General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Configure rsa with palo alto radius protocol

Palo alto integrate with Rsa Authentication Manager . I have configured Global protect which is working fine, now end users will authenticate with RSA using radius . Kindly share proper steps of configuration . I have tried as per document but some e

...

User-ID & WMI

Hi Everyone,

 

I have been trying to grasp the whole User-ID concept specifically with WMI and the more I read, the more I am confused.

 

I have a simple setup.  I want to be able to use agentless configuration and have it read info from my Domain Contro

...

Connection Issues between servers

I'm very new to PAN firewalls and are still learning as I go along, they've only been in a month or so and the only rule is currently set any any from the trust to untrust zones and vice versa.

 

We've got a couple of issues around some connections tha

...

JonHill by L1 Bithead
  • 2295 Views
  • 2 replies
  • 0 Likes

Resolved! Need response on some VAPT points

There are some VAPT points of one of our customer which is attached with the email.

My response on these vulnerability point are as follow:-

1) SSL/TLS Server supports TLSv1.0 :-

We can enable TLSv1.2 in SSL/TLS profile under Device -SSL/TLS profile and

...

PA VM-300 Hyper-V as a Gateway of Network

Hi Team, 

 

We have requirement to build a permiter gateway firewall under Hyper-V using PA-VM-300. 

 

In practical world this is realy possible to do so, force all traffic (in/out) pass through using Hyper-PA-VM. If it is there help with the documentati

...

Enable palo alto preempt or not?

Hi. 

I was just wondering what most of you people do regarding preempt option for A/P clusters. 

(and perhaps also some pointers regarding the different timers you can set, etc )

 

Main reasonis that the discussion to use preempt or not to use preempt co

...

Error Message for AE1 Aggregate Group

Hello,

 

We are getting below messages on and off for our HA pair.

eth 1/5 and 1/6 are part of the ae1 aggregate group

 

nego-fail,ethernet1/6,0,0,general,critical,"LACP interface ethernet1/6 moved out of AE-group ae1. Selection state Selected",450025,0x0

...

How to Create a Report on Template settings?

I have some templates and template stacks that I've inherited. I would like to review the settings to understand them better, what's getting set where. Is there a way to export a report on those settings rather than clicking each of the tabs on each

...

Resolved! GlobalProtect license in HA

We have got the 220's and i installed the licenses before i configured them in HA. License that we got says GlobalProtect subscription for device in an HA pair. But the GP license doesn' show up in the passive device. I have yet to do any further con

...

raji_toor by L4 Transporter
  • 2228 Views
  • 1 replies
  • 0 Likes

GoToMeeting audio(Microphone) not working

Hello Community,

 

I have some questions regarding GoToMeeting and Security Policies. The System is a PA-3020, which is running on the software version 8.1.2.

 

For GoToMeeting to work properly, the application stun has to be allowed. I have created a se

...

Julian_V by L0 Member
  • 4026 Views
  • 3 replies
  • 0 Likes

Resolved! When was "firebase-cloud-messaging" added?

I found that the google-base join time is displayed here and here. In the list, the firebase cloud message is not included.

Recently, the rule setting only uses google-base, which causes FCM to not work properly, so I would like to ask "firebase-cloud

...

螢幕快照 2019-07-04 下午4.46.29.png
螢幕快照 2019-07-04 上午11.59.02.png
螢幕快照 2019-07-04 上午11.59.38.png

Slow accessing file shares using Global Protect VPN client

Has anyone experienced an issue where accessing file shares from a Windows 2008 R2 is really slow, often showing the hour glass taking up several minutes or cancel and retry opening file shares multiple times again before it opens up, after establish

...

hcao by L1 Bithead
  • 13407 Views
  • 12 replies
  • 0 Likes

Dynamic Routing offsite

I have been using small(ish) static routing tables until now.  I have 2 PA-3020 in HA mode that control the internet and new offsite datacenter.  At a second location 15 miles away, I will have a backup link to that datacenter.  A third 3020 is in pl

...

PA-Route.png

asymmetric routing

 
Hi , 
 
If there is asymmetric routing how the  firewall process the packet if it is in routed mode . 
 
How it process the packet if it is in vwire mode  and there is asymmetric routing ? 
 
Thanks
 

simsim by L4 Transporter
  • 5346 Views
  • 3 replies
  • 0 Likes
  • 24195 Posts
  • 100 Subscriptions
Top Liked Authors
Labels