General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Global protect disconnect popup message

Hi All Hope you all are safe and good. I have one small query. If global protect VPN automatically disconnected ( For example internet issue ), it is not showing alert popup message on screen that GP vpn disconnected. Is there any way to show GP VPN disconnect popup message on user screen? RegardsMohammed Asik

Policies for Students

Greetigns So when our Palo was originally set up we created a policy for Students and for Staff.In the student policy > Application. ANY has been unchecked and a custom group has been selected.STUDENT-DOMAIN-APPS which is found under Objects > Application Groups which has a rather long list of applications selected. We then after that crea...

Wykeham by L1 Bithead
  • 4050 Views
  • 4 replies
  • 0 Likes

Resolved! Log filters nested and/or problems.

Is there a proper guide to filter wrtiting and nesting???? Trying as hard as I can but the Palo does nto seem to like basic logic for searching Basicaly the below should alert if the following Medium or higher, threat 40031 except if the destiantion is 192.168.10.140.Not for threat 30664Not for threat 37610 (severity geq medium) and ( ((ad...

DHCP Options

We have several firewalls (mixed between PA-850 and PA-3260), each firewall is segmenting a diffrent regulatory compliance (PCI,HIPAA, CJIS, DOD and so on) network (with multi vlans in each segment). Some segments are not large enough to warrent thier own DHCP servers, so we are using the Palo DHCP (we do not want to use DHCP relay, we want t...

jgeranen by L0 Member
  • 2222 Views
  • 1 replies
  • 0 Likes

2 internet lease line links. (Single ISP)

two PA firewalls and we configured in HA (Active-Passive mode).We got /28 subnet from ISP for 2 internet lease line links. (Single ISP)configured links on one firewall with IP 99.100.100.111 on interfacet 4 and 94.100.100.110 on interface 2. With next hope 94.100.100.109after commit we got interface overlap error.Is it possible to configure this...

bit_byte by L2 Linker
  • 3308 Views
  • 2 replies
  • 0 Likes

Having Issue while trying to access Captive Portal on HTTPS

Hi Experts, I have configured Captive Portal using below how to;https://www.gns3network.com/how-to-configure-captive-portal-in-palo-alto-firewall/ Now, while I am trying to access an HTTP website, i.e.http://www.example.com/, I am getting captive portal and upon successful submission, I am able to surf the internet. But, while I am trying to acc...

vsk770 by L0 Member
  • 2242 Views
  • 1 replies
  • 0 Likes

Threat alert for one drive

@hisingh Hello,Palo alto has been released a new signature Virus/Win32.WGeneric.alpvznName: Virus/Win32.WGeneric.alpvznUnique Threat ID: 354554856Antivirus version -3414-3925 update date(19/7/20)We are getting Virus alerts in the Threat log for OneDriveSetup.exe.I waited for the next signature, today new version is update - 3414-3926 update dat...

Source user missing from log

I have user mapping configured under user identification to monitor my AD servers - which are showing as 'connected'. My trust zone has user-id enabled. My globalprotect clients are in the trust zone. Their 'source user' correctly shows in the traffic log. However none of the other networks in my trust zone list a source user in their log entri...

Resolved! Vm series palo alto

Hello All, Need to know how can I get a palo alto image to install in my vm for lab purpose Any help will be highly appreciatedRegards,Vishal

Can't update Global Protect through the NGFW (5.1.1 - 5.1.5)

Hi, I have the problem that, running GP 5.1.1 I get the message that there is a newer GP Version (5.1.5) available.But when I try to update, the update is not working. The Debug Log shows: (T8312)Info ( 604): 07/08/20 07:41:15:329 #### updater started, command is C:\Users\[...]\_temp3356.msi(T8312)Debug ( 39): 07/08/20 07:41:15:329 try verify ...

Resolved! The SSL Certificate is showing unsecure in one device

I have installed an SSL certificate on my firewall it is working fine for all of our Palo Alto devices except one device as it is showing it is not secure.I checked and I found that the device is still using the localhost generated certificate. I don’t know how to force it to use the SSL Certificate I installed.Note that I set up the SSL/TLS Ser...

Resolved! User-ID: ip-user-mapping not working from LAN

Hi all, I tried to configure the User identification for our LAN zones with PAN OS 7.1.3. I have the following Environment Windows 2012 R2 ServerPA-500 with 7.1.3 I can see more than 200 users known by the firewall admin@firewall(active)> show user user-idsUser Name Vsys Groups------------------------------------------------------------------...

  • 24416 Posts
  • 125 Subscriptions
Top Solution Authors
Labels