General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

unable to pass active directory loing in trasnparent mode

hi,

recently i implemented pa-2050 in a network where they have MS-ISA acting as a proxy, the moment i installed the PA i transparent mode front of the proxy it can pass network traffic ( ping telnet etc... ) but the browsing traffic which include int

...

u3974 by Not applicable
  • 1597 Views
  • 1 replies
  • 0 Likes

Updates - problem

Hello,

I have problem with my PA-500 os 3.0.2

When I try to get updates for example software I get Failed to get upgrade info. Please try later.

Policy is just fine, BUT I don't see any traffic going into updates.paloaltonetworks.com.
I setup filter and

...

ifpilm by L1 Bithead
  • 1829 Views
  • 1 replies
  • 0 Likes

Zero-day Vulnerability in Internet Explorer

Microsoft released a security advisory today regarding a zero-day vulnerability in all supported versions of Internet Explorer that can be exploited remotely.

We are working on creating signature to protect against corresponding attack. Please stay tu

...

Resolved! Colour Coding Rules?

I can put in a feature request but I figure it's also worth asking here as maybe this is just something I'd find useful, maybe it isn't..

Are there any plans to allow colour coding of policies?

Even on our small scale PA-500 I find it quite difficult t

...

Resolved! Swamped with Syslog logging...

Our PAN is in an L3 config, and our syslog server is in a virtual-wire zone.

Basically, if I look at monitor/traffic or monitor/session browser, I'm simply swamped with syslog messages as everything is being syslogged once as the PAN management NIC go

...

Speed Test through Palo Alto pair

Hello group,

We are in the process to set up and replace the current firewall with PA-4020 pairs . During pre-test, one thing came up. Using several Speed Test sites, the results are not what we expected, particularly the UPLOAD speeds are far off .

It

...

leole by L2 Linker
  • 6240 Views
  • 7 replies
  • 0 Likes

Resolved! Commit - Error

Hi,

I am getting this error.

Operation : Commit


Status : FAILIED


Details : A commit is pending. Please try later.

The issue has happened once before and the only way I could fix it was a reboot, i really do not want to do that, I have waited over an hour

...

djbisbey by Not applicable
  • 2574 Views
  • 3 replies
  • 0 Likes

Proxy block

Hi,

we have some clever students...

they have found if they get a proxy address (prior to joining our network) and add it into their firefox they are getting out on the internet and from what they say bypassing the Palo URL check.

Is there a way I can l

...

djbisbey by Not applicable
  • 2291 Views
  • 2 replies
  • 0 Likes

Exporting translations for an IPAM system

I've been working on automated scripts to export my firewall configurations, gather the NAT translations and reformat the exported data into the XML format used by my IPAM system.

I've managed to automate this on our Check Points by parsing the object

...

jsilvia by Not applicable
  • 2171 Views
  • 2 replies
  • 0 Likes

Resolved! Schedules

Hi,

with schedules, do they apply to the policy or just URL filters?

I am trying to block certain apps at certain times, I just want to confrm in my mind that schedules are applied to the whole policy, effectively switching it on or off at times?

Also w

...

djbisbey by Not applicable
  • 2464 Views
  • 3 replies
  • 0 Likes

Resolved! PA-2020 OSPF Capacity

Hi,

I've seached the data sheets and discussion forums but could not find any information on the size of the forwarding table for a PA-2020.

We wish to run OSPF on this box and I need to understand the limitations related to the size of the OSPF databa

...

adevine by L1 Bithead
  • 2240 Views
  • 1 replies
  • 0 Likes

HTTP and sql injection by facebook-mail

Hi all,

We recently found a threat "HTTP SQL Injection Attempt" (ID = 30514) with the application "facebook-mail".

We found that information quite strange. What does it mean exactly?

Was there some patterns (for example a SQL specific pattern) in the ma

...

Data filter - Blocking suspicious downloads

For data filtering we set a rule to alert for certain downloads (such as .bat, .exe, etc).  In the monitor log, all alerts are listed as LOW severity.  I have noticed a pattern where a workstation shows a suspicious download such as game.exe or abyz

...

merrydc by L1 Bithead
  • 2168 Views
  • 1 replies
  • 0 Likes

GRE and IPSec traffic

Hello,

Does PanOS 3.1.4 in L3 mode supports GRE and IPSec protocols? We need to NAT this traffic.


Br!

Ahti Akel

akel by L1 Bithead
  • 4512 Views
  • 8 replies
  • 0 Likes
  • 24281 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels