General Topics
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics

Forum Posts

Resolved! GlobalProtect, Working from Home, Prisma Access and Covid-19

To all, Just wanted to post a message about the Hot Topic right now, which is Covid-19. With all of this going around, everybody's health and safely is the utmost concern. Keeping your hands clean, washing your hands (A LOT), using hand sanitizers, a...

jdelio by Community Team Member
  • 18362 Views
  • 41 replies
  • 32 Likes

URL Filtering Whitelist

Hi, We have a case that 1 user would like to access URL (example a.com) that is currently blocked in existing URL filtering profile. We know we can allow this by 1. clone existing URL profile and add a.com into allow list or add it through custom URL...

L1_ENG by L1 Bithead
  • 1567 Views
  • 4 replies
  • 0 Likes

VPN between Palo Alto and Check Point firewall

Hello,I am trying to establish a successful VPN connection between my Palo Alto firewall and a Check Point firewall. The VPN tunnel on the Palo Alto side shows all green for phase 1 and 2, however on the Check Point side I keep getting a failure per ...

Palo Alto URL Filtering Test Pages unreachable via HTTP

Anyone else notice that the Palo Alto URL filtering test pages (example: http://urlfiltering.paloaltonetworks.com/test-command-and-control) are no longer reachable using http? This article describes the pages and why you would want to use them to val...

PeteS by L1 Bithead
  • 1022 Views
  • 3 replies
  • 0 Likes

HA clarification with a single ISP

Hi Gang, Excuse me for my ignorance. We had firewalls Palo literally thrown at us, and instantaneously put into production (not great!). I have a pair of Palo's in HA Active/Passive with preemptive enabled on active/primary. These are in turn, patche...

Malicious requests from 65.154.226.XXX to our service

Hello, We are hosting a cloud solution and we have identified a increased amount of malicious requests all originating from 65.154.226.XXX IP ranges. Most of them coming from 65.154.226.126, 65.154.226.220 and 65.154.226.100. It turns out these IPs o...

SaSupNL by L0 Member
  • 3285 Views
  • 2 replies
  • 2 Likes

User dropped when uses GlobalProtect

Hello. I have an issue when users use GlobalProtect to access internal resources (my policy is restricted by username).PA Release: 8.1.11GlobalProtect: 4.1.12-3 Initialy they access without any problem the whole set of resources and we see the user i...

JuanAn by L1 Bithead
  • 1235 Views
  • 3 replies
  • 0 Likes

ntlm exited 4 times must be manually recovered

In our system log of the PAN5250 with PAN OS 8.0.15 i see the following critical message : ntlm exited 4 times must be manually recovered. Does anyone has the same issue or knows how to handle this. I can't find how to manually recover this and where...

ManuDC by L0 Member
  • 1160 Views
  • 1 replies
  • 1 Likes

*Urgent* Global Protect Crypto

I have one more query, If I change week encryption to strong encryption in tunnel traffics like Global Protect, IP sec tunnels, will it get affect the clients ??Of course We have to check the peer side before we change the encryption methods & algori...

IPSec tunnels - Active/Passive OR Active/Active

Hello Folks,I'm planning on getting two new Palo Alto firewalls for setting up IPSec tunnels. I think the first tunnel will be a primary tunnel and the second tunnel will be back up. I'm tempted to set up my new firewalls as active/passive HA, to mak...

Jedi_D by L2 Linker
  • 1904 Views
  • 3 replies
  • 0 Likes

Blacklisting Workstations?

Sorry if this is a dumb question, I'm still a bit new to PA. I've recently had a case where a few workstations cannot access anything beyond the local network. A trace shows that they can reach their default GW, but not the next hop, which is the PA....

Luke_R by L2 Linker
  • 1305 Views
  • 4 replies
  • 0 Likes