General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! CLI access to PA

@reaper, @BPry @MickBall

 

What could cause a superuser to not be able to ssh to the CLI of the PA?

jdprovine by L4 Transporter
  • 4226 Views
  • 31 replies
  • 0 Likes

Website issue.

Hi to everyone!

We have one site - halqa.az, which I can't give access to.

I have permitted everything on policies, permitted everything on decryption, still no success.

What should be else permitted? Maybe some of you will be able to help me.

Maybe ther

...

Integration with Cisco ISE Pxgrid

Good afternoon!

 

Does anybody know the integration with Cisco ISE Pxgrid?

 

Does Palo Alto can act as pxGrid Client with Cisco ISE to apply TrustSec for SGT Bindings?
Does Palo Alto   support Cisco SXP protocol and act as Listener to ISE Pxgrid speaker?

 

...

QOS setup to to guarantee vital services with free internet

Hi,

 

I would like to configure QoS for our Internet data lines on our PA-220s as follows:

 

- Internet line could be up to 100Mbps.

- I would like to guarantee at least 1 Mbps to SAP

- I would like to guarantee at least 2 Mbps to Office365

- Give the rest

...

SDBIT by L0 Member
  • 1634 Views
  • 1 replies
  • 0 Likes

Resolved! Active Passive Panorama and commit failed

We have M100 in active passive mode.

 

Everything is in syn between both M100

 

I logged on Passive M100 today and found that few firewalls show as commit failed.

 

Then from active M100 I pushed config to those firewalls for testing purposes and all was g

...

MP18 by Cyber Elite
  • 1220 Views
  • 1 replies
  • 0 Likes

Resolved! Issue with URL Category

We have just setup SSL decryption and added custom response pages on our firewall.  We have a custom filter for shopping sites and the category is set to alert, if a user is a member of an AD group associated with this filter it works fine.  We decid

...

GlobalProtect Agent

Hi 

 

I want to know if there is a way not to allow old  GlobalProtect Agent to connect to the Palo Alto network firewall?

But allowing to update the client before logging on to the VPN?

 

Thank you

 

 

Cyon by L0 Member
  • 1174 Views
  • 1 replies
  • 0 Likes

GlobalProtect: Enforce GP-Connection = Windows Logon issues

Hi Community,

 

we want to use the "Enforce GlobalProtect Connection for Network Access" Option. 

 

Unfortunatly this causes some problemes when we use the client (Windows 10) in our internal network (with the internal host detection enabled). If the GP-

...

BHaaf by L0 Member
  • 964 Views
  • 0 replies
  • 0 Likes

Rule Viewer

Hi folks,

 

I was wondering if there was some kind of rule viewer, that can render the rules in a table from the exported files.

 

Why I need this: Our managed service provider sends us an export of the firewall rules every month and we have to review th

...

JayArr by L0 Member
  • 1342 Views
  • 5 replies
  • 0 Likes

PaloAlto 3rd party captive portal integration

Hi! First of all sorry if this question is explained anywhere else; I've dedicated a few hours to browse docs and posts but I cannot find a proper answer. I work for a company that deploys hotspot solutions over premises using different hardware solu

...

Captive portal bypass

New to Palo Alto.

 

is there a simple way to disable/bypass the Captive Portal for a pc based on IP or IP range? Please be detailed since I rarely deal with the PA.

Top Solution Authors
Top Liked Authors