General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! PAN-OS GP SSL Cipher Selection

PAN-OS 8.1 seems to lack the capability to perform fine-grained configuration of cipher suite selection and prioritization for GlobalProtect VPN functions.

 

I ran a fairly detailed SSL functionality assessment on a configured TLS v1.2-only GP gateway

...

Resolved! MS Autodiscover Flaw - Vulnerability

Hi All,

A design issue in the Microsoft Exchange Autodiscover feature can cause Outlook and other third-party Exchange client applications to leak plaintext Windows domain credentials to external servers

Domains that we need to block are listed here:

...

Qui by L2 Linker
  • 3467 Views
  • 4 replies
  • 0 Likes

Resolved! Template Variable IPv6

Hi All,

Does anyone know how to configure an IPv6 address as a template variable? As soon as I put a : in the CSV it throws a fit when importing it.

Thanks,

Kev

KevinJB by L1 Bithead
  • 2327 Views
  • 2 replies
  • 0 Likes

Resolved! Where to Write Security Policies with a Site-to-Site VPN

Hello,

We have a pair of 3200s on our main site, and have added an 820 at a remote site to bring up an IPSec tunnel between the two.

When I initially set the remote site up, I decided to have all the security policies controlling what access the remote

...

Does NAT64 works for inbound NAT

Currently we have configured inbound NAT for DMZ application which is on ipv4. Public ip used for it is  ipv4.

Due to some requirement client from outside network will be coming from ipv6 public ip to access the application. In this case our nat is no

...

Deepak25 by L3 Networker
  • 3547 Views
  • 3 replies
  • 0 Likes

Is my firewall hacked already ?

I have a PA3020 with 7.0.5-h2 PAN-os version.  I noticed that it have a lot of DNS traffic sent to strange IP address. 

when I running 

show system resources command. 

I found  strange process nginx and two syslog-ng there.  Is it normal, how to get rid

...

banny6 by L1 Bithead
  • 3318 Views
  • 5 replies
  • 0 Likes

Something aking to | sort | uniq -c | sort -nr

Like the title says, is there a way to run a filter for a period of time, pull out a list of IPs, sort them, remove the duplicates with a count, and sort them by most popular?

This is a common omegle thing to do with syslog data, say you have a very p

...

Jack45 by L1 Bithead
  • 1726 Views
  • 1 replies
  • 0 Likes
  • 23709 Posts
  • 103 Subscriptions
Top Solution Authors
Top Liked Authors
Labels