General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 777 Views
  • 0 replies
  • 0 Likes

Dynamic Domain List Empty

Created Dynamic Domain list, added single domain x.y.com > added list to antispyware profile > profile is used in policies but still the list shows empty. Also tries y.com still it is empty. Source URL is accessible an there are other IP lists in sam

...

raji_toor_0-1592762122984.png
raji_toor by L4 Transporter
  • 3912 Views
  • 6 replies
  • 0 Likes

Resolved! Layer 3 routing on PA

Guys, facing a small issue hope can resolve together

I have created a new network on PA as Layer-3(503) and am trying to communicate with my other existing layer-3 network (501):

Steps configured are as follows :

1) created Layer-3 ae4.503 with IP X.53.

...

Resolved! Split tunneling for zoom app

Hi,

 

We dont have configured split tunneling for GP. We have 0.0.0.0/0. We would like to do split tunneling only for zoom-base.

We tried to configure in GP gateway excluding the zoom ips but its still the zoom traffic reaching the PA, because IPs can c

...

BigPalo by L4 Transporter
  • 5807 Views
  • 4 replies
  • 0 Likes

Resolved! SSL inbound decryption and Post message in PA PCAPS

We have configured the SSL inbound decryption.

When we do the PCAPS on the PA we do not see POST message on the re and tx pcaps.

 

Need to know is this default behaviour?

On traffic logs we see decryption flag as checked.

Also from CLI i verify that PA is

...

MP18 by Cyber Elite
  • 3366 Views
  • 4 replies
  • 0 Likes

Resolved! Panorama suggested version

Hi Team,

 

we have firewall running version 9.0.6,9.0.4 and 9.0.7, well in this case what could be the suggested version of panorama?

i have heard , panorama should run with same or later version firewall OS, Is it talking about the major version like 7

...

Resolved! All the traps agents are disconnected

Hi Community,

 

All the agents in my traps setup on ver 4.2.5 shown as disconnected. As the issue looks like ESM server related, i have followed the document https://docs.paloaltonetworks.com/traps/4-2/traps-endpoint-security-manager-admin/troubleshoot

...

Panorama M-500 disk upgrade & add process

Hello,

 

I'm planning to upgrade storage capacity M-500.

It's using 12 slots with 1TB disks, I'm going to insert 2TB disks to empty slots and replace 1TB to 2TB.

 

As I know, after add new disks, panorama will redistribute existing logs.

While that process

...

yhlee1 by L2 Linker
  • 3100 Views
  • 2 replies
  • 0 Likes

Source and Destination NAT using 2 different NAT rules

Hello everybody,

 

We are trying to replace our Lan-to-Lan concentrator (currently a Cisco ASA) with a PAN-5220 version 8.1.

 

On the Cisco ASA firewall, we are currently doing source and destination NAT for each incoming connection.

 

We change the  sourc

...

CSavoy by L1 Bithead
  • 4623 Views
  • 1 replies
  • 0 Likes

Output detailed HIP logs to syslog

Does anybody know how to output the detailed HIP match logs to syslog?

As it stands, we've got to go to Monitor > HIP Match > Magnifying Glass Icon to see them.

We'd like to send this rich data set to Splunk or another tool to write reports against. 

 

 

scresnshot.png
tmhorne by L1 Bithead
  • 6243 Views
  • 5 replies
  • 1 Likes
  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels