General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 435 Views
  • 0 replies
  • 2 Likes

Upgraded to GP client 5.2 Driver error

I installed GP client 5.2.1 for Win 64bit and received an error about a digitally signed driver... it reverted back to the previous version 5.1.1.. did I miss something. Download the MSI from the Support site.

 

BurnseyBoy_0-1598481781255.png

Resolved! SSL decryption enabled and Packet Descriptor

Did SSL decryption on PA 5220 running 8.1.9.

 

When i run below command 

 

show running resource-monitor hour last 3

Resource monitoring sampling data (per hour):

CPU load (%) during last 3 hours:
core 0 1 2 3 4 5 6 7
avg max avg max avg max avg max avg max

...

MP18 by Cyber Elite
  • 3927 Views
  • 4 replies
  • 0 Likes

*Urgent* TCP out of order.

Hi team,

 

My customer is facing the TCP out of order in pcaps while accessing SMB application. 

He implemented the Zone protection in LAN zone which has Asymmetric path set as global, I changed it to bypass...

 

Will this resolve the issue...?? why TCP o

...

Regarding URL Filtering

Hello Everyone,

 

I am little confused in creating URL filtering policy rule. Does allowing certain url category in the policy block everything else?

 

For example in a policy from inside to outside i created and allowed url category online storage and b

...

Reliability of "name-of-threatid" in threat log searches

When using the "name-of-threatid" to search threat logs I am getting very inconsistent results.

 

Some signatures are returning properly, while others return blank results - even when I build the search syntax dynamically by clicking on the alerts in t

...

apackard by L4 Transporter
  • 3170 Views
  • 1 replies
  • 0 Likes

wildfire submission issue

There are certain files which were sent to wildfire for multiple times and every time we have received verdict as malicious.
The same file (i have verified the file hash available in wildfire cloud) is submitting multiple times even after the verdict

...

11111.png

Resolved! PAN-OS BGP

Hi,

 

I'm familiar with BGP in general, but not so much on the Palo Alto platform.

 

I'm peering with a service provider, but I don't see a default route being advertised toward us. The default route in the routing table is learned from an OSPF neighbour

...

Luke_R by L2 Linker
  • 2463 Views
  • 2 replies
  • 0 Likes

Invalid portal error in GlobalProtect

have the GP 4.1 client installed on a computer with Windows 10 Enterprise v2004 64bit, which when wanting to connect to the company portal, marks me as invalid portal, everything related that I have found on the network has already been reviewed but

...

Need some guidance on the VM series implementation

Hi there,

I have inherited the current network and need some help in replacing the firewall for like to like. We have a MPLS network connecting all our offices and an external firewall managed by the ISP. Traffic from all sites go out via the external

...

Network.png
nitz-sw by L0 Member
  • 2851 Views
  • 4 replies
  • 0 Likes

ISP Failover With Controlled Failback

We have a pair of PA-3020 setup with HA and ISP Failover. PAN OS 9.1.3-h. I am not using PBF. I want to connect our VOIP phone switch to the firewall. Our VOIP phones connect to a cloud based PBX. I setup a new VR for VOIP with ports for ISP1, ISP2,

...

Authentication Policy Use Case

Here use case and wondering if this is feasible.

 

1. User Bob is already authenticated and connected(tunnel VPN) to firewall A with GlobalProtect with his account "Bob".

2. User Bob need to access critical ressource behind the same firewall A with, how

...

Admin roles and Detailed Log View (spyglass)

Hello Community!

I'm trying to create an admin role that gives a user access to the Monitoring functionality. 
But with full access to Monitoring only, they are not able to open the details for each log entry - Detailed Log View.

I've granted Privacy ac

...

  • 23698 Posts
  • 110 Subscriptions
Top Solution Authors
Labels