General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Bringing a OSS live (remotely)

I’m deploying 3 global units all with On Site Spares and I am looking for advice on the best base config for the OSS so I can bring them into operation with minimal local hands and so I can load the config remotely – Anyone done this before?

Thanks

djmac by Not applicable
  • 2070 Views
  • 3 replies
  • 0 Likes

Pan-agent how to set an agent as primary

Hi,

I installed about pan 12 agents to retrieve a Domain and they all communicate with a PAN.

The PAN OS is 3.1.5

As I saw in another post, only one agent send information (IP/user) to the PAN, it is the primary agent.

My problem: this agent does not sen

...

novidys by L1 Bithead
  • 2161 Views
  • 3 replies
  • 0 Likes

PAN 3.1.6 use of proxy for updates

Hello all,

After upgrading a PAN Device to PANOS 3.1.6, we see a strange behaviour, when the mananement plane is using a proxy for the updates (as defined in the Device->Setup->Edit).

We have defined a proxy over there, for example 10.0.0.4 and port 80

...

ggoudr by L2 Linker
  • 2629 Views
  • 4 replies
  • 0 Likes

Get Incomplete on Palo Alto after NAT on CheckPoint

Hi everyone.

I need some help.

I I encoutered a problem with incomplete session during configuring a simple (as I thought) roule.

I have host inside my network and I want to configure the access from the internet. My configuration is: the first firewall

...

OCS or Lync support

Hi all,

did anyone have any experience or customer with PAN and OCS or new MS Lync 2010?

Does PAN have signature to recognize Lync traffic?

I already know that ms-ocs-video, audio, xfer are identified, but what abount Lync?

Thanks in advance

Resolved! userid-agent vs pan-agent - what's the difference?

Hi.

In trying to diagnose a recent issue with identifying users on my SSL VPN, I deleted the user identification configuration and re-adde it.

I noticed that there are now two types in a drop down box when adding a userid agent - userid-agent and pan-a

...

dagibbs by L4 Transporter
  • 2608 Views
  • 2 replies
  • 0 Likes

SSL VPN Login history

Is there any way to increase the retention of successfull logins to SSL? I would like to retain at least 2 months if possible.

Thanks,

D

Understanding Zone Protection

Hello all,

I recently configured Zone Protection for the external interface (untrust) on a PAN-2020 3.1.6 in a vwire setup.  Initially we have configured ZoneProtection to "Alert" only.

We have set the triggers for "Activate" and "Maximum" to a figure

...

gafrol by L4 Transporter
  • 12421 Views
  • 6 replies
  • 1 Likes

Unable to Ping to Layer 3 interface

Hi , I have a Palo Alto 4020 . I have configured one of the interfaces as Layer 3 and also allowed Ping and telent on this interface . The IP given to this Layer 3 interface is 192.168.90.17 and its default gateway is the VLAN interface 192.168.90.1.

...

TFAUH by L0 Member
  • 5260 Views
  • 8 replies
  • 0 Likes