General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

TCP Ports

Any one know how to add the ports into this firewall. I have a dmz server that I need ot add ports on the firewall to reach it.ThanksFrank

Resolved! Virtual systems and Panorama

I'm looking at managing multiple virtual firewalls in the same physical firewall with Panorama and I am wondering if you can have two zones with the same zone name assigned to two virtual systems? I understand that all the devices in a Panorama device group must have the same zone names.

Jinx by L1 Bithead
  • 2419 Views
  • 1 replies
  • 0 Likes

Couple of questions about GlobalProtect client and AppStore through PA500

Hi, I've recently upgraded our PA-500 to 4.1.3 and found that this version has significantly improved over the previous 4.0.X. But now I have few quirks that the new version brought up or didn't solve as I expected. First, after upgrading the NetConnect on one PC (outside of company and not in our domain, Windows 7 Ultimate SP1) to GlobalPr...

Resolved! Hold Music

I think you guys should be able to do better than a 10 second loop of the same thing. I assume this is done to encourage people to hang up or leave a message as it slowly drives the caller insane.

Blocking & AV

Hi - we current;y have our PA4050s in aleret mode only on every rule for AV. If we device to turn this to Block for specific rules - what does this actually do if it identifies a virus? Cheers.

fmd by L3 Networker
  • 12487 Views
  • 22 replies
  • 0 Likes

Cabinet File corrupt error

Greetings,Recently upgraded to v4.1.3 and going through the process of installing the Global Protect client on the workstation. I've tried this on Win 7 32bit and 64 bit and keeps throwing corrupt file error.Screen dump attached.Cheers

asabadin by L1 Bithead
  • 3693 Views
  • 1 replies
  • 0 Likes

Can User-ID Agent Monitor a Citrix Farm security logs same like it can Exchange (API integration or future extension to the TSAgent?)

Is it possible for the UIA to monitor a Citrix farm/ cluster security logs in order to gather the user-to-ip mappings required for the firewall. Similar to how the UIA can monitor Exchange servers security logs for the same effect.I'm NOT refering to the TS-Agent which is used to identify users within a network dekstop/ Terminal server session.W...

ucteam by Not applicable
  • 3272 Views
  • 1 replies
  • 0 Likes

Resolved! 4.1.3 - Multiple Vsys Commit Errors - Anyone run into this problem?

on 4.1.3 - When doing a commit covering multiple vsys's fails, the system will not specify which vsys caused the error. Can anyone please give any advice on why it is doing this. We are doing this directly from the Firewall device directly and not from Panorama.We get this problem with any commit error. It doesn't really matter what it is. Jus...

eputnam by L1 Bithead
  • 2922 Views
  • 2 replies
  • 0 Likes

PAN 4.1.3 and Application selection in policies

No longer able to view all my policies in the drop down, gets to the Gs and there is an italicized more that is un-selectable... Tried on both MAC, Windows, E.G. Safari, Chrome, Firefox, IE, confirmed it works in 4.1.2...

mcole by Not applicable
  • 2911 Views
  • 1 replies
  • 0 Likes

Is it possible to view and configure VPNs as a vsys admin?

Is it possible to view and configure VPNs as a vsys admin?It appears that the VPN configuration is only part of the device admin, however I choose this option I am unable to limit the access on a per vsys basis. Am I missing something something? If not, then this should be corrected in future releases, as it makes sense to be able to create VPNs...

bbsoc by L2 Linker
  • 2434 Views
  • 2 replies
  • 0 Likes

Recieve Errors on connection to Cisco Nexus 7000

HiI have a HA pair of PA-5020 and a single PA-2020 connected to switchports on a Cisco Nexus 7000I'm seeing receive errors on all the physical ports on my PA boxes but nothing on the Cisco device.Duplex is set at auto, speed set at auto for both ends.Any ideas what these errors could be? I have applied bpdufilter on the Nexus interface and the ...

scooby59 by Not applicable
  • 6859 Views
  • 2 replies
  • 2 Likes

Resolved! Filter OSPF Area

Hello,I need to filter OSPF areas so that area 1.1.1.1 only sees his routes and area 0.0.0.0. I do not want him to see area 2.2.2.2.Is this possible?Thanks,Randy

rmnelson by Not applicable
  • 5501 Views
  • 4 replies
  • 0 Likes

OSPF multipath L2 FIP

Hi, We recently purchased two PAN 5020 Firewalls. I had two easy questions. We were wondering if they support OSPF multipath path (either equal cost or unequal cost).I was also wondering if I can configure muliple Floating IP address in the L2 mode? Does it matter if I'm in Active Active or Active Passive?Thank you

proxy squid in a DMZ

hello,I put a squid proxy in the DMZ zone with address 192.168.1.2 it is connected to the PAN - 192.168.1.1 and I trust zone to the untrust lan and another to the internet and I can not ping the proxy from the laninterface pan to lan 10.155.10.10my ip address 10.155.10.11i dont know the route that i would make it

Having trouble configuring IPSec tunnel (PA-500)

We have a VPS system to which we need to grant access to our private office network. The VPS is in a cloud service so there is no networking gear that we can use for the vpn end point. Our office network is behind a PA-500 firewall.The VPS is a CentOS linux system that I've configured to use racoon. I've tested this in my staging network with...

safecloud by Not applicable
  • 3258 Views
  • 3 replies
  • 0 Likes
  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels