General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

TAXII into Proofpoint TRAP - Minemeld Output

I am trying to integrate MineMeld and Proofpoint TRAP. It should be relatively simple and feel I am overlooking something.

 

The first step was easy. Create an output using stdlib.taxiiDataFeed.

Because this is the community edition auth is turned of

...

Romans6 by L1 Bithead
  • 2227 Views
  • 0 replies
  • 0 Likes

Resolved! Connecting WildFire Private Cloud to firewall

When connecting WildFire Private Cloud to firewall (Device > Setup > Wildfire), It appears that we can only add one (1) appliance IP address. However with a cluster there's more than one appliance.

1) Should this be the management IP address of the Pr

...

Minemeld Log Location

Using Minemeld and I have miners, aggregators and output configured. I want to be able to get as much details from the indicators into a log server or even Splunk. Where would I find these logs? See below:

 

 

 

Capture.PNG

Resolved! Disabling HA

Hi Community,

 

Does disabling HA using the master switch ( Device -> High availability -> general -> setup ->enable HA checkbox) will cause the interfaces to go down and up ?. I understand that the interface mac has to be changed from virtual to physi

...

Resolved! MineMeld engine failed to start.

I was attmepoting to configure Minemeld to pull AWS ip addresses, but nothing happened when I hit commit. I noticed the Supervisor had stopped, and came across this earlier article. I issued the commands:

sudo service minemeld stop sudo service minem...

Need to allow service for Ping application

Hi Team

 

We have configured the one Destination NAT policy. My requirement is Ping the NAT IP (Public IP) from the external network.

 

I have configured one security policy with application as 'ping' and service as 'any'.

 

For the above configuration, I

...

Resolved! User-ID not mapping all users

I'm using the PA's integrated User-ID Agent to setup User-ID. The moment I began monitoring DC controllers it begain to pull User-ID mappings. This is before User-ID was configured on any zone. However, when I configured User-ID on a source zone, the

...

Resolved! unable to get system info

This is a new one for me. My system is showing "active" (in active/passive) but the GUI is frozen and I see the following on the dashboard:

 

PANOS 8.1.9

 

From the dashboard

fail.png

Disable Transfer-Encoding: chunked

Hi,

I want to use outputers from Minemeld that show the Content-Length in the http header. To do this, I've tried to disable the chunked transfer-encoding on nginx. 

 

I've edited the nginx.conf file. But, it doesn´t work.

 

# Gzip Settings
##
gzip_static o

...

Mtorre by L0 Member
  • 2984 Views
  • 0 replies
  • 0 Likes

Migrating server from port based firewall to Pal Alto

My company is moving a few servers from an old data center with an ASA to a new data center with a Pal Alto.  A lot of the rules for the old server on the old firewall are showing port numbers only.  I would like to use application ID as much as poss

...

Issue on updating cert on Palo Alto FW pair

I got an issue to update a cert on PA pair.

The issue is very similar to what it describes under

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CldECAS

I import the new cert to both PA FW units and change config to use the new

...

  • 24185 Posts
  • 101 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels