General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Link-Aggregation with Brocade/Foundry MLX

Hi all,I'm trying to setup an aggregation between a PA-5050 (4.1.1) and an Brocade MLX4 (5.2.0).On the MLX I've setup:!lag "PA-5050_1" static id 3 ports ethernet 2/1 to 2/2 primary-port 2/1 deploy!! lag "PA-5050_2" static id 3 ports ethernet 2/3 to 2/4 primary-port 2/3 deploy !!vlan 22 name PA tagged ethe 2/1 to 2/4 router-interface ve 22!...

muellerm by Not applicable
  • 2859 Views
  • 1 replies
  • 0 Likes

IPS/IDS Effectiveness?

I know this is subjective, but does anyone have any knowledge/experience of how effective the Palo Alto IPS/IDS is compared to a more dedicated product?I'm looking at ways to try and detect/block suspect traffic to our web server and obviously there are lots of IPS/IDS solutions ranging from software to hardware.

Resolved! Captive Portal with LDAP

Hi,I've read all the guides and on the forums and still can't figure out why my configuration won't work.I want users to enter AD username/password to get access to the internet.The following has been configured:Device > User Identification > Group Mapping Settings:1. Added server profile2. Rest is default3. Group Include List, entered AD ...

johnd by L2 Linker
  • 8483 Views
  • 9 replies
  • 0 Likes

Using QOS to control Internet download usage

Hello,I've read through the documentation and forum posts, and tinkered with QOS config but still am not clear on whether what I'd like to do is possible. Hopefully I can explain this clearly... here goes...I've got a PA-4020 HA running 3.1.5. Interface 1 is our Internet connection which 20Mbps... Interfaces 2, 3, and 4 (1Gbps) are internal ne...

dwoolley by L1 Bithead
  • 4000 Views
  • 3 replies
  • 0 Likes

Panorama Extra storage

Hello i've just setup panorama server and have followed these insructions to add a dsik for bigger storage for logs, but in the GUI it still shows 10gb even though I have attached a 500GB virtual hardrive.these are the instuctions I followed.1. In VMware, choose the Panorama virtual machine.2. ClickEdit Virtual Machine Settings.3. ClickAdd to l...

web-browsing application basic question

Hello.I have PANOS 4.1Can somebody explain to me why when i permit folowing applications (clearspace, flash, ftp, google-maps, google-translate, ssl, web-browsing) on application-default serwice in policy from zone trust to untrust in rule1 the youtube-base is also permited on the same rule (seen in logs as permited on that rule) ? shouldn't it...

PCAP

Does anyone know of a tool/application I can use to sanitize or remove username/password in a pcap file?

friento by L3 Networker
  • 2474 Views
  • 1 replies
  • 0 Likes

How to completely deny a specific url-category?

When you setup url-filtering you can choose from one of the following actions:Allow (permit access)Block (block access and notify user)Continue (block access and notify user and let user continue anyway if they want to)Override (same as continue but password is needed to continue)Alert (only log the entry)The problem I have is that I have put we...

rps by L3 Networker
  • 7543 Views
  • 8 replies
  • 0 Likes

Wildfire feedback

Hello all,As many of you guys, we have downloaded and installed the latest version of PAN OS - 4.1.0Do you have by any chance first feedbacks about the new wildfire feature ?Although the configuration is pretty straight & easy, we notice some strange behaviours: For example, a EXE file is seen as a virus (Trojan/Win32.autohk.bd) by the threa...

alliance by Not applicable
  • 9350 Views
  • 9 replies
  • 0 Likes

Global Protect and digital certificate

We would like to deploy a VPN client with both digital certificate (for group authentication) and RSA SecurID password (for strong authentication); so far we have failed in importing into GlobalProtect client digital certificates: is it supported? In this case, do you happen to have an how-to guide for this?Thanks and Regards

Bucche by L2 Linker
  • 2805 Views
  • 1 replies
  • 0 Likes

Palo Alto is not Blocking Ultrasurf ver 9.x and 10.x

Hello, everybody we have some problems with this evasive aplication, Ultrasurf. PAN can detect many version of this software but also NOT detect it some others. The trafic generated by some versions (especially version 9.x and some 10.0x), only detect the trafic as a SSL or INCOMPLETE, not as ultrasurf. Please help to understand this behavior b...

inter vsys BGP routing

I’m currently trying to setup BGP between two VR hosted on one firewall without success.I’ve successfully established a BGP session to external routers and between VRs hosted on the different firewalls.Each VR is in a separate VSYS and visible to each other and the zones are created accordingly.From the CLI is can do a ping with the source IP of...

muellerm by Not applicable
  • 10531 Views
  • 16 replies
  • 0 Likes

Action in "Threat Summary Log"

I am trying to create some reports based on the "Threat Summary Log"-Database. Unfortunately, I am not able to create a report which shows me just the blocked threats.If I use the "Threat Log"-Database, the report works fine (but to short time period), so I think the action is not stored in the Summary-Database.Can I change this behavior and add...

User_333 by L2 Linker
  • 2401 Views
  • 1 replies
  • 0 Likes
  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels