General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 468 Views
  • 0 replies
  • 2 Likes

Establish SSLVPN on login?

Is there a way to automatically establish the SSLVPN on a user login?   It needs to be as seamless as possible;  users may be unable (or unwillig) to log into the SSLVPN, yet I need to ensure that the vpn tunnel is established.

staunton by L0 Member
  • 2142 Views
  • 1 replies
  • 0 Likes

Captive Portal SSL Certificate?

Does anyone have a recommendation on where we can get an SSL certificate that works with the Captive Portal and will be fully trusted by the most commonly used browsers.  Or.. perhaps some guidance on how this situation is best tackled...  Our situat

...

tjcarter by L1 Bithead
  • 8414 Views
  • 12 replies
  • 0 Likes

users identified by NTLM are not automatically overwritten

Hello,

please check the attached document.

It seems like users identified by NTLM are not automatically overwritten as soon as another domain users logs into the system ??

Is this a bug ? It's working fine for multiple AD users who are working on the sa

...

OCDBE by L2 Linker
  • 2310 Views
  • 1 replies
  • 0 Likes

Gratuitous / Proxy ARP in Failover

Hi,

I know that PA sends out an Gratuitous ARP in Failobver to inform the network partners that the active IF-IP has changed. But waht about the configured static NATs on the Public Network which redirects traffic to internal Servers (e.g. DMZ) ?

Are t

...

Haecker by L0 Member
  • 8296 Views
  • 5 replies
  • 0 Likes

Resolved! 4020 : Unable to Connect to Management-Int

I have the following configurtion

Two PA 4020 in HA

I can connect to Primary Box over web/ssh/ping but not able to do the same.

Here is my configuration on secondary box.

jksyed@SV-PA-Zulu(passive)# show deviceconfig system service

service {

  disable-http

...

URL filtering

hi all,

I am trying to configure Palo alto's URL filtering for allowing user to access web site like mappy. Problem is mappy make request to other web site for displaying photos and others ....

Do you know if it's possible to create a rule using a crit

...

VinceM by L5 Sessionator
  • 4228 Views
  • 3 replies
  • 0 Likes

SSL-VPN: Unable to receive vpn status from service

We have a problem to connect a client with Mac OSX v.10.6.6 with netconnect: Error message: Unable to receive vpn status from service.

In the FW we can see that vpn client configuration is generated successfully: slvpn-config-succ  SSL VPN client conf

...

Resolved! Problem with two ISPs and two SSL-VPN poprtals

Hello

We have PA500. It is connected to two ISPs. The requirement of moving specific traffic from LAN to one ISP, and the other taffic from LAN to the second one is easy, using policy based forwarding. But I have problem with two separate SSL-VPN potr

...

question about Thermal Chamber test result and VPNC

Hello all.

would somebody tell me where I can find out Thermal Chamber test result for the PA product?

plus. we're not enlisted on the VPNC testing product list.

do we have plan to get certify on this?

http://www.vpnc.org/testing.html

thank you very much.

...

bhlee by Not applicable
  • 1603 Views
  • 1 replies
  • 0 Likes

About server virtualization (vmware esx) question.

Hello.

When using server vitualization environment (vmware esx) can PA inspection traffic as a vm instance from internal vm servers?

I checked application named vmware at PA device but guess it is only related vmware traffic for management. right?

Pleas

...

ttongfly by L3 Networker
  • 1942 Views
  • 1 replies
  • 0 Likes

SSL VPN Client Compatibility

We have a customer using SSLVPN for users and 3rd-party peers.

A 3rd party of theirs is using the SSL VPN client. It doesn't seem to work when co-existing on a PC with other clients on it (Cisco, Checkpoint and others) but does work if it's the only c

...

Managing policy with Panorama - what is best practice?

We are looking at deploying multiple firewall instances managed centrally by Panorama, and would like to maintain a global baseline policy across all of them.

We recognize that regional instances will have specific local policy requirements not shared

...

KGC by L3 Networker
  • 3062 Views
  • 1 replies
  • 0 Likes
  • 23704 Posts
  • 110 Subscriptions
Labels