General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Recommended Software release

Hi PAN Community!

 

I'm just wondering if there's a dedicated page/link I can refer to if I want to confirm if a certain release is recommended or not. I don't want to raise a TAC case everytime. Thanks!

Rules check by logs with expedition

Hello,

 

For one of our client , using PA 850 in cluster,

 

They have 8 zones for voip , printer , camera etc

 

And all the security policies are wide open.

 

Now we want to restrict the policy by looking at logs from each zone towars other.

 

Can we export lo

...

Microsoft IP ranges and FQDN-s in outgoing rules

Hi all,

must be someone had similar thoughts too,

we have a customer who'd like to secure outgoing traffic, by specifying not only applications, but also restrict destination FQDN-s and/or IP ranges.

Issue with Microsoft is that their FQDN-s, and moreov

...

Goran_A by L0 Member
  • 2975 Views
  • 1 replies
  • 0 Likes

Palo DHCP Server

I have been having issues with DHCP server reservations on the panOS 10.x 

 

I make reservations and I have found some devices i made reservations for get other IP addresses at times and botches my policies. 

 

Anyone else have this issue?

Resolved! HIP profile for external Partners

Hello ;

We have to setup HIP profile check for  Corp users and external partners

 

Currently we have a common Loopback Interface having a Private IP and we have a tunnel interafce 

 

Both loopback and Tunnel are part of same zone called GP

 

This is same Cl

...

session disconnect during A-P failover

Hi,

 

Can anyone suggest, if we failover from Active to Passive unit on PA firewall. will this maintains the established sessions by default. 

 

Or we have to additionally enable some other setting to make this enable (should maintain session during clus

...

Jimmy20 by L2 Linker
  • 3078 Views
  • 2 replies
  • 0 Likes

LSVPN - Contingency

Hi guys,

    I have one snario that have some satellites connecting each with Global Protect Portal (Large Scale VPN) and I need implement contingency. I was trying to create other portal, other gateway , PBF in the satellites to control default route

...

Password protected internal site

Hi everyone,

 

I'm trying to migrate a rule of an ancient firewall (Microsoft ISA server) that was "publishing" an internal resource using regular HTTP - just a web page - but protected by an RSA SecurID login page. The ISA / RSA implementation was jus

...

Rievax by L2 Linker
  • 2646 Views
  • 4 replies
  • 0 Likes

Resolved! Only 0.0.0.0/32 Obtained from MindMeld Query

I have been using MeldMeld for several months in a lab environment with great success. Recently I setup a new server for our production firewalls but I have encountered a problem that I have not been able to solve.

I can query MindMeld using a regula

...

jnye by L1 Bithead
  • 9655 Views
  • 6 replies
  • 0 Likes

Resolved! Microsoft CERTSRV

Why does this have to be so difficult? 

 

I want to create a cert on the palo.  

Device > Certificate Management > Certificates > Generate

Highlight Generated Certificate > Export Certificate > Open with Notepad

Copy contents

Go to my Microsoft CERTSRV > R

...

Resolved! test security-policy-match command giving me odd output?

I was trying to work out which security policy applied to traffic through my Palo Alto from 10.77.22.10 (in the trust zone) to 10.99.0.1

Firstly, I wanted to confirm what zone 10.99.0.1 was in using this page : https://alwaysnetworks.co.uk/identifying

...

Resolved! Polling JSON Format for AKAMAI

I am trying to create a prototype for a Miner that pulls IP's from a JSON formatted file. I have looked at the documentation for setting up a JSON miner (https://live.paloaltonetworks.com/t5/MineMeld-Articles/Using-MineMeld-to-extract-indicators-from

...

  • 23661 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels