General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Upgrading SSL VPN client - is it automatic?

Hi.

I've noticed that the SSL VPN client 1.3.0 has been released.

Currently, I have 1.2.0 active on my PA's.

If I activate the 1.3.0 release, what impact will this have on the clients? Will the upgrade be seamless and automatic, or will it require inter

...

dagibbs by L4 Transporter
  • 3191 Views
  • 4 replies
  • 0 Likes

Reason to upgrade to 4.0.2 ? ! ?

Just recently upgraded to 3.1.8

Like others here, wondering the REAL advantages of upgrading to 4.0.2

I don't want to run into the issues missed by QA in version 4.0.1 that I have seen here

  • management console not working via https
  • Qos issues
  • IPSEC Tunnels
...

Error parsing pdf file

Using PAN OS 3.0.8 on PA-4060, I got the normal correct report Daily_hfw_Reports_20110511.pdf

But when upgraded to PAN OS 4.0.2, the first page incorrectly changed to Error parsing pdf file as shown in

1-20110518Daily_hfw_Reports.pdf

Please kindly give

...

songkrant by Not applicable
  • 13134 Views
  • 5 replies
  • 0 Likes

Injecting a default route into OSPF

I have an OSPF virtual router configuration with two interfaces. One interface (int1)  is part of the default area (0.0.0.0) whereas the other  one (int2)  is not. There is a static default which points to the next hop on the non-OSPF interface netwo

...

quist by Not applicable
  • 9746 Views
  • 2 replies
  • 0 Likes

IKE pre-shared key: is there any forbidden character?

Hi Everybody,

when configuring an IPSec VPN between our PAN appliance and both Cisco and CheckPoint devices, we had problems with using a long pre-shared key, which included special characters too (e.g. more than 30 letters, both small and lower case,

...

Bucche by L2 Linker
  • 5585 Views
  • 2 replies
  • 0 Likes

Resolved! Upload page for tech support

I am really suprised that the SSL cert for the web page used to upload tech support files doesn't have a trusted cert.  Is that by design, because uploading my firewall config to an untrusted SSL site makes me feel a little weird...  Especially when

...

PDFs and MS-updates

Hi PAN Experts,

Has anybody faced problem of MS-updates and PDFs not able to go through a PAN in vwire mode ? policy is allow all in either direction. Version is 4 0 2.

BR

Problem with IPSec and GRE

Hello

I have a bg problem

The need is to create such a configuration: external IPSec tunnel and next GRE tunnel inside the previous one. IPSec tunnel must be created between my PA device and external gateway. GRE tunnel mus be created between my cisco

...

Revoked Certificate treating as Valid, is it a bug?

I have set up Client Certification Profile, and use in SSL VPN. I tried to revoke a cert. Firefox already able to valid that cert is invalid but PaloAlto still allow that certificate, I was able to verify from my OSCP server that PaloAlto had a succe

...

muratahk by Not applicable
  • 3946 Views
  • 4 replies
  • 0 Likes

Resolved! Mobile Devices (Apple & Android)

Our school district has started purchasing mobile devices, the iPad2's and some Xooms.

I've noticed in the Monitor logs that they don’t always fall until the default rule?  So far two have been using the Admin rule which opens all but Adult content. 

...

Resolved! Application Choice in Security Policy

All,

I am setting up a security policy that will allow inbound ssl traffic only to a secured web server.  The NAT rule is already created but I have a question about the application choices for the security rule.  If I just list ssl as the application

...

tohoken by Not applicable
  • 1770 Views
  • 1 replies
  • 0 Likes
  • 23575 Posts
  • 103 Subscriptions
Top Liked Authors
Labels