General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4118 Views
  • 0 replies
  • 0 Likes

App-ID: Amazon video on demand - any plans?

Hi all...anyone know if there are plans to add detection of Amazon's new Video on Demand service that they are offering to their Premier customers? Hasn't been an issue yet, but Amazon has plans to turn this into a Netflix competitor, so it'll be an issue soon enough.More info here:http://www.amazon.com/Instant-Video/b?ie=UTF8&node=16261631...

dstewart by L0 Member
  • 2819 Views
  • 2 replies
  • 0 Likes

User Identification Agent

I have forget to start/restart service, before configure so I have this message : "Please start the PanAgent service first" in status agent.When I click on "start", this message display: Impossible de démarrer le service PanAgent Service sur Ordinateur local. Erreur 1069: l'échec d'une ouverture de session a empêché le démarrage du service ...

Panorama - committing changes to Firewall

Hi all,I might have a little understanding problem here. Is the commit process from within Panorama a two step process ?1.) In Panorama Policies tab, go to Security Policy.Choose correct device group, modify security policy as required and click on commit when done.This does not install the committed Policy to the Firewall yet.2.) In Panorama se...

gafrol by L4 Transporter
  • 4932 Views
  • 4 replies
  • 0 Likes

ldap groups not working

Hello,for some reason we ( and many other customers ) are still experiencing issues regarding the use of ldap groups in an authenticatin profile for example SSL VPN.We have microsoft AD as LDAP server and we went through every step in the well known following document ( eDirectory and LDAP authentication in PANOS 3 1 3.pdf)When we specify a sing...

OCDBE by L2 Linker
  • 5941 Views
  • 3 replies
  • 0 Likes

zone protection test doc.

Hello all.I tested some of the DOS/DDOS tool set against PA-4050.I want to share my humble doc to you.some of them still remain question to me.. I'll open the support case for that.if you have some input, please email me.thank you~.BH Lee

bhlee by Not applicable
  • 4824 Views
  • 2 replies
  • 1 Likes

Panorama 4.0.1 commit error

I have a PA-2020 managed through Panorama, both running 4.0.1. When I change a setting in Panorama for example a security policy change in the local device context only !If I commit the change I get this error message right after clicking on commitAlthough the commit is still being processed in the job queueAfter a moment I can see the commit ha...

gafrol by L4 Transporter
  • 4358 Views
  • 3 replies
  • 0 Likes

Resolved! User in different AD groups

Hi,we want to enforce a policy with user groups from AD. USER ID actually works fine.The following scenario: A single User (e.g. Harry) belongs to different AD groups (e.g. group1 & group2). The policy works with different URL Filtering profiles.Policy 1 will have Source "group1" and Policy 2 will have Source "group2" as Objects.Policy 1 is ...

Haecker by L0 Member
  • 2587 Views
  • 1 replies
  • 0 Likes

Resolved! New Deployment - No Threat Data

I just put my new 4020 in-line yesterday. I see traffic. I see App Categories. I see nothing under threat monitor even though the feature is licensed and activated. I had a test box a few weeks back that was in span-mode (tap-mode) and Threat Data showed up immediately.My current policy is very simple. I am allowing all out and allowing all in. ...

jickfoo by Not applicable
  • 2805 Views
  • 2 replies
  • 0 Likes

Routing issue

Hi guys,I have an issue I faced before with OpenBSD's PF Firewall but I am not able to solve with PAN.My topology is:INET ----- PAN ---- DMZ ---- Balancer ---- Balanced Servers | LANThe domain controllers for the DMZ domain are located in DMZ and their default gateway is PAN. The route to reach the balanced servers n...

ajripa by Not applicable
  • 5144 Views
  • 3 replies
  • 0 Likes

URL Filtering Categories

Hello,After some days using a PAN Firewall, I've notice that some URL are incorrectly classified. Is there any way to modify the standar URL categories?Thanks,

ajripa by Not applicable
  • 5811 Views
  • 4 replies
  • 0 Likes

Multiple Virtual Routers sharing the same INSIDE zone? Possible?

Hi.I have my PA's running fine and dandy with my normal internet link(s) and DMZ farmed out to my edge routers without issue.Now I have coming a requirement for a dedicated, seperate Internet link and DMZ for a special purpose with the traffic being completely isolated from my "main' links.I want to assign two new interfaces - one for the extra ...

dagibbs by L4 Transporter
  • 8365 Views
  • 3 replies
  • 0 Likes

3.1.8, when?

Hi,we opened a Case and the support answered that it will be fixed in 3.1.8 release.I was wondering, when will it be released?Any idea?Thanks

multiple SSL-VPN profiles

I have to manage some different SSL-VPN profiles. I would offer to remote user the possibility to choose a VPN profile and then access the enterprise network with different policies. Is it possible ? How can I distinguish between one profile from another ? I suppose I need some IP public addresses to create different SSL portal with different IP...

lauro7 by L0 Member
  • 4098 Views
  • 2 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels