General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 381 Views
  • 0 replies
  • 0 Likes

Policy rules organization

hello Everyone hope everything is doing well.

 

questions for the experts on palo

i have 260 rules on my palo alto environment and they are subdivided in zones and i would like to make things more organized on my rules  .

question is the rules more high

...

publishing a site website service with ssl decryption

I have an internal server which i want to publish its service to public and need to do ssl decryption, does that means i need to do "inbound ssl decryption"?

and if so, as the website is natted from outside to inside, in the decryption rule in the des

...

chuckles by L2 Linker
  • 4117 Views
  • 3 replies
  • 0 Likes

Release Notes in GUI

Anyone know what's up with the release notes links in PAN-OS or Panorama GUI?  Some of them are taking me to an XML response page and there is apparently an email circulating on REN-ISAC that the GlobalProtect links for 5.1.2 download a *.solitaireth

...

jsalmans by L4 Transporter
  • 2364 Views
  • 1 replies
  • 0 Likes

Minemeld configuration via TAXII output to Qradar

Hi All,

 

i've been trying to configure the taxiii output in minemeld following the tutorial of Qradar posted here but with no success.

I am running docker minemeld version, everything is fine until i try to add the url: https://hostname/taxii-discovery

...

macintos by L1 Bithead
  • 2788 Views
  • 1 replies
  • 0 Likes

Resolved! Limits in Old Palo Alto models

Hi,

 

I am trying to find out the number of objects and groups of objects of the old models PA-3020, PA-3050, PA-3060 and PA-5050.

 

In the new models, these data appear in the product comparison of the Palo Alto website, so I understand that these limit

...

PA220 Update - Cannot use management interface

Hello,

First question and first foray into Palo world from Cisco ASA and I'm stuck.

I am trying to update a couple of PA220's, we cannot use the management interface and therefore can only use an interface connected via DHCP  to our ISP.

I have got the

...

Scott64 by L1 Bithead
  • 3332 Views
  • 2 replies
  • 0 Likes

Windows radius with certificate config

Hi there,

 

I am testing Radius configuration for our admin accounts using windows NPS over PEAP-MSCHAPv2. I have our local CA cert in the cert profile and configured all the required params like vendor specifi attributes,etc. When I run a test authent

...

Jamesy by L2 Linker
  • 4646 Views
  • 2 replies
  • 0 Likes

Maze Ransomeware Coverage

Hi Team,

 

Please let us know the coverage against for Ransomware-Maze under threat in our Palo Alto IPS.

 

Best Regards,

Sahul Hameed

SahulH by L3 Networker
  • 6374 Views
  • 7 replies
  • 0 Likes

Traffic-Log refreshs is broken when using long filters

Hi Community,

 

I often have the problem, that the traffic log view is refreshing automatically when using long queries.
I have the auto-update set to manual but after seeing the first filtered log entries, the whole log-area refreshes - very annoying.

 

...

Chacko42 by L4 Transporter
  • 5534 Views
  • 8 replies
  • 0 Likes

Resolved! NAT RULE - IPsec VPN

Hello all,

I am implementing an IPsec VPN and I have to NAT the source IP address, but I am very confused with the bidirectional source NAT,

Lets say my local IP=192.168.1.1 (natted to 1.1.1.1), remote IP in the other side of the VPN= 10.10.10.1

For exa

...

joseglez by L1 Bithead
  • 9251 Views
  • 4 replies
  • 0 Likes

PA-5050 8.1.11 Inter Vsys traffic

Hi all,

 

We got a Palo Alto 5050 active/passive HA configuration with two vsys with a lot of inter-vsys traffic.

Our DP1 is running at 100% during working hours.

 

I am convinced that the problem is that inter-vsys traffic can't be offloaded to hardware.

...

  • 23837 Posts
  • 112 Subscriptions
Top Liked Authors
Labels