General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 778 Views
  • 0 replies
  • 0 Likes

ipv6 tunneled in ipv4 (protocol 41)

Hi,

  What application in the Palo Alto Application database matches with IP protocol 41 (used for tunneling IPv6 in IPv4?

  When doing Source NAT, is IP protocol 41 NATed?

Thanks    

Resolved! Paloalto to Firebox

Any know issues with an ipsec VPN connection between a PA-500 to a Watchguard Firebox?

twhite by L1 Bithead
  • 5441 Views
  • 4 replies
  • 1 Likes

Resolved! IP to user mapping issues with Pan Agent

We run McAfee which does some user authentication on AD for group policies. The problem is that when this happens, the ip to user mapping shows this service account as the user instead of the actual user that is logged in. The actual user is then una

...

hallk by Not applicable
  • 3140 Views
  • 3 replies
  • 0 Likes

Errors with Cosutm Reports

Hi Guys,

Since I have upgrade to 3.1.6 (December 2010), the PA-500 is unable to run Costum Reports longer than 1 week or last 7 days, I downgraded to 3.1.5 but this does not work.

Right now I have version 3.1.6, an every time I try to run a Custom Rep

...

IPS Default Protections?

I need a techincal answer for default protections with PAN IPS enabled.  If possible, think in a CP-to-PAN conversion.  I know...apples to oranges.

TIA - Jeff

jhill by Not applicable
  • 2223 Views
  • 1 replies
  • 0 Likes

Control android and other smartphones

I managed to use the setup for blockin iphone/ipad trafic.

https://live.paloaltonetworks.com/docs/DOC-1503

Some questions...

How do we do this for other smartphones?

And is it possible to control this with IP range for instance? Or other methods?

Thinki

...

oddmbjer by Not applicable
  • 2997 Views
  • 1 replies
  • 0 Likes

URL Block Question

So I have a need to block almost all internet access for a certain group of folks.  They are in a warehouse and only need access to a few websites (time clock, shipping sites, etc) related to their jobs.

How I'm doing this currently is to use a Activ

...

What is Trusted CA Certificate used for?

According to the PA-3.0_Administrators_Guide.pdf:

"
Trusted CA certificate—Import an additional intermediate certificate authority (CA) certificate to trust when doing SSL decryption. If the firewall encounters a certificate that is not signed by a tru

...

rps by L3 Networker
  • 8318 Views
  • 9 replies
  • 0 Likes

Custom URL not working

Hi,

I have a PA2020 system with Custom URL category defined and it was working fine on 3.1.4.

When we upgraded to 3.1.6, the Custom URL category was not working and URL present in the custom category were being blocked, even if they were in the allow l

...

vinesh by L2 Linker
  • 3659 Views
  • 5 replies
  • 0 Likes

Resolved! Using LDAP/AD names for firewall GUI login

Hi

I believe I've successfully set up LDAP authentication in our Palo device. All of our groups and users are appearing when searched for using "show user ldap-server server all" and they show up in Authentication Profiles when changing the Allow List

...

  • 23986 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels