General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PA 5050 Aggregate Interfaces

HiI have conffigured Aggregate Interface "ae1" in PA 5050 which is connected to the Cisco Nexus 7k Switch. Bothe the Physical interfaces(eth1/21 and eth1/22 , both TenGig Interfaces) are showing up but the aggregate interface ae1 is howing down in the GUI. I am not able to ping the nexus core switch. As per the specification sheet of PA 5000 , i...

itsecll by L1 Bithead
  • 6039 Views
  • 7 replies
  • 0 Likes

Resolved! About PinSafe OTP for SSLVPN of PA

Hi All.Our customer who want to PinSafe OTP for SSLVPN of PA like a Nordic-Edge.I found that PA with OTP solution from community that only provided info of Nordic-Edge, RSA Secure-ID.so I want to know or get a guideline of PINSAFE OTP solution to use SSLVPN of PA.I noticed the Nordic-Edge OTP solution that check a user-id, password and OTP strin...

ttongfly by L3 Networker
  • 4071 Views
  • 3 replies
  • 0 Likes

Resolved! TMG 2010 ipsec vpn

Hello,I'm trying to set up a site to site vpn with TMG 2010 (SP2) on the other point and is failing at phase 2.The systems logs in PA-500 shows 'Invalid ID information (18)'. This is subnet mismatch between the two end points but I am sure that it's correct as i have doublechecked everything.In remote networks of TMG I enter 192.168.1.0 - 192.16...

cskodras by Not applicable
  • 4709 Views
  • 3 replies
  • 0 Likes

Resolved! Help to create rules for PAPERCUT (Printing program) for Wireless users on a Separate VLAN

Hi There,I have got a program "Papercut" installed on my Fileserver1. The program listens on port 9191. ISP has created a sub-domain which routes all traffic using http://papercut.xxx.com to an external IP address of 213.1.215.4.Shortcut to "Papercut" on our internal network is http://fileserver01:9191. I want to implement a rule for the Wire...

User ID via IP only?

I have recenlt purchased a PA-500, waiting for it's delivery and have yet to set one up in anything other than vwire mode.Our wireless has two SSIDs. Each SSID has it's own vlan and DHCP server. Problem is the students have become wise enough to switch to the guest SSID. When they swicth to the guest their IP goes from 10.1.x.x to 10.64.x.x. ...

Quality of Brightcloud URL categorisation or lack of.

HelloHas anyone else found that there are a large number of websites being classified as Job Search when they are blatantly not? We are finding this to be the case and in fact are generally finding the classifications to be a bit hit and miss in places. Our previous URL filtering solution used the Smartfilter database and we never really had any...

robert.b by L1 Bithead
  • 16086 Views
  • 21 replies
  • 0 Likes

Global Protect - ondemand

After installing the GlobalProtect client software on a Windows 7 Home laptop, even when the client is not being used, every so often a message will pop up with "on demand" will connect on its own and it will not time-out. The only way to stop it is to kill the process in the task manager. The disconnect is greyed out and it will not allow me t...

User Identification not working for Decrypted SSL Traffic / Data Filtering

Hey Guys,I recently implemented a SSL Decryption Rule to decrypt SSL traffic between my users and a particular destination so I can apply a Data Filtering Rule to it.Everything appears to be working except that it seems like the User Identification piece is not working..User Identification appears to be working for everything else except my decr...

ikinnexi by Not applicable
  • 3913 Views
  • 4 replies
  • 0 Likes

Global Protect Datafile Version mismatch

Im working thru the process to roll out the Global Protect VPN software to our laptop users - I have three PA boxes, a 2050 and two 2020s - all are running 4.1.3, all have GP gateway licences & client 1.1.4 installed although we only have one portal licence for the 2050 (and so only one portal configured).I have the portal setup & publis...

SimmSimm by L2 Linker
  • 3441 Views
  • 2 replies
  • 0 Likes

Problem User-ID Server Connection List in eDirectory

Hi All,I have a problem on the server connections list in the edirectory on server AD (file attach), for device connection there is no issu. but when i see any connection to the server user-id list to 192.168.203.9 (AD) <-> connecting (Server Down). in the settings I created did nothing wrong (file attach).Rgds,Didit

PAN and iPrism integration problems in vwire

Trying to insert a PAN in vwire mode between the existing external firewall and the existing iPrism web filter using vwire. When the iPrism web filter is removed and the PAN is between the external firewall and the core switch, traffic is passing fine thru the PAN. But when the iPrism is placed back between the PAN and the core switch no traffic...

  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels