General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

User-ID Group Include List Error

On PanOS 4.1.2 I am trying to perform an LDAP lookup for the 'Group Include List' element of the User Identification setup i.e. to populate the 'User' field in policies.When I do this I get an "bind-dn is invalid" error. I know the account configured is fine, as it is a shared object set in Panorama and pushed to multiple boxes, and it works fi...

apackard by L4 Transporter
  • 7427 Views
  • 11 replies
  • 0 Likes

NetConnect on Linux under Wine

Has anyone managed to get NetConnect to run under wine on linux?I Use Firefox 9 for Windows under Wine, and managed to do an offline Java install by downloading from here: http://www.java.com/en/download/manual.jspI authenticate in the portal. The NetConnect client seem to be starting, the correct msi and exe files are apparently downloading,...

aseem by Not applicable
  • 2369 Views
  • 1 replies
  • 0 Likes

How many PAN support Admin account?

Hello.I want to know about PAN admin account performance.First. How many PAN support Admin account? Is it different from each PAN model?Second. How many PAN support concurrrent logged Admin user?Please let me know above question.Thanks in advance.Regards.Roh.

ttongfly by L3 Networker
  • 2082 Views
  • 1 replies
  • 0 Likes

Resolved! Blocked traffic after Content Upgrade 289

World of Palo,We have just seen an increase in blocked traffic (thus broken apps) after upgrading app content from V288 to V289. The funy thing is its all low risk Microsoft LAN stuff. Does anyone know if PAN have changed the action and not the signiture for 30858 - Windows Local Security Architect LsarQueryInformationPolicy from alert to drop...

djmac by Not applicable
  • 8658 Views
  • 1 replies
  • 0 Likes

When does a rule go unused

I have a number of rules that are showing unused. I've read the threads on the counter resets etc. but I'm still looking for a definitive answer - hence my post. When does a rule become marked as unsed? Is it after a month, 2 months, a year, since boot? Is there a setting I can adjust to say a rule is unused after X amount of time?Thanks,Bart

Blocked Applications cause Reset, not Block Page

On our firewall users are getting 'Connection Reset' errors in their web browsers rather than the 'Blocked Application' page.While the end result is the same, it makes debugging connection issues a lot harder! Am I doing anything wrong - an application that matches a 'Drop' rule should display a Block page if it's a browser based app?Rgds

apackard by L4 Transporter
  • 3508 Views
  • 1 replies
  • 1 Likes

VPN and client proxy

Hi Does anyone know how to force PC clients that have authenticated to the PA using Global Protect (non licenced version) to use a particular proxy server. ThanksRod

djrodb by L3 Networker
  • 2349 Views
  • 1 replies
  • 0 Likes

Resolved! Local DB User Name Character Restrictions

Hi All,I noticed that when creating a Local DB User you are not allowed to use a "." (period) in the name, have have not had a chance to test this but does this extend to user name in AD or similar external databases or is this just a limitation of the Local User directory?This is on version 4.1x of the OSMarc

Thinking of upgrading to 4.1.0

We have two 2050's in an active/passive cluster running 4.0.5. We are looking to upgrade to 4.1.0. Had anyone had any negative experience with this version - particularly related to the SSL-VPN changes or User-ID functionality? I've heard a few things that have made me wary.Thanks!

bvest by Not applicable
  • 8425 Views
  • 13 replies
  • 0 Likes

Resolved! Wildfire

Hi I've a couple of question re wildfire.1. I've configured my device to inspect .exe and .dll files and selected the aciton continue and forward under the file blocking policy. When I try to download a .exe im promoted with the message that the file has been blocked due to a company policy. There is no continue option. I've uploaded the default...

djrodb by L3 Networker
  • 6170 Views
  • 5 replies
  • 1 Likes

Resolved! View Log Size

Is there a way to determine the space size of log files? What is used and what is available? PAN OS 4.0.9

PAN 4.1.1 Global Protect client and LDAP

I am running 4.1.1 and I am having issues authenticating Global Protect 1.1.1 clients via AD. I know my LDAP server settings are correct as I can browse the workgroups in User-ID Group Mappings. Howver I can't browse these in the 'allow-list' in the authentication profile (the only option is the ALL default.With AD I get 'invalid username & ...

PA 5050 Virtual System

I am configuring PA 5050 firewall. I have to configure Virtaul systems in this Firewall. Anyone can guide me for this configuration.

itsecll by L1 Bithead
  • 3403 Views
  • 3 replies
  • 0 Likes
  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels