General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1710 Views
  • 0 replies
  • 0 Likes

Multiple SSL VPN tunnels to same endpoint - possible?

Hi.

I run a pair of PA 2050's on my internet edge, and currently use them for terminating an SSL VPN for staff to remote access internal resources.

I want to put in a second SSL VPN, different IP range, different security zone, much more restricted for

...

dagibbs by L4 Transporter
  • 5016 Views
  • 5 replies
  • 0 Likes

PA500 Connected driectly to MAN

I am just installing a metro Ethernet internet connection and was wondering if anyone has connected the carrier termination device directly to a PA500 and used this as the router?  Can anyone think why this wont work?

djmac by Not applicable
  • 3020 Views
  • 2 replies
  • 0 Likes

Resolved! No RST connection

Hi, my scenario is:  one Security Rule that allow one IP of inside (10.10.10.1) to outside with ftp application. I've captured traffic and I see that the three way handshake begins but when Palo Alto detects that the traffic is not ftp, it doesn't se

...

Feature Request - Change the content updated email

Hello,

I would like to make a feature request to change the content updated email. What's in there is good, but with the impact that App-ID can bring to internet access, I think PA should add something like change control infomation in the email.

When

...

sonet by L2 Linker
  • 2308 Views
  • 1 replies
  • 0 Likes

Resolved! Config commit is taking nearly 10 minutes with 3.1.1

Previously, using the 3.0.x series the commit where really fast, it sometimes took less than a minute.

Now, every config commit is taking nearly 10 minutes :

08:40:02          17           Commit       FIN     OK 08:49:36

Is there anything that could

...

SSLVPN Checklist for Mac OS X

Would like to install SSLVPN client on MacBook Pro's.  Would like to create installation checklist to make to list how to install and howto use VPN client after installation.  I installed on one Mac already but did not see a shortcut or NetConnect ic

...

Resolved! AV version 349

The Release Notes for AV version 349 are empty - no new viruses and no new old viruses.  At 66MB is should be a large update.  Is version 349 suspect, or are we ok to install it?  Thanks --

cshep by L1 Bithead
  • 2323 Views
  • 1 replies
  • 0 Likes

Resolved! Changing the URL for whois lookups

Hallo!  I'm trying to figure out the format of ip-address-lookup-url which defaults to http://www.networksolutions.com/whois/results.jsp?ip=  The Network Solutions site is not that useful for addresses allocated to RIPE, APNIC etc so I tried to speci

...

jojo by L0 Member
  • 3414 Views
  • 1 replies
  • 1 Likes

Is ther an OSPF issue in PAN-OS 3.1.5

Hello,

We were doing some tests on ospf, and we noticed that the firewall dont flush his ospf adjacency table even if a nheibour goes down, and this for a duration of one hour, in wich it continue to include the wrong information (concerning the gone

...

asia by L3 Networker
  • 3289 Views
  • 3 replies
  • 0 Likes

Resolved! Virtual Wire - Guide?

We have a PA-500 that's in L3 mode with a simple ethernet1/1 (trust)and ethernet1/2 (untrust) setup.

I want to add a virtual wire to do IPS inspection on traffic to a DMZ network that is currently in front of the PAN, and where it would be a lot of ef

...

Resolved! Feature Request - DNS name as source/destination

It would be very useful to use a public DNS name as a source address or destination address directly in Security Rules.  Currently, a domain/category etc.. can be blocked or allowed through the URL filter as a destination. However this can make the s

...

nrouten by Not applicable
  • 3793 Views
  • 4 replies
  • 0 Likes

More granular with Vulnerability Exceptions?

When adding a Vulnerability Exception, is there any way to make the exception more granular? (being able to add the exception along with an IP host or range, source or destination IP, zones, or virtual systems.)  For example, If I wanted to ignore a

...

jambulo by L4 Transporter
  • 3917 Views
  • 3 replies
  • 0 Likes
  • 24220 Posts
  • 117 Subscriptions
Top Liked Authors
Labels