General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Setting up Orion NPM to monitor PA-2050 via SNMP

Hi,

I'm new to setting up SNMP and need help.

Our Network Engineers need to setup their Orion NPM to monitor our 3 Palo Alto 2050's via SNMP.

They basically only need to monitor CPU, Memory, and Link States of the 3 interfaces hooked up for each of the

...

ikinnexi by Not applicable
  • 3220 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama 3.1 to 4.0 migration

Hi,

I would like to know if Panorama 4.0 is able to manage PanOS 3.1.x firewall. If yes is there any restrictions or known caveats ?

In fact, we are planning to purchase Firewall 5050 which support only PANOS 4.0, and beside this we have some others 40

...

bdaussin by L0 Member
  • 2387 Views
  • 4 replies
  • 0 Likes

No IPSec-Tunnels after Upgrade from 3.1.7 to 4.01

Hello,

we run 8 PA-500s in 8 Branches. After upgrading them from 3.1.7 to 4.0.1 not all IPSec-Tunnels become active.

The Tunnels to the branches with the WAN-Interface connected to SDSL with PPPoE (automatic IP/Netmask/Gateway) stayed inactive, even af

...

Multiple NAT or UTurn NAT rules

We are hoping that someone can suggest a simpler way to resolve the issue of allowing internal hosts (in the Trust zone) to access servers sitting on the Trust zone via their external IP address (what PAN calls a UTurn or Hairpin rule).  We have near

...

synapse by L0 Member
  • 2895 Views
  • 2 replies
  • 0 Likes

Resolved! Opening file download for specific URLs

I have recently deployed PAN 2050 in my organization. We are enabled file blocking for selected file types e.g. (EXE, BAT, CAB, ZIP, ISO, RAR etc.) in both the direction. But as per management decision I have to allow download access from Microsoft U

...

u6402 by Not applicable
  • 1825 Views
  • 1 replies
  • 0 Likes

Resolved! PANOS 4.0.1 - Color Scheme Hard to Read

Does anyone else find that the color scheming of PANOS 4.0.1 extremely hard to read?

Since upgrading recently I've had multiple complaints specifically with reading of the 'greyed-out' areas such as disabled rules, the soft contrasting and color choic

...

micit by L1 Bithead
  • 1924 Views
  • 1 replies
  • 0 Likes

Packet Capture problem w/ PA-5020 running 4.0.0

So, using debug dataplane packet-diag I am unable to get filters to work propperly and quite often don't see data that I actually Should.  I didn't know if this was a bug with the 4.0.0 code or not but it makes it awful hard to defend the firewall wh

...

Virus only email alerts?

I see where it is possible to send alerts for threat preventation at the different severity levels, but is it possible to only send alerts for a specific type? Specifically i'd only like to receive emails for Virus alerts.

chrisp by L3 Networker
  • 2235 Views
  • 2 replies
  • 0 Likes

Rules applying to wrong users

IOS : 4.0.1

User ID Agent Version: 3.1.2

We have RULE1 set for USERS - A, B, and C.  They have an AV, Anti-Spyware, and Vulnerability protection.  RULE2 is for ANY other users on the network, which has its own AV, Spyware, Vulnerability profiles as wel

...

Resolved! SSL VPN Vlient 1.2.0 - invalid PaloAlto Cert

Hi PaloAlto,

please update the SSL VPN Client 1.2.0: the "Java Object Signing certificate", which seems to be compiled into the client,

is no longer valid. Atached are two screenshots.

Best Regards

Update: Fixed in 1.3.0

Downloading updates through a diffrent interface

Hi,

Is there a possibilty to download the AV signatures / Dynamic updates through one of the non-managment interfaces?

I have one interface connected to my LAN, the other one is external - in a L3 deployment.

I do not want to connect the managment inter

...

support6 by Not applicable
  • 2287 Views
  • 2 replies
  • 0 Likes

PANOS 4.0.1 - GUI Issue

Since upgrading to 4.0.1 - in the Security Policy - under Source User - if I try and change the user type it ignores what I've chosen (eg Known User to Unknown User) and default to "Any" - then won't allow me to change it at all!!! Has anyone else ex

...

fmd by L3 Networker
  • 3352 Views
  • 7 replies
  • 0 Likes

Virus False Positive ? - Winrar

I flipped on Virus Filtering today and within 5 minutes got my first potential false positive.

Any reason why it would think Winrar.exe is a Virus ?

http://www.win-rar.com/downloads//rar/wrar400.exe

It thought it was Trojan-GameThief/Win32.magania.flfe

I

...

jhickey by L3 Networker
  • 1857 Views
  • 2 replies
  • 0 Likes
  • 24303 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels