General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Conditional Default route advertisement

All - I have 2 systems at two different locations connecting to the same BGP AS and I am accepting an advertised default route.

 

On the LAN side, I have a basic OSPF area0 which has a fiber-optic connection between the two locations configured as a P2

...

BGP.png

Performance Degradation for SSL Decryption

Hello,

 

The issues we are experiencing are with SSL decrypt. When this setting is enabled we are experiencing significantly degraded internet performance.

We understand that this would have an overhead but the current overhead makes it almost unusable.

...

Farzana by L4 Transporter
  • 20033 Views
  • 14 replies
  • 0 Likes

Dataplane spiking to 100% at the same time each morning

Yesterday at 8:37am and today my noticed the dateplane hit 100% for about 15 seconds(an eternity in network time) and dropped back to normal. 

Today I ran show running resource-monitoring that basically just show me it hit 100% yesterday and today but

...

jdprovine by L4 Transporter
  • 2155 Views
  • 3 replies
  • 0 Likes

SSL Decryption with iOS 13 Devices

We began testing of the iOS 13 beta last week on several test devices that are connected to our internal mobile device network.  This network passes traffic through the Palo with SSL decryption.  We are finding that iOS 13, even with our cert install

...

davisjj by L0 Member
  • 16990 Views
  • 23 replies
  • 1 Likes

auto-tagging registration on remote user-id agent

Hello colleagues,

 

did someone manage to use dynamic tag registration on the remote user-id agent? I cannot find any explanation in documentation or community discussions. It is written in the manual that need to create a http profile

https://docs.palo

...

ppk_vs by L1 Bithead
  • 2059 Views
  • 2 replies
  • 0 Likes

Advanced URL Filtering with PAN OS 8.1

Hello,

 

I recently noticed that URL Filtering licenses have been replaced by Advanced URL Filtering licenses.

The version of the box is PAN-OS 8.1.

My question is: Is it possible to use these new licenses with version 8.1, or do I need to upgrade to PAN

...

ColinSFR by L0 Member
  • 3646 Views
  • 6 replies
  • 2 Likes

Password History

I am wondering if there is a way to clear password history. Due to audit requirements we need to have "Minimum Password Complexity" requirements including changing on first login and preventing Password Reuse.

 

I am having issues keeping an account sy

...

Will this configuration work?

I will configure 14 VLANs in total. I will connect all Firewall Interface to one of the L2 Switch and I will cascade the other L2 Switches with that L2 Switch. In this case, do we need Trunk? Please check if any problem with such configuration.

There

...

FW-L2 Switch.png
Satyam by L1 Bithead
  • 1584 Views
  • 2 replies
  • 0 Likes

Resolved! PAN-OS Upgrade from 9.1.x to 10.1.x Question

I would like to make sure my understanding of the upgrade path is correct before I do the upgrade.

 

* Current installed PAN-OS version 9.1.10 - Standalone no Panorama

* Below is a screenshot from the upgrade guide ( https://docs.paloaltonetworks.com/co

...

asiewert_0-1643907174448.png
asiewert by L1 Bithead
  • 7894 Views
  • 2 replies
  • 0 Likes

VPN Tunnel IPSEC L2L VPN NAT not acting as intended

I am Labbing up a configuration I am about to go live with in production but it is not acting as it should when trying to apply a NAT rule to a tunnel interface. When I apply individual rules to the vpn traffic as I would like it to act I am not gett

...

alliman by L0 Member
  • 1555 Views
  • 1 replies
  • 0 Likes
  • 24005 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels