General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4254 Views
  • 0 replies
  • 0 Likes

filter ssh v1

HiI have a request to filter in the firewall ssh v1. Is there any way to identify and filter ssh v1? can the firewall identify ssh v2 some way?

Nested Palo Alto Object Groups

Hi,Does anyone know if there are any recommendations on the use of nested groupings within PA policies - specifically the PA objects?In terms of maintaining 'easy to read' policies I wanted to make use of nesting to keep the policies simple, which will mean using nesting up to around 3 tiers - see following random example:-Win2k8_Server_DC -- in...

apackard by L4 Transporter
  • 4123 Views
  • 2 replies
  • 0 Likes

Creating Reports on Panorama

Hi,Whene creating reports within Panorama, and whene choosing database for the report what is the diffrence between panorama database such as "panorama traffic log" and the other databases such as "traffic log".Regards.

asia by L3 Networker
  • 2938 Views
  • 2 replies
  • 0 Likes

Problems with Aggregate Ethernet in HA configuration

Hi all,i'm setting up two PA 5020 in Active/Passive HA and I'm having some problems with Aggregate interfaces. I'm using 4 ethernet interfaces per device:ae.1 - trust zone (two physical ethernet interfaces)ae.2 - untrust zone (two physical ethernet interfaces)The device is operating in L3 mode with static routes. If I use a single device, all wo...

Resolved! PA blocks sites that sites use for content delivery

We have a very strict policy for some computers that only get access to specific sites. However under this model sites such as Wellsfargo use a third party to host their content and data, which then gets blocked as well until we add it to the allow list. Any way to allow these linked sites to get through without being blocked?

TCP Ports

Any one know how to add the ports into this firewall. I have a dmz server that I need ot add ports on the firewall to reach it.ThanksFrank

Resolved! Virtual systems and Panorama

I'm looking at managing multiple virtual firewalls in the same physical firewall with Panorama and I am wondering if you can have two zones with the same zone name assigned to two virtual systems? I understand that all the devices in a Panorama device group must have the same zone names.

Jinx by L1 Bithead
  • 2370 Views
  • 1 replies
  • 0 Likes

Couple of questions about GlobalProtect client and AppStore through PA500

Hi, I've recently upgraded our PA-500 to 4.1.3 and found that this version has significantly improved over the previous 4.0.X. But now I have few quirks that the new version brought up or didn't solve as I expected. First, after upgrading the NetConnect on one PC (outside of company and not in our domain, Windows 7 Ultimate SP1) to GlobalPr...

Resolved! Hold Music

I think you guys should be able to do better than a 10 second loop of the same thing. I assume this is done to encourage people to hang up or leave a message as it slowly drives the caller insane.

Blocking & AV

Hi - we current;y have our PA4050s in aleret mode only on every rule for AV. If we device to turn this to Block for specific rules - what does this actually do if it identifies a virus? Cheers.

fmd by L3 Networker
  • 12037 Views
  • 22 replies
  • 0 Likes

Cabinet File corrupt error

Greetings,Recently upgraded to v4.1.3 and going through the process of installing the Global Protect client on the workstation. I've tried this on Win 7 32bit and 64 bit and keeps throwing corrupt file error.Screen dump attached.Cheers

asabadin by L1 Bithead
  • 3603 Views
  • 1 replies
  • 0 Likes

Can User-ID Agent Monitor a Citrix Farm security logs same like it can Exchange (API integration or future extension to the TSAgent?)

Is it possible for the UIA to monitor a Citrix farm/ cluster security logs in order to gather the user-to-ip mappings required for the firewall. Similar to how the UIA can monitor Exchange servers security logs for the same effect.I'm NOT refering to the TS-Agent which is used to identify users within a network dekstop/ Terminal server session.W...

ucteam by Not applicable
  • 3230 Views
  • 1 replies
  • 0 Likes

Resolved! 4.1.3 - Multiple Vsys Commit Errors - Anyone run into this problem?

on 4.1.3 - When doing a commit covering multiple vsys's fails, the system will not specify which vsys caused the error. Can anyone please give any advice on why it is doing this. We are doing this directly from the Firewall device directly and not from Panorama.We get this problem with any commit error. It doesn't really matter what it is. Jus...

eputnam by L1 Bithead
  • 2871 Views
  • 2 replies
  • 0 Likes

PAN 4.1.3 and Application selection in policies

No longer able to view all my policies in the drop down, gets to the Gs and there is an italicized more that is un-selectable... Tried on both MAC, Windows, E.G. Safari, Chrome, Firefox, IE, confirmed it works in 4.1.2...

mcole by Not applicable
  • 2816 Views
  • 1 replies
  • 0 Likes

Is it possible to view and configure VPNs as a vsys admin?

Is it possible to view and configure VPNs as a vsys admin?It appears that the VPN configuration is only part of the device admin, however I choose this option I am unable to limit the access on a per vsys basis. Am I missing something something? If not, then this should be corrected in future releases, as it makes sense to be able to create VPNs...

bbsoc by L2 Linker
  • 2376 Views
  • 2 replies
  • 0 Likes
  • 24362 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels