General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4136 Views
  • 0 replies
  • 0 Likes

Regular expression in Data Pattern

Hi all,my Palo don't accept this regex when i try to creta a data pattern: [^d][^2][^t]\.xxxxxx\.frcan anyone correct me if there is any mistake in this regexpThanks

nmarchal by Not applicable
  • 7820 Views
  • 13 replies
  • 0 Likes

Resolved! HA active/passive with single HA port ?

hi,i have two PA500 appliances am looking to configure them on HA mode , with my current setup i have utilized all 7 ports so one port left for me , as per the documents for HA ( A/A , A/P ) you need 3 or 2 ports to achieve the configuration... so is there a way to achieve HA ( A/P ) with single HA port ? because if not i have to re-setup the ap...

Client-VPN w. GlobalProtect and client certificates w/o

Hello everybody,we are running the latest PAN-OS 4.1.0 and Panorama in an evaluation environment and would like to deploy Client-VPN the following way:We do run our own CA in our Corporate network.We use our own PKI infrastructure and Aladdon eToken with client certificates on it for Client-VPN throgh MS ISA since years.Users do not know their M...

tkenning by L0 Member
  • 3057 Views
  • 1 replies
  • 0 Likes

Customized antispyware response page missing

We are running version 4.0.2 and it looks like the cusomized antispyware response/block page option is missing. According to the PDF guide it should be there. Also, the help page gives a 404 not found error when I click on it while in the custom response screen.Thanks.

Resolved! Can I do TPC proxy or Syn proxy on PAN device

Hello every body.On other company device when client 3-way handshake with server,device can 3-way handshake with client,if 3-way handshake finished,device will 3-way handshake with server,if the client don't finished 3-way handshake,device will be drop this session.I want to known PAN device have this function or not?

custom-report column issue

Hi AllThere is a problem of custom report in the PA-500 with PANOS 3.1.10.I choose the "Soruce Address" and "Destination Address" into part of column of my schedule custom-report, however when I got report, The report cloumn is auto generate new two fields "Soruce Host Name" and "Destination Host Name".The new two fields are impact report disp...

Resolved! Traffic on the outbound

Hello everyone,Forgive my bluntness as I am little new handling the PA. I will like to know if there is a way to view the OUTBOUND ANY traffic passing through the PA. I am conducting a research in order to put in place a more strict company rule and I need to findout what is actually passing through the OUTBOUND ANY policy rule.Thanks in advance.

e025136 by Not applicable
  • 2954 Views
  • 2 replies
  • 0 Likes

Resolved! Custom block page size limitation

To remove dependancy on external servers for hosting content as part of the block pages, I tried impeding a small image in-line with base64 encoding (see http://en.wikipedia.org/wiki/Data_URI_scheme). When uploading the custom page, the system alerted that it failed for an unkown reason. My assumption is that there is a size limit for the cust...

hallje by Not applicable
  • 4216 Views
  • 4 replies
  • 0 Likes

Digium VOIP System

Has anyone installed a Digium PBX behind a PaloAlto firewall?Here is the connectivity that Digium says they need to have phones work:5060 UDP (SIP)10,000-20,000 UDP (RTP)80 TCP (remote Phone provisioning)5222 and 843 TCP (Switchboard)5689 (Switchboard chat)

Custom file blocking continue page

I am having some difficulties creating a cusom file blocking continue page. Specifically the Continue button. I Have followed the Tech Note on creating custom response pages, however I am still unsuccessful in creating the button using the <pan_form/> variable.Exporting the factory-default file block continue page show that the <cookie/...

Resolved! does PA supports xForward ?

hi,am wondering if PA can supports xforward as i need to install PA behind a bluecoat were the users request reaches 1st bluecoat then PA, so is there a way for pa to detect the ip addresses or usernames.BR

RDP with ssl vpn issue

Hi: I have two probelms about ssl vpn. I'm using PANOS 3.1.6 and vpn client version 1.2. 1. I'm using win7 64 bit and following the check list, so i can connect first time. Then I disconnect ssl vpn and try to connect again from my notebook, it never connect again and shown "netconnect has stop working".See attached. 2. Then I uninstal...

hauman by L0 Member
  • 2410 Views
  • 1 replies
  • 0 Likes

IPSec VPN using RSA key on the other site

i have a problem regarding the configuration of PALO ALTO IPSec VPN because the other remote sites are using RSA key Authentication for IPSec VPN. They bougth Palo Alto to change there existing firewall Astaro. And now were in the implementation to migrate all the policy to Palo Alto. And i figure out that there is no option of RSA key Authentic...

janm by Not applicable
  • 4619 Views
  • 5 replies
  • 0 Likes

PA-2050 have problem performance CPU dataplane. (80 -95% all time)

PA-2050 have problem performance CPU dataplane. (80 -95% all time)Deploy paloalto 4 zones (inside, outside, DMZ, Server)Enable IPS, Antivirus, Antispywarefirmware version 4.0.7Throughput avearage 200 - 250 MbpsConnection 20000 - 30000 sessionTesting disable layer 7 application with create Application overide policy between inside and Server zone...

Resolved! Is there a way to add multiple (many) IP addresses to a security policy at once?

I am trying to adjust a security rule that I have in place that blocks incoming traffic from multiple IP hosts.In the rule I currently have approx 100 IP host explicitly blocked (spammers)I am trying to add another group that I have taken from my mail server (approx 150)Is there a way I can modify and add all of those addresses at once instead o...

JW-LGH by L0 Member
  • 7105 Views
  • 2 replies
  • 0 Likes
  • 24340 Posts
  • 124 Subscriptions
Top Liked Authors
Labels