General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 255 Views
  • 0 replies
  • 1 Likes

Using minemeld to whitelist Oracle Cloud IP ranges?

I currently use minemeld to whitelist the list of O365 IP ranges etc, but I have not been able to find a miner for the Oracle Cloud.

 

Oracle publishes a JSON file with the relevant IPs (https://docs.oracle.com/en-us/iaas/tools/public_ip_ranges.json)

...

Resolved! SSL Decryption for IoT devices

I am rolling out SSL Decryption for the wired subnets at my office. It's working great for the users since their laptops and devices are on the domain and trust our private CA which is used as the forward-trust cert. I'm running into issues with othe

...

Custom URL Issue

Hi all,

 

I had an issue where a client created a Custom URL category with multiple of URLs and added it in a Security Rule, all of the URLs specified in that custom category is matching except one URL with wild card such as *.sometechnologies.com.

 

I'm

...

Resolved! Application Override Question

Hi All,

 

I got this question from the learning center for the PCNSE practice exam. Dont know if its allowed to post the screenshot here.

 

 

From my understanding of using the application override, the firewall stops any further content inspection. It wa

...

app-override.PNG

Resolved! VPN Issue on interface subnet change

Hi All,

 

Help here will be appreciated.

I am migrating a pair of PA-5220's to Active-Passive as they are currently Active-Active. First job in the task is to change the interfaces from /30 to /29 subnets. This is to ensure that both firewalls sit withi

...

a.jones by L3 Networker
  • 2468 Views
  • 2 replies
  • 0 Likes

Resolved! Allow a more specific path of a Blocked URL

Hi All,

 

I'm trying to determine if this is possible.

 

We are blocking abc.company.com via an entry in a custom url category which is applied to the internet policy via a URL filtering profile.

 

I need to allow abc.company.com/specificpath while still b

...

epeeler by L2 Linker
  • 4819 Views
  • 3 replies
  • 0 Likes

Pan_task always at 100 % is it due to MP or DP?

we have PA 220 running 9.0.4

 

show system resources  shows

 

show system resources

top - 09:53:13 up 2 days, 12:46, 1 user, load average: 2.11, 2.28, 2.35
Tasks: 139 total, 5 running, 134 sleeping, 0 stopped, 0 zombie
%Cpu(s): 59.4 us, 10.4 sy, 1.4 ni, 28.

...

MP18 by Cyber Elite
  • 10138 Views
  • 7 replies
  • 0 Likes

Resolved! Configure DHCP reservation on Global Protect user

Hello Community,

 

Is there a way on the PALO ALTO that we can do DHCP reservation while using the Global protect client VPN.

As of now we don't have any DHCP relay on the PALO ALTO. The PALO ALTO is the one providing IP address for the global protect u

...

Resolved! Whitelist Java Traffic

Good morning,

I am relatively new to the PA's, but was wondering if there was a way to have a list of URL's & domains to whitelist Java traffic & block everything else?  And if so, can I then write any kind of regex to match specific java versions, sa

...

Site to site vpn issue

Dear Team,

I have one site 2 site VPN tunnel b/w Paloalto and cisco. some time i can see the tunnel is going automatic down and after some time it will come automatically. 

I have checked ikemgr and system logs but i am not able to find exact issue why

...

Resolved! Multiple Virtual Wires - PA Firewall - TP (IPS)

Hi,

 

I hope it works but looking for confirmation.

 

In PAN-OS with PA-5450, can we have multiple virtual wires configured e.g. 3 pair of interfaces configured as 3 virtual wires.

 

Use case is PA NGFW deployment as inline IPS protecting 3 separate segmen

...

  • 23627 Posts
  • 107 Subscriptions
Top Liked Authors
Labels