General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 536 Views
  • 0 replies
  • 0 Likes

PDF Summary Reports

Hello,

Does anyone know if there is a way to export all PDF Summary Reports at once off panorama?

Please let me know

Thanks

Paul

Resolved! same zone and throughput

Hello guys,

My question is about a Palo Alto PA-500.

The firewall througput is around 250Mbps, and 100Mbps with inspection of packets.

I have 1 Firewall PA-500, with 5 interfaces (L3):

Eth1/1: Untrust zone

Eth1/2: DMZ Zone

Eth1/3 to Eth1/5: Trust zone

What

...

Resolved! TCP Split Handshake spoof

Hi, i would appreciate if someone from the PA team could address the following question.

In the recent NSS Labs Firewall Comparative Group Test Report Q1 2011. Of the 6 products review and tested, 5 were suseptible to the above type attack. For detail

...

User-ID Agent 3.0.x on Windows Server 2008?

I've heard that the User-ID Agent 3.0.2 should be supported on Windows Server 2008 and 2008-R2, but my attempts have failed on both platforms. In both cases, I am using a domain-admin account to install the .MSI package but getting an error at then e

...

u2849 by Not applicable
  • 5759 Views
  • 6 replies
  • 0 Likes

Not blocking Eicar in 3.1.8

Since 3.1.8 the PAN do not identificates the Eicar "virus" in all cases. The loading from https://secure.eicar.org/eicarcom2.zip will be possible, but the same file with http://www.eicar.org/download/eicarcom2.zip will be blocked reliably.

mhuels by L3 Networker
  • 2612 Views
  • 3 replies
  • 0 Likes

Cloning traffic to simulate attacks/vulnerabilities

Hi,

Has anyone ever tried to clone malicious traffic sent through the palo-alto firewall to try to re-simulate attacks or exploit vulnerabilities?

If you have, can you share your experience in how you did it?

Just trying to research on some ideas of how

...

ikinnexi by Not applicable
  • 4311 Views
  • 6 replies
  • 0 Likes

SSL VPN on Mac OS X running in 64-bit mode?

Hi,

Some of our clients are running OS X in 64-bit mode and when they launch the client they get a pop-up telling that its not supported on a 64-bit kernel.

Is this expected behaviour? Will there be a version that supports 64-bit kernel?

Thanks!

Resolved! URL logs

Is it possible to see url logs without url filtering license? I'm not talking about profiles and blocking some categories, just to see what urls users visited.

Regards!

mkopcic by L2 Linker
  • 2300 Views
  • 1 replies
  • 0 Likes

URL Filtering allow

Hi,

I would like to know if it's possible to have the allow-list URL in the log.

As we have to do monitoring not only on blocked URL but also in allowed.

Brgds, Lionel

Anyplace remote control to be stopped

Hi,

A remote control online solution called Anyplace Control(anyplace-control.com), and this needs to be stopped.
Palo Alto shows this as "unknown-tcp", and as such it may be disastrous to stop all unknown-tcp.

I need this to be blocked as an applicatio

...

ta185020 by Not applicable
  • 2014 Views
  • 2 replies
  • 0 Likes

Custom Report Oddity in PanOS 4.0.1

I have the following report configured and it is checked "scheduled" in Panorama

Soft Block Report {

  type {

    panorama-url {

      group-by day-of-receive_time;

      aggregate-by [ risk-of-app action category srcuser src misc ];

      values [ repeatc

...

rroberts by Not applicable
  • 1811 Views
  • 1 replies
  • 0 Likes

Cisco CAPWAP

We recently brought in some new Cisco WLC's and AP's and noticed that they use LWAPP.  Originally my PAN saw this traffic as an app called Xunlei...which was being blocked.  After finding and creating a special category for this custom app...it start

...

  • 23904 Posts
  • 113 Subscriptions
Labels