General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Block Netflix

Hi,Anyone know the best way to block streaming from Netflix app? I create a block policy for it but that didn't seem to work. Am I missing something?-Tevin.

akatev by L0 Member
  • 5474 Views
  • 1 replies
  • 0 Likes

Resolved! Can PaloAlto block content of subject of email?

For example: I have config the feature data fitlering for block data pattern such as :" .*Salary, .*Confidential". When I send email out with subject: "Salary or Confidential", can PaloAlto detect and block this email? And can PaloAlto detect and block content of body, attached file of email when I send out with content which has word such as : ...

binh by Not applicable
  • 7286 Views
  • 7 replies
  • 0 Likes

Vuln Sigs for SQL Injection

There are several sigs described as "HTTP SQL Injection" (30514, 33338, 33340, 33305, and maybe others) that are server-side mediums with a default alert. What are these signatures looking for? Atypical SQL statements that indicate an attempt to get more from a database than one might normally need? More info in the description...

Security policies, mixing app and "service" options, ping, PPTP and NAT?

I've a bunch of Citrix servers that I need to have a security rule for. I put together an address group for their public IPs, and I see that there is a "Citrix" application definition.However, the Citrix servers also need port 8080 routed to them for the Citrix XML browsing service (these are Metaframe 4.5 servers). Normally you'd run the XML ...

bradenmcg by L3 Networker
  • 5926 Views
  • 4 replies
  • 0 Likes

Custom application

Hello,I would like to creade a Custom appl at the moment based only on host on http GET request.from wireshark I got host: www.facebook.com\r\n (see sniffer.jpg).I created a custom app as from attched Custom APP.pdfI seams that isn't reconized, what's wrong ?

Is it possible that a firewall configured in tap mode block traffic?

Hi,I have recently installed a pan device in TAP mode, with a port mirroring on a cisco switch that copy traffic to the tap interface. On the policy cofigured to allow all between TAP zone and TAP zone, i have configured default security profiles, specially url filtering profile that block some categories by default, so the question is, while be...

asia by L3 Networker
  • 6041 Views
  • 4 replies
  • 0 Likes

"Release Notes" now require a username/password

On my PA-2050 (version 3.1.4 - two boxes in an HA pair) under Dynamic Updates, for just the two Antivirus listings, when I click on Release Notes, a pop-up window tells me "The server updates.paloaltonetworks.com at updates.paloaltonetworks.com requires a username and password." The Release Notes for the Application and Threats listings both co...

cshep by L1 Bithead
  • 5855 Views
  • 6 replies
  • 0 Likes

ata2.00: exception Emask 0x0 SAct 0x0 SErr 0x0 action 0x0.

This morning there were 3 unusual system alerts on our PA-4020:1. /* Style Definitions */ table.MsoNormalTable {mso-style-name:"Table Normal"; mso-tstyle-rowband-size:0; mso-tstyle-colband-size:0; mso-style-noshow:yes; mso-style-priority:99; mso-style-parent:""; mso-padding-alt:0in 5.4pt 0in 5.4pt; mso-para-margin:0in; mso-para-m...

dbaumann by L1 Bithead
  • 4090 Views
  • 1 replies
  • 1 Likes

New to PAN - Traffic log Destination column question

Hello,What information is the Traffic Log's "Destination" column giving me?We are just setting up a pair of PA-500s and I am perusing through the traffic log and noticed that the destination column doesn't seem to reflect the website destination that a user has tried to go to. Instead it seems to only list either the DNS name of the destination...

cnelson by Not applicable
  • 2710 Views
  • 1 replies
  • 0 Likes

Cannot open group_memebers.txt file, casue is 2!

An error like in the subject occurs in the log. The UIA is unable to read group information, nor IP to Username information.Tested with 3.1.1 and 3.1.2 version. Server Windows 2003 R2. Please explain what does "cause 2" mean.Best Regards,Radek

mstawow by Not applicable
  • 2235 Views
  • 1 replies
  • 0 Likes

Resolved! Captive portal port assignment

Is there any way to change the default ports used by a redirected Captive Portal? In my test environment, the users are redirected to the firewall interface, but on port 6082. I'd like to have it redirect back to the std SSL port instead.So instead of:https://<firewall int IP>:6082/xxxjust:http://<firewall int IP>/xxxThanks,Tariq

rahmant by Not applicable
  • 4204 Views
  • 2 replies
  • 0 Likes
  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels