General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Certificate error in Globalprotect app in Android

Hi,I have created a Portal and gateway for globalpotect connections.I have assigned a Wildcard certificates for the connection.In all my computers and iOS devices the connection is perfect but in Android devices have the message "The server certificate is not valid."Do you know what may be happening?Thanks,

Graph - Hits per Policy

Hello at all, in my firewall policy ruleset i have a rule to block all incoming connection attemps from known C2C Server. I use EDL to keep the rule up to date.For my reporting i need something like a graph which shows me the policy hits in relation to time. Similar to a bandwidth diagramm which shows the traffic for given time period. Is this p...

ldaps being id as ssl

Hi So I have a rule ldap client -> ldap server allow ldap app ldap app includes ldaps (636) so I test this ldapsearch ldaps://ldapserver gets blocked as ssl. what am I supposed to do ?

Resolved! Palo Alto AWS Deployment with Panaroma

Hello, I am extremely new to Palo Alto and trying to find my feet here.. we are planning to procure Palo Alto Firewalls for our AWS Deployment and i need help with some of the basic questions related to it. 1) Is Panaroma similar to what we call a Checkpoint Management Server ? and is it essential to deploy Panaroma along with Palo alto HA/Clust...

Resolved! User-id error after commit

I have setup user-id mapping using the instruction here:https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/user-id/map-ip-addresses-to-users/configure-user-mapping-using-the-windows-user-id-agent.html#idf8932678-911a-4153-ab89-94f19b988aef I have 2 servers with the user-id agent and 2 servers with the terminal server agent all set up and ...

User-Id config

Hi every onei faced this problem while configuring my Ldap profile on palo alto.the connexion between palo alto and windows server 2012 is not effective.the BASE do not appear. May somebody give me a help

pb.PNG

Unable to clear Apps seen from local firewall

Hello,Has anyone seen the following issue? Panorama manages a security policy for a remote PA, if you try clear the app seen counter on the remote PA using this KB https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/app-id/security-policy-rule-optimization/policy-optimizer-concepts/clear-application-usage-data you get a server error: fail ...

sami-su by L1 Bithead
  • 11394 Views
  • 9 replies
  • 0 Likes

Threat log URL column is blank..

Hi Team,In monitor >> threat>> we are getting URL column as blank.We can see source address and destination address.Can we get URL also in the logs for any actions of vulnerability protection? Thanking You in advance!!

Palo-Alto FW 9.0.4 Hardening Steps

Hello Guys, Joined the community recently...!! Hope all you are good in health and doing great..!! Here...I am looking for a recommended and basic hardening steps (not a complete book) along with commands line for GUI steps/process for Palo-Alto firewall (with 9.0.4 version). Simply the hardening steps which must be there and available for all ...

Jimmy20 by L2 Linker
  • 7521 Views
  • 1 replies
  • 0 Likes

Block Page not always displayed

Hi, I have the problem that for some URLs I get a block Page and for other URLs I get the "Error secure connection failed" Message.Both responses have the same session end reason: decrypt-cert-validation.As this happens regarding SSL connections I use a decryption Profile with checked: Block sessions with expired certificatesBlock sessions with ...

97% speed decrease on SMB traffic (PANOS 8.1)

We're currently having some issues with ms-ds-smb (both v2 and v3) traffic on our PA-3020's (active/passive pair), where we are seeing a 97% speed decrease measured against direct traffic. In order to determine the source of the issue, I have tried to disable server response inspection and all the security profiles, but I'm still getting speeds ...

arvesynd by L3 Networker
  • 26315 Views
  • 7 replies
  • 1 Likes

VLAN entry

Hi I have a network with IP addresses in the range of 192.168.100 and 192.168.130 on two singular network cards on the same machine on the local network. Port 4 on the firewall is plugged into another device with the .130 range IP. Port 1 on the firewall is plugged into the local network. I can’t contact the other device from the machine. Any ...

Update to 8.0.6 appears to have broken IPSec tunnel connections

Since our PA updated we've had a problem with one IPSec Tunnel not routing correctly. It appears to relate to just one Proxy ID but I've checked all and they're exactly the same as the PFSense box we're connecting to. Everything was fine until the update to 8.0.6. I've followed this KB... https://live.paloaltonetworks.com/t5/Management-Articles/...

  • 24414 Posts
  • 125 Subscriptions
Top Solution Authors
Labels