General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4115 Views
  • 0 replies
  • 0 Likes

Resolved! URL Catagories Report

I have several URL filtering policies defined on the objects tab with my PA-2050 and would like to be able to dump that information into a report / spreadsheet for my manager etc. Is there a way to do this? It would also be benificial to me so that I can check my policies against each other. If there's a command line way to dump that config o...

SSL Renegotiation Denial of Service Vulnerability

Hi All,I have received an Alert for SSL Renegotiation Denial of Service Vulnerability.I have visited the website, and for some reason, Palo Alto thinks i am the attacker,and the website i am visiting is the victim.I have attached screen shots of this issue, please help me in understanding this issue/threat.I am not sure how to treat it and why P...

Resolved! Multiple DNS Names SSL Certificate

Hi All,Hope this is an easy one to answer.I have a customer that requires that the SSL-VPN have 2 fqdn names associated with iti.e.https://vpn.company-A.com = 196.1.1.1https://vpn.company-B.com = 196.1.1.1How would i over come this as I can only allocate a single certificate to the VPN portal ?CheersMarc

File transfer Issue - PA5050 (PAN 4.0.2)

PA5050 device with PANOS 4.0.2 in L3 mode: - There is created a single interface AE1 (6x physical interface in LAG); - There is createsd 100 L3 subinterface with VLANS tag on interface AE1; - The device has a one rule "allow all" (test environment) with profiles SPYWARE, AV, VULER, URL, DATAFILTER - all in logging mode.The device works fine with...

darkfibre by Not applicable
  • 4820 Views
  • 4 replies
  • 0 Likes

Dynamic URL database updates failing.

Folks.I haven't been able to connect to the URL database update server for nigh on two days now - all other updates are working fine.Does anyone know if there's an issue, or is anyone else experiencing a similar issue?Cheers

dagibbs by L4 Transporter
  • 4002 Views
  • 2 replies
  • 0 Likes

RADIUS authenticated SSL VPN users in policy

Is is possible to define a "source user" in a security/QoS policy as a username/group that was authenticated by RADIUS? Basically, the need is for users coming in via SSL VPN to have specific security policies assigned to them based on username or RADIUS group membership.

pflanagan by Not applicable
  • 3699 Views
  • 2 replies
  • 0 Likes

Report on Rule Usage?

Hi,How can I run a report to understand the last use of a loaded policy/security rule? For example, if I have 100 security rules in the firewall policy, how can I identify which rules are actively being used, and which ones are not being used often, or at all? I realize that this information is contained within the traffic log, but for an enviro...

apc050 by Not applicable
  • 3770 Views
  • 3 replies
  • 0 Likes

Resolved! Upgrade from 4.01 to 4.03 Url filter issue

After we did an upgrade from 4.01 to 4.03 when proceeding to do a commit we get the following error:rulebase -> security -> rules -> X X Policies 'X X Policies ' is invalidThis worked with 4.01...Any thoughts?

almay by L2 Linker
  • 3579 Views
  • 2 replies
  • 0 Likes

Captive Portal SSL Problem

I tried to configure my PaloAlto with a captive portal, but something seems to be wrong, as i don't get any login form.As I use the captive portal in redirect-mode, the firewall forwards my browser request to something like https://publicWLAN:6082. This seems to work right. I also got a "allow" Log entry on my traffic log.I tried to analyze the ...

User_333 by L2 Linker
  • 4871 Views
  • 3 replies
  • 0 Likes

Resolved! VPNs between Palo and Check Point

Hello all,I'm hoping that somebody may be able to answer a few questions I have about the configuration of Palo Alto firewalls please?Most of my experience in recent years has been with Check Point firewalls. I've found that most things can be done in a very similar way with Palo Altos but I have a few questions - about site to site VPNs in par...

DavePalo by L4 Transporter
  • 11832 Views
  • 13 replies
  • 0 Likes

Resolved! configure email profile and email high severity threats

Hi All,I want to configure an email profile and then send emails to myself in the event of a high severity threat.I cannot seem to find anything for email profile config in the Administrator's guide 4.0, would highly appreciate any help on setting up this process.CheersBhav

The hostname of the PAN devices is not present in syslog messages.

Hello,I'am sending system logs messages to a syslog server, and i noticed that the hostname name is not included in yhe libes being sent. I found an option in the mgt config, to make the firewall send his hostname, but even if i check it, the hostname is no longer beeing sent. Is it a known issue?If not, what should be done to make this work, i ...

asia by L3 Networker
  • 6721 Views
  • 5 replies
  • 0 Likes

Receiving errors once logged into PA-4060

Greetings everyone. Recently, we have begun experiencing errors when connecting to our primary PA-4060 device. What occurs is upon login, when the initial dashboard comes up, we receive an "Error: failed to execute command<br/>" popup in the browser window. clicking ok allows us to normally access all the tabs (Dashboard, ACC, etc), but th...

UAMSITSEC by Not applicable
  • 3847 Views
  • 3 replies
  • 0 Likes

64 bit client

Greetings all,This is my first post as a new palo alto customer......so I'm hoping someone can shed some light here.I'm trying to install the netconnect vpn client on win 7 64bit it gets to the point of PanSetup.msi and the just disappears.....I assume 64 bit is the problem because it work on 32bit......that's the only difference I can see....An...

asabadin by L1 Bithead
  • 3926 Views
  • 3 replies
  • 0 Likes
  • 24335 Posts
  • 124 Subscriptions
Top Solution Authors
Labels