URLs visited
We use Palo Alto firewalls PA3020. How can I generate a report that shows how many times a URL has been visited? Also, can we see who visited the URL? Thanks!
We use Palo Alto firewalls PA3020. How can I generate a report that shows how many times a URL has been visited? Also, can we see who visited the URL? Thanks!
I'm looking at CVE-2023-6795 and in the description I see "enables an authenticated administrator to disrupt system processes and potentially execute arbitrary code with limited privileges on the firewall" This means that all admin included the readonly admin like the SuperUser (ReadOnly) can do the execute arbitrary code?
Hello We have a user with the same permissions that the other users in XSOAR and in CSP who cannot log in XSOAR. It keeps giving an error: Unauthorized 401403. Has anyone seen this? Regards
Good day, We are transitioning off Cortex XDR and need to do a mass uninstall for 200+ devices on our network. Right now our only solution is to do so manually, one by one, using the cytool protect disable function etc. Is there a way to do this using a Group Policy instead of one by one?
The Superuser (readonly) have the API Access enabled by default?
Hi all, I just set up SSH decryption, also known as SSH proxy on the palo alto.When I look at the actual sessions, I do see a checked box near to decrypted, so according to me the decryption itself works.I also got a warning about a man in the middle attack after I enabled the decryption, because the keys changed. Now what I want to achieve, is ...
I have a Hub to Hub standard VPN to connect the two together in place of a MPLS. The are peered with a Classic BGP session, site one sending a /20 prefix it has learned from it's core router. Site two sees that from the BGP Peer, but the route will not install, just shows in the filtered section, not the reachable.The next hop is site 1's end of...
Hello the Palo Alto community, I'm trying to create a simple template stack for firewalls with the same topology (WAN interface on eth1/1, 1/2.x for internal VLAN, etc...) and use variables for each device. I'm facing an issue with the VPN part. If I don't create the IKE Gateway locally on the firewalls, I get a failed commit without any furth...
Hi everyone! Greetings to all. I was just curious since I've been seeing traffic logs packets which are Gb's and Tb's in size. I am not sure if this is a wrong display but I am pretty sure there was no such traffic in my network. I am currently running PANOS 10.1.8 Is this a bug? Regards, Renz
Is anyone else seeing sudden failures in URL categorization for Google searches? Starting within the last hour or so we are seeing intermittent blocks as not-resolved for search URLs, but not for the Google homepage or any other websites (that I have been able to find so far). Initial error seem to be a HTTP2 compression error to the Google serv...
I've just recently started getting blasted with Global Protect portal pre-login failures, coming from a bunch of illegitimate IP's. They all fail because I use certificate authentication and the client cert is not present on the attacker's device. I have have the NGF set up to email me every time this happens and I'm getting just blasted with e...
Hi, We have a Palo VM with advanced routing enabled. We have 2 customers with overlapping networks (172.16.0.0/24). Those networks must be accessible by the same servers (in connected network 10.1.1.0/24).Customer1 network is routed via a static route to another router, Customer2 network is behind a IPSec VPN configured on the Palo VM. We ca...
I'm working on getting a Windows User-ID agent set up for a customer and it's not collecting logs. Checked all permisssions and service account user is in Event Log Readers and has permissions to both the install folder and registry entries. Just as a test, I had the customer add the service account to the domain admins group and the user mapp...
Hi! If anyone have some experience about this topic? I need a vpn between our PaloAlto and a virtual machine with strong swan installed. To route some traffic from our local network to this vpn tunnel. How to make this possible?
Is there a way to monitor power supply redundancy by SNMP? I found this, but these values are not a SNMP object. https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClbfCAC similar to this; these values don't exit on my PA-440. https://live.paloaltonetworks.com/t5/general-topics/snmp-monitoring-on-pa3250-psu/td-p/417040 ...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

