General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4246 Views
  • 0 replies
  • 0 Likes

Palo alto to Checkpoint VPN

Is there any body tested the vpn functionality between palo alto to a policy based vpn such checkpoint? Can you guide me the steps on what to do with regards to what policy to allow and how to configure the vpn parameters? also i noticed that there is no option for ipsec sa for group2 with nopfs in palo alto, do you know if this is a limitation ...

u6960 by Not applicable
  • 5860 Views
  • 4 replies
  • 0 Likes

Unable to delete old software image.

Hi.Following a recent discussion regarding disk space on the forums, I decided I'd delete some old software images off my PA which are no longer in use.Trouble is, one of them won't delete!Has anyone seen the following error message when attempting to delete an old image?"Can't purge image 'panos-3.1.6' installed on active or backup sysroot"The ...

dagibbs by L4 Transporter
  • 10772 Views
  • 4 replies
  • 0 Likes

IPSEC VPN with Cisco ISR

I'm trying to set up a site-to-site VPN tunnel with an outside company from a PA-4050 on our side to a Cisco 3925 ISR. We can't can't get phase 1 to come up, though we're confident that the relevant settings (PSK, encryption, etc..) match up. We've tried different encryption settings, but the connection just times out on both ends. Before I g...

bowings by L1 Bithead
  • 4545 Views
  • 3 replies
  • 0 Likes

SSL Vs No SSL site

Hello again, still waiting on an answer to my last question but I have moreToday we noticed that https://gravytable.com with is listed at BrightCloud asCategoryReputation IndexLocationProxy Avoid and Anonymizers (Suggest a new category)10USWe have *.gravytable.com/* listed but today we noticed that students can access the SSL version of the ...

Resolved! Application Database not mirroring Applipedia?

Hello,We are fairly new to Palo Alto firewalls and are in the process of setting up a pair of Palo Alto PA2020 firewalls (SW 4.0.2). I have noticed that the version os the Application database is significantly different to the database held on Palo Alto's website, I would have expected them to be the same. I have downloaded and installed the la...

Dynamic URL classification, unknown URL's, and PANOS differences

Hello --testing PAN/brightcloud URL filtering on two different PAN boxes -- PA500 and PA2020.both policies have dymanic URL classification enabled.one box running PANOS 3.1.8 and other PANOS 4.0.2sample URL: http://www.bankofkremlin.comonline lookup at http://www.brightcloud.com show URL classifed.PANOS 4.0.2 shows URL classified.PANOS 3.1.8 ...

garretta by L2 Linker
  • 4350 Views
  • 3 replies
  • 0 Likes

FQDN rules and DNS features

Hi all,We started using FQDN rules few days ago. The purpose, once again, is to remove "basic IP rules" and to allow the team in charge of server to move their application without asking to change Firewall rules all the time. So, it works great but we have some limitations. Because the PAN device takes into account the TTL value, it will send DN...

bdaussin by L0 Member
  • 3110 Views
  • 3 replies
  • 0 Likes

Real-time throughput info

Hello,We recently transitioned from a Checkpoint NG to a Palo Alto 4020 and I'm in the process of learning the new interface and management capabilities of the PA. When we were using the Checkpoint NG I frequently used Checkpoint Monitor to view the Top 10 Sessions when our Internet bandwidth was being gobbled up... it had a live line graph tha...

dwoolley by L1 Bithead
  • 13456 Views
  • 7 replies
  • 0 Likes

Can't Create Rule for National Bindery Library App

I work in a University, and recently our library began to use - or try to use - an app called "Able" from http://able.nationalbindery.comWe're behind a PA 2050 running 3.1.5 firmware.The site uses an embedded Java app to communicate with a remote server. From what I can tell, the client initiates a session to dst port 80, then the server respond...

Resolved! Change log quota

Hello,is it possible to change the log quotas for the differt type of log, i.e for threat give more than 16% (see below)?> show system logdb-quotatotal log disk size: 124 GBquotas: traffic: 32%, 39 GB threat: 16%, 19 GB system: 4%, 4 GB config: 4%, 4 GB appstat: 12%, 14 GB trsum: 12%, 14 GB thsum: 4%, 4 GB

  • 24359 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels