General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PBF policy not working.

Hi,

I have packets that arrive on interface eth1/10 that I need to be forwarded back out of eth1/10 with a next hop address of another router on that subnet. I have created a pbf rule that I hope would achieve this however it is currently not working.

...

debsPal0 by Not applicable
  • 1957 Views
  • 1 replies
  • 0 Likes

Resolved! Application usage – Implement Time limit

I would like to schedule certain application for user to use.  Here are the examples.

User can use You-Tube or http-audio only 30 minutes per day.

Or

User can only use You-Tube / other streaming media between 9:00-9:30 am and then 5:00pm - 6:00 am .

User

...

ssarcar by Not applicable
  • 2902 Views
  • 3 replies
  • 0 Likes

Comprehensive IANA service port listings

[SO] I'm putting together a configuration and I'm wondering if I'm doing any duplicate work that maybe some other PA customer has already done and may be willing to share. I'm creating service definitions that are IANA defined for example:

set service

...

bjaming by Not applicable
  • 4955 Views
  • 9 replies
  • 0 Likes

Resolved! QoS Question

All,

I am trying to wrap my head around QoS and how it functions.  What I want to do is to limit the download rate of streaming media.  I understand the rule creation and placement.  I assign my QoS policy to my trusted zone interface so that the dow

...

tohoken by Not applicable
  • 2247 Views
  • 1 replies
  • 0 Likes

Resolved! IPS Signatures

Hi, does anyone know if PAN retires somehow the old IPS signuters?

Into the update bulletin there are informations only for new and modified signatures, not for the retired ones.

For example yesterday night I received the PAN bulleting and Cisco. In th

...

zanonibs by Not applicable
  • 2953 Views
  • 2 replies
  • 0 Likes

500-652 Antivirus Version Makes our PAN unavailable

Guys,

Has anybody faced a problem regarding the latest AV version 500-652 as after installation our firewall behaves strangely (Commit failed - Down and up again - AV version mismatch)

We have called support and they have told us that there is a proces

...

Update PA2020 from 3.0.6

Hello all,

I'm doing some maintenance work on a PA2020 and just found out that it is way out-of-date. The software release is 3.0.6 and the other updates Threat and Apps is nonexistent...

What is the recommended upgrade procedure for this? I would like

...

Resolved! what "session table utilization" is really mean?

Hello guys.

I have question about session information of PA. PA showed session table information after command "show session info"

And this command contains that information of "session table utilization" but I wonder about that information about maxim

...

ttongfly by L3 Networker
  • 2560 Views
  • 2 replies
  • 0 Likes

Resolved! About Link Aggregation

Hello guys.

I tested about link aggregation for PA4060 that connected CISCO SW. but PA only connected "channel-group mode on" that mean disabled PAgP en LACP only with Cisco SW.

I think PA should connected other devices using LACP (802.3ad) but result

...

ttongfly by L3 Networker
  • 5167 Views
  • 4 replies
  • 0 Likes

Not able to get DNS working

Hello,

After visiting the forum, i have tried all options, but still the PA 500 wouldnt talk to the outside world.

Source recognition under device to routing has all been checked. But there is one peculiar error which

i am getting again and again  Devic

...

nsalian by Not applicable
  • 4692 Views
  • 4 replies
  • 0 Likes

Resolved! Palo Alto configure as access port

Hi All,

It has been sometime that i haven't touch on Palo Alto device and i want to clarify whether can i configure as access port (or called as untagged port) other than normally create L3 vlan routing?

I don't see such settings available on the confi

...

eugene by Not applicable
  • 3170 Views
  • 1 replies
  • 0 Likes

Resolved! Filtering On Multiple Brightcloud Categories

I have come across a site that has been assigned three categories by Brightcloud. They are Streaming Media, Adult and Pornography, and Internet Communications, in that order. In our setup we allow Streaming Media and Internet Communications but block

...

shopeman by Not applicable
  • 4693 Views
  • 6 replies
  • 0 Likes

Looking for options to control access to web site.

I've read the authentication doc, but have not found a suitable solution for limiting access to a single hosted site via the PA.  Is there something I am overlooking?

What I'd like to do:  Host a test site, but only offer access to users we hand pick.

...

JKoss by L2 Linker
  • 1754 Views
  • 1 replies
  • 0 Likes

Resolved! Application or Service Port

Hoping someone can help me out here:

I have a system that needs to ssh/sftp/http/https.

I attempt to define using applications: ssh/ssl but cannot find any for http or sftp. If I search the applipedia for the port, it shows other apps that are on port

...

dc_cubed by L0 Member
  • 5856 Views
  • 2 replies
  • 0 Likes

frequently HA connection down

Hi,

we have 2 PA-500 configured in active-passive mode.

Since two week ago we frequntly receive na alarm about the Ha connections that goes down and then goes up.

We have checked and changed the crossover cable used for the Ha interface; we have increas

...

u4353 by Not applicable
  • 5099 Views
  • 6 replies
  • 0 Likes
  • 23712 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels