General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 223 Views
  • 0 replies
  • 0 Likes

packet loss

Hi,

when I am downloading file from internet , I can see lot of packet loss and congestion in wireshark capture analysis .

I want to make sure PA is the culprit 

How can I verify this  . 

I  have disabld QOS on PA

Thanks

 

 

 

simsim by L4 Transporter
  • 2135 Views
  • 2 replies
  • 0 Likes

Resolved! Default EDLs and manual exceptions

I'm working through a best practices assessment and one of the recommendations is to create security policies to deny traffic inbound or outbound to the two default external dynamic lists: 'Palo Alto Networks - Known malicious IP addresses' and  'Pal

...

Convert from Cisco to Palo

I downloaded the expedition to ubuntu. I am have everything running. When asked to Upload a Panos or Panorama configuration XML file. Export it from your device. What template can I use for this. I have a cisco ASA .txt file I would like to convert.

 

...

jimf69 by L1 Bithead
  • 2970 Views
  • 3 replies
  • 0 Likes

Questions about FIPS-CC Mode

Greetings all,

 

We've got a department on our network using a piece of higher-security software.  The software audit came back and indicated FIPS 140-2 encryption is required when the traffic is going across any network other than ours.

 

I've started l

...

jsalmans by L4 Transporter
  • 5160 Views
  • 5 replies
  • 0 Likes

File Type "Unknown Binaries"

We just need to know the wildfire file type which is allowed to dynamic analysis.

As I know the following URL described allowed file type for sandboxing but what happened with unknown Binaries ( unknown Extention ) when it classified as an unknown fil

...

global protect client certificate

Hello Team,

We have a global protect portal and gateways running . GP is currently integrated with AD. The certificate on GP is a wildcard signed by an external CA. Currently no certificate check is being made and authentication is purely on basis of

...

Resolved! Whatsapp voice calls are not working thru firewall

Hello Community,

I would like to see if anyone had any success with making Whatsapp calls and/or video to work using an internal wifi network.
When I try to make a call with my cell phone, I will see "ringing..." and hear the phone ringing.  The receiv

...

Globalprotect in A-A

Hi,  I have some question.

If I have configure Active-Active HA and two GP portals with PA-3260.

e.g. fw1's portal : 111.111.111.111

fw2's portal : 222.222.222.222

(limitation of SSL VPN concurrent user from PA3260: 2048 ssl-tunnels)

When fw1,2 are in ope

...

gksnl11 by L0 Member
  • 1689 Views
  • 1 replies
  • 0 Likes

GlobalProtect VPN Client Welcome Page

Hello,

 

We had the welcome page for GlobalProtect VPN Client enabled at one point. We recently disabled it but the welcome page still displays upon connect. Has anyone else run into this and found a way to permanently turn off the welcome page?

Upgraded to GP client 5.2 Driver error

I installed GP client 5.2.1 for Win 64bit and received an error about a digitally signed driver... it reverted back to the previous version 5.1.1.. did I miss something. Download the MSI from the Support site.

 

BurnseyBoy_0-1598481781255.png

Resolved! SSL decryption enabled and Packet Descriptor

Did SSL decryption on PA 5220 running 8.1.9.

 

When i run below command 

 

show running resource-monitor hour last 3

Resource monitoring sampling data (per hour):

CPU load (%) during last 3 hours:
core 0 1 2 3 4 5 6 7
avg max avg max avg max avg max avg max

...

MP18 by Cyber Elite
  • 3877 Views
  • 4 replies
  • 0 Likes
  • 23617 Posts
  • 107 Subscriptions
Labels