General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 239 Views
  • 0 replies
  • 0 Likes

Terminal Services for Windows Server 2008

Our current setup for terminal services for Windows Server 2008 is setup through our ISA 2004 firewall. We plan to move to the PA-500 and and the Terminal Services Agent only works for Windows Server 2003, is there anything we can do to fix this?

awilliams by Not applicable
  • 6804 Views
  • 12 replies
  • 0 Likes

Resolved! Allow Polycom's Teleconferencing

Hello,

Here is the setup on Cisco ASA to let the Polycom's Teleconferencing works

allow source: tcp / H323    destination any

allow source any               destination UDP 1718-1719, 3230-3247, TCP 1731, 3230-3235, h323

Please advise how to set it up in

...

leole by L2 Linker
  • 3931 Views
  • 2 replies
  • 1 Likes

Zone Protection Severity Levels

What are the severity levels that get logged to the Threat Log for the Zone Protection Profile Flood Protection, Reconnaissance detection, & Packet-based attack protection attacks?

jwolach by L4 Transporter
  • 2939 Views
  • 3 replies
  • 0 Likes

Resolved! Scheduling policies and continuous tcp sessions

Dear Gentlemen,

Does anybody know how we can configure the policies to block a continuous TCP session when the schedule runs out?

The test we are trying to do is to block a skype discussion during a scheduled time.

During the 'allowed' time, we can laun

...

itbrain by L0 Member
  • 3855 Views
  • 3 replies
  • 0 Likes

Button for "Dynamic URL Filtering" is not there

The checkbox for "Dynamic URL Filtering" is supposed to be in the URL Filtering security profile.

I have a PA-4020 that does not show it. It's running 3.0.6.

I also have a PA-2050 which is running v3.0.5 and it does have the checkbox. Did the checkbox

...

ksalustro by L3 Networker
  • 4244 Views
  • 5 replies
  • 0 Likes

Using two different Radius at the same time?

In service route configuration one can define which interface should be used by the managementplane to reach the Radius server which you will use.

However Radius can be used both for admin-logins aswell as captive portal (user-logins).

Is it possible t

...

rps by L3 Networker
  • 4400 Views
  • 8 replies
  • 0 Likes

PAN agent to captive-portal fallback

It's possible to configure a fallback to a web form (captive portal) if a user is unkown without specifing a source ip adress in the captive portal policy? In our DHCP network we a mix of AD connected user and not AD connected. If yes how ?

Best regar

...

asecus by Not applicable
  • 2727 Views
  • 1 replies
  • 0 Likes

Threats log for denied packets

Dear all,

I currently have a generic rule which blocks netbios-like traffic to and from internet with a simple deny. As this traffic is very likely to be malware generated (at least in my context) I have enabled a simple alert-only antivirus profile o

...

x-forwarded-for and User Identificaton

We have configured x-forwarded-for flagging along with the User Identification.

Traffic logs from a tap upstream of a (squid) proxy carry the x-forwarded-for flag, but the IP is not resolved to a user.

Is this expected behaviour? (i.e. is ip-to-user tr

...

User-ID not detecting logged off users?

I have the User-ID agent configured and working nicely, however I just noticed a few entries in the URL logs showing for the domain user who last logged on to one of our PC's when I know that the PC is currently logged on using a local account rather

...

SSL Forward Decryption - Understanding Override

I'm looking at the pros and cons of enabling forward decryption.  I noticed there's an "Are you happy to continue" over-ride option but it's global i.e. it's simply on or off.

I assume this won't play nice with any non-browser based https downloads?

Al

...

Which variables are allowed in response pages?

According to Custom-Block-Pages-TN-revB.pdf the variables available are:

<user/>
<url/>
<category/>
<appname/>
<pan_form/>
<fname/>

Where <pan_form/> can only be used for captive portal and url filtering continue and override page.

But what about the others?

...

rps by L3 Networker
  • 2879 Views
  • 1 replies
  • 0 Likes
  • 23624 Posts
  • 107 Subscriptions
Labels