General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

SSL Certificates from enterprise CA

I will admit, certificates are one of my bigest hates.. I just can't get on with them

 

Firstly we have a microsoft EnterPrise CA. Which I am not overly familiar with anyway ( But I have managed to get the web interface workig on it...)

 

Idealy what I w

...

RMA'd Panorama m-100, how to migrate?

We had to RMA our m-100 Panorama and now I want to replace the failing one with the new one but for the life of me can't seem to figure out the steps to do that.  The link from this page: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id

...

drewdown by L4 Transporter
  • 2104 Views
  • 2 replies
  • 0 Likes

Refresh EDL from webserver

Hello community,

 

We are using EDL for manually blacklist and whitelist some domains. We configured all our firewalls to refresh the EDLs every 5 minutes, but EDLs don't refresh until a couple hours. The solution that we found is use the "import now"

...

Resolved! Any way to export pan_packet_diag.log?

Hi,

 

When generating a flow basic log - is there any way to export just the pan_packet_diag.log using scp? According to https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClpFCAS the file wiil be included when exporting a TSF, b

...

Resolved! Using regex in defining a group address object

I'm defining a new group address object which should include addresses of several different tags (e.g. "Tag_1", "Tag_2", etc.).

When trying to define the match field I cannot find a way to actually do that. I'm not sure it's even supported. Whatever p

...

Resolved! Commit process

From Panorama during commit process , just typing "commit" and press enter will do commit to all device group/template ?

deepak12 by L3 Networker
  • 2881 Views
  • 2 replies
  • 0 Likes

PA220 so slow rebooting

Hi, 

 

We have a PA200 which takes a long time to reboot. its like 13 minutes. Is that normal for PA220 ?? any way to know why its taking this time?

BigPalo by L4 Transporter
  • 11849 Views
  • 5 replies
  • 2 Likes

Palo Alto Vulnerability Points (Urgent Action Required)

Hi Team,

 

Can anyone provide your valuable suggestion here please.

Below are the VAPT points shared by customer and solution provided :

 

PA Vulnerability points (For reference please find attached pdf) :
1) ssl/tls protocol initialization vector implemen

...

Resolved! How to Block browser extensions

Hello,

 

Does anybody know if it is possible to block specific browser extensions from being downloaded?

I would like to block the searchencrypt browser extension.

 

Thanks

 

Any way to get this scenario configured?

I have GP Gateway license on my PA-5020 firewalls. I would like to allow 200 corporate owned samsung phones to access the VPN and block all other mobile phones. what are all the options I have to selectively allow them other than having a certificate

...

Explicit and Implicit Allowed / Denied Apps?

I am trying to understand the relationship between apps and how rules for specific apps affect the access of other apps.

 

I was reading this article: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClirCAC

 

In there, it uses t

...

777GE09 by L0 Member
  • 2903 Views
  • 2 replies
  • 0 Likes

Logging to Panorama VM

To cut a long story short.....

 

we lost Panorama VM. (ESX)

i removed firewall (3020) from Panorama management and selected "disable Panorama Policy and Objets" in Device\Setup\Panorama settings.

imported policy and objects before disabling.

 

built new VM

...

panlog1.png
panissue2.png
MickBall by L7 Applicator
  • 1798 Views
  • 2 replies
  • 0 Likes
Top Liked Authors