General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 199 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 881 Views
  • 0 replies
  • 0 Likes

Resolved! About Link Aggregation

Hello guys.

I tested about link aggregation for PA4060 that connected CISCO SW. but PA only connected "channel-group mode on" that mean disabled PAgP en LACP only with Cisco SW.

I think PA should connected other devices using LACP (802.3ad) but result

...

ttongfly by L3 Networker
  • 5761 Views
  • 4 replies
  • 0 Likes

Not able to get DNS working

Hello,

After visiting the forum, i have tried all options, but still the PA 500 wouldnt talk to the outside world.

Source recognition under device to routing has all been checked. But there is one peculiar error which

i am getting again and again  Devic

...

nsalian by Not applicable
  • 5981 Views
  • 4 replies
  • 0 Likes

Resolved! Palo Alto configure as access port

Hi All,

It has been sometime that i haven't touch on Palo Alto device and i want to clarify whether can i configure as access port (or called as untagged port) other than normally create L3 vlan routing?

I don't see such settings available on the confi

...

eugene by Not applicable
  • 3722 Views
  • 1 replies
  • 0 Likes

Resolved! Filtering On Multiple Brightcloud Categories

I have come across a site that has been assigned three categories by Brightcloud. They are Streaming Media, Adult and Pornography, and Internet Communications, in that order. In our setup we allow Streaming Media and Internet Communications but block

...

shopeman by Not applicable
  • 5339 Views
  • 6 replies
  • 0 Likes

Looking for options to control access to web site.

I've read the authentication doc, but have not found a suitable solution for limiting access to a single hosted site via the PA.  Is there something I am overlooking?

What I'd like to do:  Host a test site, but only offer access to users we hand pick.

...

JKoss by L2 Linker
  • 1938 Views
  • 1 replies
  • 0 Likes

Resolved! Application or Service Port

Hoping someone can help me out here:

I have a system that needs to ssh/sftp/http/https.

I attempt to define using applications: ssh/ssl but cannot find any for http or sftp. If I search the applipedia for the port, it shows other apps that are on port

...

dc_cubed by L0 Member
  • 6580 Views
  • 2 replies
  • 0 Likes

frequently HA connection down

Hi,

we have 2 PA-500 configured in active-passive mode.

Since two week ago we frequntly receive na alarm about the Ha connections that goes down and then goes up.

We have checked and changed the crossover cable used for the Ha interface; we have increas

...

u4353 by Not applicable
  • 5902 Views
  • 6 replies
  • 1 Likes

Resolved! Drive-By Protection?

We're finding that there's a small amount of drive-by stuff, typically fake AV, that's making it past the content filtering, spyware filtering, and antivirus filtering in our Pan running 3.1.8.

Are there any non-default settings that are recommended a

...

Resolved! UI Functionality - Simultaneous Edits

When you are editing your policies you can select multiple rows and use the  functions at the bottom. However, in my experience, if you click on a setting, such as profiles, it lets you edit just the  one attribute even though you have several rows s

...

dc_cubed by L0 Member
  • 2475 Views
  • 1 replies
  • 0 Likes

URL Filtering Activation

Hi,

URL Filtering Activation.

I have activated the URL Filtering Lic, but still when I click on Objects > URL Filtering
it shows me " License required for URL Filtering to function "

Also when I go into devices, and Licensing, i see the following.

Date Is...

ta185020 by Not applicable
  • 5546 Views
  • 9 replies
  • 0 Likes

Resolved! Captive Portal Ports in PANOS 4.0

Hello everybody,

When enabling Captive Portal either in vWire or Layer3 mode, the Layer3 interface that is used for redirection and has the "Response Pages" option enabled, is listening to certain ports for Captive portal.

Let's say that the configured

...

ggoudr by L2 Linker
  • 3513 Views
  • 1 replies
  • 0 Likes

Which ports are being used by PAN?

When you for example set an url-category into "continue" the continue response-page is issued through tcp 6079.

However there is no need to setup a policy for this traffic since the PAN will handle this on its own.

But when I enabled captive portal wit

...

rps by L3 Networker
  • 4141 Views
  • 2 replies
  • 0 Likes

Resolved! Client IPSEC VPNs

Hi, Can anyone confirm whether IPSEC VPNs(Client) be integrated with active directory for authentication ?

Disabling server sessions on PAN agent ?

Hello,

In pan-agent, is it possible to disable server sessions monitoring and to work only on security logs, is there any option in GUI or in configuration file of the pan-agent that can be modified to reach this bheaviour?

Regard's

asia by L3 Networker
  • 3280 Views
  • 3 replies
  • 0 Likes
  • 24014 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels