General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1809 Views
  • 0 replies
  • 0 Likes

create an application to replace a service

I'm converting a Check Point firewall to PAN. they have multiple rules where ping and other user-defined services are participating. Can I create an app with the port of those services so I can have all in one rule? Do you see any problem wit that?

How to add already configured FW to Panorama

I must be missing a step because I am able to add a FW that has no policies or virtual systems to Panorama, but when I try to add a FW that is already configured with rules and multiple virtual systems, Panorama just says "shared policy status" "Out

...

Resolved! user-id 4.1.3-2, pan os 4.1.3, no user mappings

hello and hope someone can help,

i am brand new to PAN(not to FWs or networking) and I've been trying to get this to work for a week now with no results?

i have attached some pics of the user id agent gui and logs.

i have read   and followed the instruc

...

jj by Not applicable
  • 15011 Views
  • 8 replies
  • 1 Likes

how to configure PAN to work as proxy

Hi There

We have this problem after implementing PA-2020, we are facing the slow ness of our internal web site, before we were using ISA 2006 proxy where we can add exception in the Policy Management put now we could not implement proxy in pan and we

...

almaskri by Not applicable
  • 2237 Views
  • 1 replies
  • 0 Likes

IE8 and captive portal

Users are getting "can not display web page" in IE and "connection reset" message when using firefox when opening the browser up and captive portal is attempting to redirect them to the authentication page or the "block-continue" page. Has anyone not

...

jasbeck by Not applicable
  • 9356 Views
  • 12 replies
  • 0 Likes

Resolved! Dynamic URL Filtering when policy matching on URL

Hi,

We're using dynamic URL filtering (ie the "cloud" database") within our URL-filtering profiles.  Within PAN-OS 4.1 there is now the option to match on URL category within security policies, but no checkbox there to use the Dynamic Filtering.  So,

...

UserID Exclude Not Working

Hi,

I have a problem where the 'User ID Exclude List' setting within the Zone setup on a Palo is not working.

I have set my UserID agents to collect events from all IP addresses, then want to filter them on the PA itself as this seems the most logical

...

apackard by L4 Transporter
  • 2535 Views
  • 3 replies
  • 0 Likes

2050 running high dataplane CPU

Our PA-2050 is consistently running at 70-85% on the dataplane CPU despite running at 1/5 of the advertised maximum specs (40-40k sessions and 100-110mbps). I understand that the specs listed are best case scenario and don't expect to get close but I

...

Lopes by Not applicable
  • 3930 Views
  • 4 replies
  • 0 Likes

User-ID on incoming connections

So, we are currently using the user-id agent to monitor our CAS exchange servers. This is working great for identifiying our internal users hitting exchange from the inside. However I would like to begin identifying users that are accessing the CAS s

...

Resolved! CLI equivalent of GUI task

Is there a way to determine the CLI equivalent of a command/task done within the management GUI?

For example, with PAN 4.1.2, what is the CLI equivalent of the GUI when you import a pkcs12 format certficate?

thanks, Jeff

Jeff_K by L2 Linker
  • 3679 Views
  • 4 replies
  • 0 Likes

IPSec Tunnel QoS

I have a PA-2050 running 4.0.7. I have an IPSec tunnel that runs between 2 sites (one is a Palo, the other is ??)

I would like to guarantee some level of bandwidth available for this tunnel, to ensure that it gets a level of priority at least over bas

...

Resolved! Using PBF To Split Services Between ISP's

I have a need to split the traffic going to and coming from my Exchange server based on service. Currently I have both SMTP and 443 traffic coming into and going out of the same ISP (we'll call it A). ISP A is also the default for all incoming and ou

...

Is HTTPs traffic correctly rdirected in PANOS 4.0.8?

Hello,

We have an issue with captive portal not correctly redirecting https traffic. The https traffic is sometimes allowed without redirection to the captive portal, and sometimes dropped, without any logs, the only way to see the issue is to make pa

...

asia by L3 Networker
  • 2495 Views
  • 1 replies
  • 0 Likes
  • 24241 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels