General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

HTTP Header Insertion

I have a rule with a URL filtering profile with HTTP Header Insertion and a Restrict-Access-To-Tenants list that has used up all the characters (512). I have tried to add another Restrict-Access-To-Tenants list but it won't accept it. I have also tri

...

PAN Security Advisory (11-AUG-2021)

Thought I would just put this notice out since I know a lot of people don't actually subscribe to security advisories directly. If you haven't already, I highly recommend that you sign up for notifications via https://security.paloaltonetworks.com/ a

...

BPry by Cyber Elite
  • 2878 Views
  • 3 replies
  • 1 Likes

User id not fetching for same ip in traffic logs.

User id not fetching  in traffic logs.we created user base rule on that basis mapped ip address shows user id for same rule .but some time user is not authenticated from that user base policy rule and it is moving from next any any rule. if it is mov

...

SurajN by L2 Linker
  • 1538 Views
  • 1 replies
  • 0 Likes

Resolved! DNS external Global Protect

Good afternoon:

I hope you can help me with this, thank you very much in advance.

I have Global Protect configured as follows:

GP: IP pool 172.16.11.0/24
Split-tunnel Include: 192.100.11.0/24 ( Corporate LAN )
DNS assigned Global Protect: 8.8.8.8.8 and 4.

...

Metgatz by L4 Transporter
  • 4838 Views
  • 5 replies
  • 0 Likes

Multiple domains on PA

Hello ,

 

We have integrated already the AD ( 3 Servers for redundancy)

The User id we are using is the default one which is on the PA FW

 

The domain is  abc.nl  . The setup is working .

 

Now we are building an entirely new domain called abc.es .   migrat

...

Possible to disable SSH CBC cipher and weak MAC hashing?

Hi,

 

May I check if it is possible to disable SSH CBC cipher and weak MAC hashing on Palo Alto Firewall?

If so, may I know how to do it.

 

Had no luck searching for a solution online.

Seems like there is no menu/config file (e.g. /etc/ssh/ssh_config) to e

...

boss82 by L0 Member
  • 13788 Views
  • 3 replies
  • 0 Likes

Move interface to different vsys

Interface ethernet1/1 is currently in vsys1. When I try to change this to vsys2 from Panorama I get the message that the interface is already in use (by vsys1).

 

If I try to remove it from vsys1 in Panorama push is OK, bit it is still in vsys1 on the

...

hncl01 by L0 Member
  • 1409 Views
  • 0 replies
  • 0 Likes

/dev/shm filling up after 10.0.6 firmware

TMPFS partition /dev/shm on the VM series PAN.

 

Typically this is cleared on reboot but after upgrading to 10.0.6 its failed to clear the space on system reboot.

 

We have looked at the other drives on the PAN are there seems to be no capacity issues ot

...

  • 23708 Posts
  • 103 Subscriptions
Top Solution Authors
Top Liked Authors
Labels