General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! export "application seen" to csv/pdf ?

Hi folks,

following situation: one of my customers has a rule that allows any traffic from trust to untrust.

the rule detects over 400 application with more than 2 terrabytes of data in the last 30 days.

is the any kind of way to export the "seen apps"

...

Custom Response Page

Hi All,

 

Hoping someone can help. I need a custom response page for URL Filtering. I know I need to use Javascript but that is not my forte so hoping can provide the inform for me. I need to produce two distinct page responses depending on the IP addr

...

a.jones by L3 Networker
  • 5651 Views
  • 8 replies
  • 0 Likes

Nest Thermostat

Anyone running a Nest Thermostat behind a Palo Alto Networks firewall?  I am seeing an inability to connect to the nest site.  Logs show  a repating SSL on 443 with session end reason:  tcp-rst-from-client

 

Any thoughts would be appreciated.

 

Bob

BobW by L1 Bithead
  • 6936 Views
  • 9 replies
  • 0 Likes

HIP Profile serial number filter issue

I have upgrade my firewall from 9.0.9 h1 to 9.1.4 when i generate the report for the HIP profile or use the filter base on serial number iam facing this issue please suggest i there any bug in 9.1.4 

Even clicking on serial number in HIP Match logs to

...

Joshan_Lakhani_1-1597998626771.jpeg
Joshan_Lakhani_0-1597998604250.jpeg

RADIUS with CHAP not working

RADIUS with CHAP protocol for authentication will not work even though LDAP does from the same two Microsoft 2012 servers. I have utilized the CLI "test authentication" to confirm the findings, here are facts;

 

  • Palo Alto  running 8.1.13 
  • Microsoft 2012
...

rockfort by L1 Bithead
  • 1489 Views
  • 0 replies
  • 0 Likes

EDL IP List GUI not display

 

Currently setting EDL
EDL IP information can be captured on CLI
But it cannot be confirmed in the GUI

Tried PANOS  version 8.1.5 and 9.0.0 

 

Try some edl can
Some can not be displayed

not display
https://report.cs.rutgers.edu/DROP/attackers

can
http://rules.

...

Houran_0-1597934331356.png
Houran_1-1597934412758.png
Houran by L0 Member
  • 1713 Views
  • 1 replies
  • 0 Likes

Palo Alto aws Deployment

Hello guys

 

I'm honestly a noob. I just set up a palo alto vm series bundle 2 on my aws with 3 interfacer.

eth 0/0 for management

eth 1/1 for the public subnet

eth 1/2 for the private subnet

I've been trying to set up a wordpress server on the private sub

...

Resolved! User-ID agent

Hello,

 

I have had the user-id agent setup previously but now either after upgrading to panos 10 or enabling mutli-vsys my option for the agent is now missing from my user identification menu.  Does enabling mulit-vsys break this or maybe the version

...

jmarberg_0-1597926095642.png
jmarberg by L0 Member
  • 2518 Views
  • 2 replies
  • 0 Likes

Resolved! Repurposing log collector

I have a M-500 with two disk pairs in dedicated logger mode that I want to turn into a dedicated manager. I know how to actually change the mode, but can I remove both disk pairs and use them in another logger? I assume the M-500 has internal storage

...

ikev2 with cisco Router using certificate problem

 

after I finished the ikev2 configuration(using Distinguished Name (Subject) from PAN and Cisco Router using identity local dn ), I got this isse:

 

received ID_I (type dn [CN=externalrouter.robinlab.org,unstructuredName=externalrouter.robinlab.org]) d

...

Luping by L0 Member
  • 2041 Views
  • 2 replies
  • 0 Likes
  • 24130 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels