General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Encrypted-DNS False Positive Heads Up

Presently 20230406.20033 and earlier updates are presenting a large number of false positive categorizations for encrypted-dns. This includes several domains from Bitwarden, YouTube, Google, Microsoft, Spotify, and many many others. If you have encry

...

BPry by Cyber Elite
  • 3125 Views
  • 6 replies
  • 3 Likes

Resolved! L2 Over L3 with VXLAN protocol

Hello, 

 

Is it possible to configure a VXLAN tunnel on a Palo Alto 3220 (running PANOS 10.2.3)? I.e. is L2 over L3 tunneling using VXLAN protocol possible? If so, is there an example configuration you can point me to?

 

Thanks!

brenna by L0 Member
  • 4350 Views
  • 2 replies
  • 0 Likes

blocking apps on google chromecast

Hello,

 

Looking to block apps on a new Google Chromecast all apps would be great but haven't been able to block AppleTV, HBOMax and ESPN. I've put appletvplus and hbo into our blocked apps rule but they still open and able to be accessed.

 

Any one

...

mlaporte by L1 Bithead
  • 1685 Views
  • 2 replies
  • 0 Likes

Re: Welcome to LIVEcommunity! Start Here.

Olá @Marcos1991 

 

Algo que pode testar é a liberação de portas de VPN udp, já precisei em algum momento utilizar-se disto.

https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/firewall-administration/reference-port-number-usage/ports-used-for-ips

...

User cannot connect to Global protect portal.

The error message on this users GP client says they have an issue with they're certificate. The helpdesk apparently installed a certificate but I am not sure which one or where exactly. Now its telling me it cant access the portal at all. I want to d

...

Resolved! Ping management interface

Hi Initial configuration is like the below. why we cannot ping 192.168.8.100 ? i would like to allow the firewall to be ping and accessed via https. Maybe it need to add some command . Anyone can provide some suggestion? Thank you

 

admin@PA-VM> conf

...

Global Protect on Linux not working

I've tried GP on both Ubuntu 22.04 and AlmaLinux.I got the GP app from University of Texas at Dallas.
Neither worked. I got a SSL Handshake error.
Anybody with a successful experience to share?

Cheers

 

Resolved! DNS over TLS in 10.2.4

Hi All

 

it seems like late last year DNS over TLS feature has been added to Palo Alto firewalls

 

However I am having issues understanding where it needs to be configured, I did read the guides but still unclear

 

So my external dns is 1.1.1.1 and I

...

nevolex by L3 Networker
  • 1807 Views
  • 2 replies
  • 0 Likes

warning msg on CLI

Hi,
 
While logged into the CLI on our PAN-OS, received the following error messages:
 
2016-07-20 12:17:16.783 +1000 Warning:  pan_hash_init(pan_hash.c:112): nbuckets 100 is not power of 2!
2016-07-20 12:17:16.783 +1000 Warning:  pan_hash_init(pan_hash.c
...

fmustafa by L1 Bithead
  • 6055 Views
  • 3 replies
  • 0 Likes

Re: Welcome to LIVEcommunity! Start Here.

Olá @Marcos1991 

 

Sobre as VPNs, as polices estão criadas para permitir comunicação entre as zonas de segurança? Há NAT de saída para "Internet"?

Vejas se estas docs lhe auxiliam:

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g00000

...

  • 23560 Posts
  • 106 Subscriptions
Labels