General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Default security rules, hit count and Apps Seen

Hi, I'm noticing a weird behaviour with default security rules "intrazone-default" and "interzone-default":

 

  • For "intrazone-default" I can see how many apps have been seen by the rule, but if I click on the "Apps Seen" link nothing happens;
  • For both "i
...

emyl_79 by L2 Linker
  • 1934 Views
  • 1 replies
  • 0 Likes

DNS Query Enchancement

Running PANOS-10.0.9. In GP Network>GlobalProtect>Portals

Under App -Resolve All FQDNs using DNS servers assigned to by the tunnel(Windows Only) is Yes by default.

I cant see these dns logs in Traffic logs?

 

 

isingh by L0 Member
  • 1453 Views
  • 1 replies
  • 0 Likes

Global Protect monitor

Good afternoon,

 

I'm trying to understand the behavior of the global protect client as it pertains to session expirations.  I'm getting a message "remove previous user" message.  I'm trying to determine what that means as I'm used to seeing the "user

...

danoman2 by L3 Networker
  • 1481 Views
  • 2 replies
  • 0 Likes

SSL decryption issue with PIP

I have added the URL to the exception list with no luck. Any suggestions?

 

C:\Users\Steven Williams\AppData\Local\Programs\Python\Python38>pip install Flask-SQLAlchemy
WARNING: Retrying (Retry(total=4, connect=None, read=None, redirect=None, status=Non

...

webserver service stopping

webserver service in palo alto stopping after certificate renewal and trying to access GUI. CLI is working. Tried restarting webserver service and management plane. But its stopping as soon as we try to access GUI and unable to access

Resolved! Palo Alto firewalls alerts

Hello,

 

Recently we have started working on enabling email alerts for our Palo Alto firewalls. One of the alert is for interface and HA status change alerts. Could you please let me know what can I do to enable same? Do I need any external tool for it

...

Resolved! Vulnerability protection profile change symptoms

Dear Team,

 

When the firewall checks the policy, the Vulnerability protection profile is displayed as an Exclamation mark.

 

The OS is using 10.0.4.

 

I searched all bug-ids from 10.0 to 10.2, but couldn't find anything matching the symptom.

 

If y

...

CHOEKyungJun_0-1649222204704.png

Tenable Scan on Palo Alto firewall / Panorama

Hi All,

 

Are Tenable vulnerability scans (see below) on Palo Alto firewalls / Panorama resource intensive for the PA devices? Does this cause high DP or MP issues?

 

https://community.tenable.com/s/article/How-to-perform-a-compliance-scan-on-a-Palo-

...

Ben-Price by L4 Transporter
  • 3757 Views
  • 6 replies
  • 0 Likes

Resolved! http/2 connection session id

Dear Team,

 

I have a question while checking the traffic log.

 

In general, we know that each id is created when the session is created.

 

However, the http/2 connection session id is identified as the same id.

 

I know that when the session id is input acc

...

traffic.jpg
  • 24195 Posts
  • 100 Subscriptions
Labels