General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 598 Views
  • 0 replies
  • 0 Likes

Resolved! Shared Gateway cannot able to mange from Panoroma GUI

Hello Community,

I have Panorama M-500 that managed cluster of PA-5000 with some Virtual System, I use one Device Group for one VSYS.

Now I need to configure the Shared Gateway.

It seems that I can manage the NAT Policy related to the Shared Group only

...

Unable to reboot Panorama

An old contractor setup our Panorama and I just tried to update the software.  It says I do not have permission to reboot Panorama.  I am a superuser.  How do I give myself permission to reboot Panorama?

Resolved! Unsupported Cloud Type For Remediation

Given the Prisma Cloud SaaS, I am trying to create my 1st custom policy to detect and remediate overly permissive SecurityGroupIngress rules in AWS cloud.

My RQL below is valid and returns a half-dozen or so results...

event where cloud.type = 'aws' AN

...

TommyHunt by L3 Networker
  • 3349 Views
  • 1 replies
  • 0 Likes

Resolved! SLR Report - Get stats-dumb

Hello @all,

I would like to get a stats-dumb file which will be later used to generate an SLR report.

Since the timeframe (1 Week) via the PA GUI is not long enough for us, I use CLI with the following command to generate the file:

 

tftp export stats-du

...

PAN1.PNG
PAN2.PNG
husetech by L2 Linker
  • 8964 Views
  • 4 replies
  • 0 Likes

GlobalProtect dns dynamic updates

We deny DNS outbound except for domain controllers.  I noticed a lot of denied DNS entries on the firewalls for users coming through globalprotect.  Looking at the packet captures, the traffic is destined to the domain name's public name server ip ad

...

MikeC by L3 Networker
  • 6506 Views
  • 7 replies
  • 0 Likes

Email Scheduler Not Working Consistantly

Hey Everyone,

 

I am running into an issue where custom reports that I have built that are sent on a daily basis aren't being sent consistently.

 

I have 3 different Email Server profiles being used in four different Email Schedulers sending two differen

...

Palo Also email.jpg
Palo Also email 2.jpg

Superuser cannot access Edge FW

Our PAs were recently setup by a now former contractor and all templates appear to be the same.  However, while our new contractor is able to access all of the internal FWs, he is not able to access our edge FW.  Any ideas?

DAG and Panorama

When looking at Dynamic Address Groups along with Panorama, it almost looks like this can't be done unless you are using NSX.  I setup the VM Source on one of my firewalls and I can do a DAG, but it doesn't transfer back to Panorama inorder to use it

...

gzygadlo by L1 Bithead
  • 2794 Views
  • 1 replies
  • 0 Likes

Block Brute Force RDP attempts

I have a Palo Alto 820 up and running, and one of its roles is to publish an terminal server (on its default port3389, the Terminal Server have an 2 factor authentication mechanism.)

 

I see lots of connections, and i would like to block this brute for

...

Sjoerd by L2 Linker
  • 10834 Views
  • 7 replies
  • 0 Likes

Zone Protection - Reconnaissance

Hi,

 

Are there any best practice settings for the reconnaissance portion of the zone protection profile.

 

I see the default has the below.  Is it recommended to leave as defaults or does someone have a better recommendation?

 

TCP Port scan 100 events wi

...

MikeC by L3 Networker
  • 3611 Views
  • 3 replies
  • 0 Likes

Resolved! GlobalProtect Gateway is not licensed

Hi,

 

I'm working on home lab and tried to configure clienetless global protect eveything went well expect when i authentate the user i got this message " GlobalProtect Gateway is not licensed. Contact system administrator. ", however during my reading

...

aymenata by L0 Member
  • 7128 Views
  • 3 replies
  • 0 Likes
  • 23934 Posts
  • 113 Subscriptions
Top Liked Authors
Labels