General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4117 Views
  • 0 replies
  • 0 Likes

Invalid address value NaN shown in 3.1.7

Since updating to PAN 3.1.7 the committing dialogue showsdevice: Invalid address value 'NaN'Nevertheless the rule installs successfull.Does anybody have the same strange message?

mhuels by L3 Networker
  • 3944 Views
  • 4 replies
  • 0 Likes

Auto-block admin "hammer" attempts?

I've been seeing stuff in the system log like the following:User 'caitlen' failed authentication. Reason: Authentication profile not found for the user From: [some hacker in China's IP]. There are a huge string of these, obviously it's reading through a dictionary and trying a bunch of accounts.Is there any way to get the PAN to ignore the IP fo...

bradenmcg by L3 Networker
  • 2413 Views
  • 1 replies
  • 0 Likes

Add second Internet coonection

Does anyone have any notes or tips on adding a second Internet connections? Also need to point specific group of uses to new connection, do I create a second Untrust zone, different name then first Untrust zone and change the security rule for those source users to point to new untrust zone? Thanks

Resolved! Recommended software releases?

Hi All,I looked around, and I was wondering if Palo Alto has a similar "recommended software" as other vendors do where depending on the hardware there is a specific version of software, or is everyone just updating their firewalls as the new PanOS versions are released?Thanks.

dmarion by L1 Bithead
  • 4499 Views
  • 3 replies
  • 0 Likes

PanOS 4.0

Its disappeared off of the site along with the version 4 terminal services agent. Anyone know why? I've been waiting for the 2008 64 bit agent for a while.

SMF by L1 Bithead
  • 2870 Views
  • 2 replies
  • 0 Likes

path-monitoring packet interval

Hi,Can I change the path-monitoring packet (ping) interval?Our ISP don't agree their router receive ping packet every 200ms.I would like to change ping interval.Thanks.

Mt_103 by L2 Linker
  • 2421 Views
  • 1 replies
  • 0 Likes

Resolved! User ID agent on Vista/Win7

Is there a timeline available for when the User ID agent will work on Windows 7? I need to plan a rollout of new PC's early next year, and I need to know if they are going to need downgrades to XP for any length of time. I know that the captive portal should still work, but not having to authenticate was a big plus in getting buy in for the ne...

bwmillslg by Not applicable
  • 6198 Views
  • 7 replies
  • 0 Likes

Define the range of ports used when overriding an URL

Hello world,has anybody come accross a solution, when the PA is "overriding" an URL, it uses a technique of changing the dest port of the original request.As I'm using a proxy infront of the PA, he clains that the port this request uses now, is not one of the allowed ones.squid -> tcp_deniedNo problem of changing this port into the secure por...

PAN-OS Syslog messages

Hello,We are planning to implement monitoring tools, based on syslog messages sent by the PAN firewall. The pupose is to trap some specefic messages from witch incidents will be generated in the monitoring tool. Is there any documentation that mentions syslog messages sent by the PAN device in case of a système event (If down, HA switch over, HA...

asia by L3 Networker
  • 7177 Views
  • 4 replies
  • 0 Likes

multiple Palo Alto Agent deployments

HelloWe are having some complaints with the deployment of multiple Palo Alto Agents.We have 3 remote sites in 1 DOMAIN which are connected with a slow vpn connection. Each remote site has his own Domain controller Since we have a slow connection ,we made the choice to deploy an agent for each site. Each agent is only pointing to the local domain...

OCDBE by L2 Linker
  • 3030 Views
  • 3 replies
  • 0 Likes

Resolved! How do I stop low level file blocking (threat) alerts being sent via email?

Email alerting in Log Settings->System is set to high and critical only, Does anyone know why we receive low level email threat alerts from the file blocking security profile? We detect and alert on all file types - however, we do not necessarily wish to see all file transfers as email alerts. Any suggestions on how to tune this?Thanks!

dsinno by L1 Bithead
  • 2732 Views
  • 1 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels