General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Threat Vector, a Unit 42 Podcast, is Now on LIVEcommunity!

We have some exciting community news to share: Threat Vector, a Unit 42 podcast, is now on LIVEcommunity!

 

Threat Vector is your compass in the world of cyberthreats. Listen to this biweekly podcast to learn about unique threat intelligence, cutting

...

jforsythe by Community Team Member
  • 305 Views
  • 0 replies
  • 0 Likes

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question. Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 3649 Views
  • 2 replies
  • 14 Likes

Resolved! security rule placement

Hi All,

 

I have an outbound web-browsing rule, rule criteria is source zone (trust) destination zone (untrust) , application (web-browsing, ssl), service (tcp-80, tcp-443)

 

If you are going to create more application specific rules, does it makes more

...

ce1028 by L4 Transporter
  • 6697 Views
  • 6 replies
  • 0 Likes

Zabbix Monitoring PA-7050 via SNMP v3

Hello.

I have a couple of PA-7050 firewalls that I monitor from Solarwinds Orion via snmp v3.  However, when  I try to monitor those same devices via Zabbix (SNMP v3), I am unable to get an SNMP response via the Zabbix application.  SNMPwalk works fin

...

torr06 by L1 Bithead
  • 4430 Views
  • 3 replies
  • 0 Likes

Resolved! DNS Proxy/Security

I was curious to know if anyone was pointing their domain controllers to the firewall for DNS security/proxy?  Mine currently use the ISP, but the clients use the firewalls as a proxy and then just rule just forward internal domains to the DC.  Seems

...

bschaper by L2 Linker
  • 4543 Views
  • 5 replies
  • 0 Likes

Resolved! Wildfire without SSL Decryption

We are looking at Wildfire for our PA firewalls however, we are not doing any SSL decryption. Going into it I figured we only be and to use it on unencrypted traffic. But looking at the Wildfire datasheet under file support it lists TLS and SSL files

...

bafergel_1-1627663836266.png
bafergel by L2 Linker
  • 2144 Views
  • 1 replies
  • 0 Likes

Resolved! Regarding sinkholed hosts

Hello Bros,

    We have subscribed to palo alto dns-security and the license has been applied to the device.

Rules with anti-spyware "dns-security sinkhole action enabled".

Now regarding the hosts with sinkhole action, that means these hosts trying to c

...

Issue CDN and AVG Update

Hallo Community,

 

I have an issue about AVG and CDN. I used PA 220 with Detials :

Software Version10.0.6Application Version8435-6846 (07/27/21)Threat Version8435-6846 (07/27/21)Antivirus Version3791-4302 (07/28/21)NetworkLayer 3

 

 

1. AVG Update

Regarding

...

Verify pdf report sent via email scheduler

We have configured email scheduler to send reports in pdf format.

I'm able to receive the email. But attachment is missing.

I can see from system logs that the files are created and email is sent.

How can I verify whether the PDF report was attached to

...

Paloalto don t send log correctly to logstash

Hi evrey one,
I'am new to Paloalto and I have a problem with the threath log. I am currently using ELK stack to store and visualize all log from paloalto. 
When I send the traffic log to logstash there is no problem (there are all field explained in th

...

Betorov by L0 Member
  • 1874 Views
  • 1 replies
  • 0 Likes

Global protect not working

Hi Team,

 

We have faced our GP not working 26/07/2021 around 09:15 pm.

 

After the firewall restarts its started to work. When I analyzing TSF I got the ssl vpn below error.

 

"The PID for this process changed indicating it was restarted"

 

2021-07-26 21:17

...

VishnuPS by L3 Networker
  • 2128 Views
  • 3 replies
  • 0 Likes

New 5220 non-functional state

New HA 5220 active-active and non-functional status.

HA-1 and HA-2 cable attached

Set up box boxes direct mode and then created templates via Panorama

Panorama doesn't display to parameters defined in direct config status

How to ensure configs are dumped

...

  • 24185 Posts
  • 100 Subscriptions
Top Liked Authors
Labels