General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Queries on PA Firewall migration - DNS Security and Interface redundancy

Hi Team,I have a couple of queries.1. Currently the customer is using Redundant interface in Juniper, we will be migrating to PA. One interface is connected to a router 1 for internet and another interface is connected to a different router for data. How can we tackle it ? PBF is the suggested solution or is there any other way by which we can d...

Request for Palo Alto PSE Certification Clarification.

Owing to the syllabus changes in the palo alto course work material. I would like to request for your clarification with regards to taking PSE-StrataDC Proffessional exam. Is there any prerequisite certification that I MUST undertake before embarking on the PSE-StrataDC Exam?. Your prompt answer shall be of much value.

Milimu by • L0 Member
  • 3529 Views
  • 1 replies
  • 0 Likes

Permission issues with "Introduction to Cybersecurity (EDU-010)"

Hi,Could someone please check why I receive the error "403 - Forbidden: Access is denied. You do not have permission to view this directory or page using the credentials that you supplied." for the module "Introduction to Cybersecurity: Mobile Security and Virtual Private Network Management with Prisma Access". All other modules load ok. Thanks

Incorrect password expiry notice in GlobalProtect

My client is running GP 5.0.8 clients to a 9.0.9 Palo Alto gateway. Globalprotect doesn't seem to be using the fine granular password expiry details from AD. Its saying the password will expire in 6 days when it wont actually expire for many months. Is there a setting i must change to have GP reference the correct source for password expiry in...

Global protect disconnect popup message

Hi All Hope you all are safe and good. I have one small query. If global protect VPN automatically disconnected ( For example internet issue ), it is not showing alert popup message on screen that GP vpn disconnected. Is there any way to show GP VPN disconnect popup message on user screen? RegardsMohammed Asik

Policies for Students

Greetigns So when our Palo was originally set up we created a policy for Students and for Staff.In the student policy > Application. ANY has been unchecked and a custom group has been selected.STUDENT-DOMAIN-APPS which is found under Objects > Application Groups which has a rather long list of applications selected. We then after that crea...

Wykeham by • L1 Bithead
  • 4142 Views
  • 4 replies
  • 0 Likes

Resolved! Log filters nested and/or problems.

Is there a proper guide to filter wrtiting and nesting???? Trying as hard as I can but the Palo does nto seem to like basic logic for searching Basicaly the below should alert if the following Medium or higher, threat 40031 except if the destiantion is 192.168.10.140.Not for threat 30664Not for threat 37610 (severity geq medium) and ( ((ad...

DHCP Options

We have several firewalls (mixed between PA-850 and PA-3260), each firewall is segmenting a diffrent regulatory compliance (PCI,HIPAA, CJIS, DOD and so on) network (with multi vlans in each segment). Some segments are not large enough to warrent thier own DHCP servers, so we are using the Palo DHCP (we do not want to use DHCP relay, we want t...

jgeranen by • L0 Member
  • 2273 Views
  • 1 replies
  • 0 Likes

2 internet lease line links. (Single ISP)

two PA firewalls and we configured in HA (Active-Passive mode).We got /28 subnet from ISP for 2 internet lease line links. (Single ISP)configured links on one firewall with IP 99.100.100.111 on interfacet 4 and 94.100.100.110 on interface 2. With next hope 94.100.100.109after commit we got interface overlap error.Is it possible to configure this...

bit_byte by • L2 Linker
  • 3360 Views
  • 2 replies
  • 0 Likes

Having Issue while trying to access Captive Portal on HTTPS

Hi Experts, I have configured Captive Portal using below how to;https://www.gns3network.com/how-to-configure-captive-portal-in-palo-alto-firewall/ Now, while I am trying to access an HTTP website, i.e.http://www.example.com/, I am getting captive portal and upon successful submission, I am able to surf the internet. But, while I am trying to acc...

vsk770 by • L0 Member
  • 2285 Views
  • 1 replies
  • 0 Likes

Threat alert for one drive

@hisingh Hello,Palo alto has been released a new signature Virus/Win32.WGeneric.alpvznName: Virus/Win32.WGeneric.alpvznUnique Threat ID: 354554856Antivirus version -3414-3925 update date(19/7/20)We are getting Virus alerts in the Threat log for OneDriveSetup.exe.I waited for the next signature, today new version is update - 3414-3926 update dat...

Source user missing from log

I have user mapping configured under user identification to monitor my AD servers - which are showing as 'connected'. My trust zone has user-id enabled. My globalprotect clients are in the trust zone. Their 'source user' correctly shows in the traffic log. However none of the other networks in my trust zone list a source user in their log entri...

  • 24463 Posts
  • 125 Subscriptions
Top Solution Authors
Top Liked Authors
Labels