General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4243 Views
  • 0 replies
  • 0 Likes

RADIUS authenticated SSL VPN users in policy

Is is possible to define a "source user" in a security/QoS policy as a username/group that was authenticated by RADIUS? Basically, the need is for users coming in via SSL VPN to have specific security policies assigned to them based on username or RADIUS group membership.

pflanagan by Not applicable
  • 3744 Views
  • 2 replies
  • 0 Likes

Report on Rule Usage?

Hi,How can I run a report to understand the last use of a loaded policy/security rule? For example, if I have 100 security rules in the firewall policy, how can I identify which rules are actively being used, and which ones are not being used often, or at all? I realize that this information is contained within the traffic log, but for an enviro...

apc050 by Not applicable
  • 3841 Views
  • 3 replies
  • 0 Likes

Resolved! Upgrade from 4.01 to 4.03 Url filter issue

After we did an upgrade from 4.01 to 4.03 when proceeding to do a commit we get the following error:rulebase -> security -> rules -> X X Policies 'X X Policies ' is invalidThis worked with 4.01...Any thoughts?

almay by L2 Linker
  • 3636 Views
  • 2 replies
  • 0 Likes

Captive Portal SSL Problem

I tried to configure my PaloAlto with a captive portal, but something seems to be wrong, as i don't get any login form.As I use the captive portal in redirect-mode, the firewall forwards my browser request to something like https://publicWLAN:6082. This seems to work right. I also got a "allow" Log entry on my traffic log.I tried to analyze the ...

User_333 by L2 Linker
  • 4925 Views
  • 3 replies
  • 0 Likes

Resolved! VPNs between Palo and Check Point

Hello all,I'm hoping that somebody may be able to answer a few questions I have about the configuration of Palo Alto firewalls please?Most of my experience in recent years has been with Check Point firewalls. I've found that most things can be done in a very similar way with Palo Altos but I have a few questions - about site to site VPNs in par...

DavePalo by L4 Transporter
  • 12057 Views
  • 13 replies
  • 0 Likes

Resolved! configure email profile and email high severity threats

Hi All,I want to configure an email profile and then send emails to myself in the event of a high severity threat.I cannot seem to find anything for email profile config in the Administrator's guide 4.0, would highly appreciate any help on setting up this process.CheersBhav

The hostname of the PAN devices is not present in syslog messages.

Hello,I'am sending system logs messages to a syslog server, and i noticed that the hostname name is not included in yhe libes being sent. I found an option in the mgt config, to make the firewall send his hostname, but even if i check it, the hostname is no longer beeing sent. Is it a known issue?If not, what should be done to make this work, i ...

asia by L3 Networker
  • 6798 Views
  • 5 replies
  • 0 Likes

Receiving errors once logged into PA-4060

Greetings everyone. Recently, we have begun experiencing errors when connecting to our primary PA-4060 device. What occurs is upon login, when the initial dashboard comes up, we receive an "Error: failed to execute command<br/>" popup in the browser window. clicking ok allows us to normally access all the tabs (Dashboard, ACC, etc), but th...

UAMSITSEC by Not applicable
  • 3892 Views
  • 3 replies
  • 0 Likes

64 bit client

Greetings all,This is my first post as a new palo alto customer......so I'm hoping someone can shed some light here.I'm trying to install the netconnect vpn client on win 7 64bit it gets to the point of PanSetup.msi and the just disappears.....I assume 64 bit is the problem because it work on 32bit......that's the only difference I can see....An...

asabadin by L1 Bithead
  • 3972 Views
  • 3 replies
  • 0 Likes

Download and update problem

hello,i have PA-2020 v3.1.6 that install between CP and backbone switch,while my users try to do ms-update or download big size file, my PA stop the session after then complete about 25%Maybe anyone recognize this issue ?

dimat by Not applicable
  • 4341 Views
  • 5 replies
  • 0 Likes

Resolved! Firefox 4.0 issue

Hello,With Firefox 4.0 the vertical scroll bar in the "Policies" tab, in the management console, is missing so you can't view the rules below 7th row.We have an PAN 4020, in 3.1.8ThanksIñaki

the problem of Download speed degradation on Vwire mode

Hello all. I had a chance to demo for prospective customer and PA was installed at customer’s real networks with V-wire mode. After installed I tried to speed test using speed test sites. Upload was ok, but download speed was degradation. (I tested at firmware 3.1.9 and 4.0.1, but both results were same.)All of VWire interfaces speed/duplex were...

willstech by L3 Networker
  • 4212 Views
  • 5 replies
  • 0 Likes

Problems when changing IP address of trusted networks' interface

I ran into a bit of a nasty problem last week. I am trying to bring my new PA-500 up and in my testing I specified that my trusted network's IP address was 192.168.158.254. I could see everything on the trusted network, including a wireless controller as well as any other address on the network. I could ping devices, display MAC addresses vis AR...

bporter62 by Not applicable
  • 4030 Views
  • 3 replies
  • 0 Likes

problem downloading ms-updates

Hi,I am having problems downloading ms updates, as i have configured policies allowing users out going to microsoft, but when responding with updates, microsoft seems to be using som other websites, which seems to get blocked on the way back in, as the original destination (microsoft) has changed to some other site. is there anyway to fix this, ...

Strange behavior with interface in mode L2 or Vwire with the function preempt

Hello,I contact the KB because I need to have some explanations or best practice for a specific configuration.My issue is I observed in a specific configuration (interface in mode L2 or Vwire with the function preempt active and link monitoring) a strange behavior of the HA.When you shut down an interface from the active member, you have some fl...

arnaud_b by Not applicable
  • 4269 Views
  • 5 replies
  • 0 Likes
  • 24359 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels