but in ManageEngine NetFlow Analyzer I get 3 interfaces!?!?I tried to identify the interfaces but when I look on the traffic showing up then I'm pretty confused...the traffic showing up is not from a interface I configured for netflow.Is that possible?

gsteiner by L3 Networker
  • 5170 Views
  • 7 replies
  • 0 Likes

Resolved! DMZ network configuration

We have installed PAN-2050 in my customer site.It has been deployed with two L2 interface as vmwire.And we made one L3 vlan interface for secondary IP.There are 2 IP subnets. (192.168.10.0/24, 192.168.1.0/24)One(192.168.10.0/24) is for user.The other(192.168.1.0/24) is for DMZ server.Both IP subnet set gateway as PAN L3 vlan interface.And one VR...

sjlee by Not applicable
  • 6161 Views
  • 5 replies
  • 0 Likes

Can I verify a config before doing a commit?

I was writing a rule to allow ciscovpn to only certain addresses, so I added a destination and the application I chose was ciscovpn. I added it to the policy and then did a commit. it came back with messages saying that ciscovpn needed ike to function and it was denied in the default deny. so I added ike and did a commit, and got a message ...

dabels by Not applicable
  • 2183 Views
  • 2 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Liked Authors
Labels