General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

URL Feed from Minemeld

I am having difficulty getting an output feed setup for URL block list processing.  I have an input feed that is set up as a CIFv3 miner and it's showing over 49,997 indicators that are processed and it appears to be working fine.  I have a process u

...

datuttle by L1 Bithead
  • 1778 Views
  • 0 replies
  • 0 Likes

Resolved! APP-ID Doubt

hello community,

 

I have a question that I have not been able to solve with the study material and it keeps breaking my head.

Here it goes, when I generate an application-based security policy, for example from "trust" 10.xxx to "untrust" any
with app a

...

ServiceRoute

I have configured trust and untrust zone with respect to their interface.

 

I create policy of any any...my firewall internet only work when i configure service route and destination as outgoing interface,if i set it as default and select use managemen

...

Swetang by L1 Bithead
  • 1835 Views
  • 1 replies
  • 0 Likes

Veteran Exam Voucher

Hi, I'm in the process of working on my Palo certification and  saw that I could request an exam voucher on https://live.paloaltonetworks.com/t5/second-watch-articles/step-10-request-exam-voucher/ta-p/304454 but I have received no response from the f

...

swtucker by L1 Bithead
  • 4946 Views
  • 5 replies
  • 0 Likes

Resolved! gp logs sync with the passive but with time difference!

Hello,

 

Logs should only be placed in the active node, however i am keep monitoring the globalprotect logs for 3 days and i am sure that the active node does not change, however the logs is still appears on both nodes each with different time.

 

Did som

...

Resolved! [API]PYTHON PANDEVICE - SET SECURITY PROFILE

Hi all,

 

I'm using PaloAlto's API for the first time.

My idea is the following:

 

 - for each rule, I would like to apply a security profile based on the service setted.

 

Reading some docs online i wrote this pseudocode.

 

 

HOSTNAME = '192.168.55.10' API_KE...

Chango by L1 Bithead
  • 8673 Views
  • 7 replies
  • 1 Likes

Publish Custom ACC Tabs

I created a custom ACC tab with some filtered widgets and need to share it with some other users to monitor the network over the weekend.  The users are not proficient with panorama, I basically want them to watch the tab I have created and call if X

...

MineMeld Output Feed Hard Limit (999,999)

I have multiple miners which collect over a million indicators; however for the output feed I always displays indicator number as 999,999 which is then causing an overflow of domains.

 

Is it possible to increase or remove this limit for the output fee

...

PaloAlto Logs Issues

Having issues regarding the log.

cannot see any logs on the Palo alto firewall.

The changes: - we downgraded from Panos 10 to Panos 9.1.x since then we cannot see any logs.

Resolved! Changing Master Device - Panorama

We have recently gone through a firewall hardware upgrade, and the device that was replaced was our old "Master" device in Panorama. I would like to make the new device our "Master" device, but I am intimidated by the call-out "When you change the Ma

...

Getting Systems Alerts

Hello,

I am getting system alerts in my firewall below is the error:-

 

Disabled applications in vsys1: cip-ethernet-ip-disable-io cip-ethernet-ip-disable-sfc cip-ethernet-ip-enable-io cip-ethernet-ip-enable-sfc cip-ethernet-ip-read-mod-write cip-ethern

...

Resolved! Log Collector not receiving logs.

Hi All,

 

We have deployed 2xM200 Log collectors for log collection. They are registered on the panorama and show in-sync. I have done the collector-group settings. Now when I go to Panorama > Managed collector > the log collectors show disconnected st

...

VarunRao_1-1595814847860.png
VarunRao_0-1595814717239.png
VarunRao by L2 Linker
  • 20737 Views
  • 9 replies
  • 0 Likes

Betternet VPN Lemon VPN blocking

Anyone know how to block these 2 apps?

 

Betternet VPN

https://www.betternet.co/

 

Lemon VPN

https://play.google.com/store/apps/details?id=org.lemonvpn.android&hl=en_US

 

We have a BYOD at our K-12 education schools, and students are bringing their own devic

...

dannon by L3 Networker
  • 6603 Views
  • 6 replies
  • 0 Likes

How to check VPN counters for a specifc dest IP?

how to check IPSEC VPN counters in CLI for a specific destination IP address?

Peer is claiming the traffic is leaving their firewall but I don't see it on my pcaps and logs. How do I verify the traffic is actually passing through the VPN and hitting t

...

  • 24002 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels