General Topics
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics

Discussions

Thank You for Filling Out the LIVEcommunity Experience Survey!

If you've visited LIVEcommunity anytime recently, you've probably seen a pop-up asking for your feedback. We've deployed this survey since April 2020 for new and returning visitors alike as a way to gather feedback from our users. 

 

In the past six

...

survey-livecommunity.png
jforsythe by Community Team Member
  • 563 Views
  • 1 replies
  • 4 Likes

Need help with scripting to palo alto using ssh

Hi all!

I'm trying to creating a script for a customer i Windows Batch (*.bat) that needs to login to a Palo Alto Firewall, run a few commands and then login to another firewall and so on. 

 

This is a strict environment so no internet connection is ava

...

t.120 and Twitter-base

Hello all,

 

Looking for more information on these two applications if anyone can assist. We're deploying firewalls as an MSSP and some of the traffic we're seeing hit application-based policies doesn't seem to make sense. Some of the examples we've se

...

MathewRD by L0 Member
  • 1267 Views
  • 2 replies
  • 0 Likes

Securing Access to Azure AD

I need to secure access to Azure AD. The IP address range is available in the following JSON

https://www.microsoft.com/en-us/download/details.aspx?id=56519

 

How do I go about turning this into an EDL? The JSON file that Microsoft provides contains m

...

dpurton by L0 Member
  • 820 Views
  • 0 replies
  • 0 Likes

upgrade of PA-500

when in process of upgrading OS for pa-500 active/passive pair, on the passive devic i upgraded from 7.115 -- 8.0.0(download)-->8.0.20(install) -->8.1.0(download) -->8.1.12(install) 

now passive device is 2 major os version ahed , looking for ideas ho

...

Ritika by L0 Member
  • 897 Views
  • 2 replies
  • 0 Likes

Resolved! Connect to Two Palo Alto VPNs

I have an employee who travels often with a need to simultaneously connect to two Global Protect VPNs, neither of which are clientless VPNs.

The first connection is to the main office.

The second connection is to another company, which has whitelisted

...

SSL VPN REDUNDANCY

Hello everyone,

 

I want to make redundancy ssl vpn for two ISP.I have two ISP.I will use DNS failover.And write nat rule for two publıc to loopback interface.(I use loopback interface for globalprotect).I write symmetric return for two external interf

...

Resolved! HA Active/Active Mode with Multi VSYS

Hi All,

 

Is it possible to use a Multi-VSYS Palo Alto to have the active-primary on one Palo Alto and a second VSYS Active-Primary on the second Palo Alto in Active-Active HA mode. I've done this on Cisco Active-Active firewalls but I need to do this

...

a.jones by L3 Networker
  • 7897 Views
  • 18 replies
  • 0 Likes

Palo Alto URL Filtering Test Pages unreachable via HTTP

Anyone else notice that the Palo Alto URL filtering test pages (example: http://urlfiltering.paloaltonetworks.com/test-command-and-control) are no longer reachable using http?

 

This article describes the pages and why you would want to use them to val

...

PeteS by L1 Bithead
  • 1634 Views
  • 3 replies
  • 0 Likes

Resolved! BGP Communities in Palo Alto Firewall

Hi,

 

It's possible to use well-known communities in Palo Alto like in Cisco Router? I mean, community no-export, no-advertise, local-as or Internet.

 

We need to propagate some routes to a peer but indicate to that peer that don't propagate outside the

...

nanukanu by L2 Linker
  • 6780 Views
  • 6 replies
  • 0 Likes

Want to allow SFTP only and not SSH Traffic

Hi Team,

 

I am trying to achieve my requirement however, unable to achieve it. Please review my requirement below and suggest your thoughts if there are any possible way to accomplish.

 

I want to block SSH traffic and at the same time i need to allow S

...

SahulH by L3 Networker
  • 5832 Views
  • 5 replies
  • 0 Likes
Top Solution Authors
Top Liked Authors