General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Bandwidth limitation per policy

Hello All, I have filled the local database with users because we do not have an Active Directory, i create a captive portal to enforce the users to do authentication. in the polices i have grouped the users depends on what they should go through network. I need to know if there is any way to limit the bandwidth for wan connections depends on th...

diferente Version PAN 3220

HiThe new PA3220 device (FW2) has PANOS version 9 installed, but the firewall (FW1) that is operative is on PANOS 8.1.3.What are the steps to update the FW1 to the actual version of PANOS?

Global Protect Authentication Profile

Hi I have setup Global protect and I want to use it with LDAP Authentication profile. It works fine however when in the auth profile I add a specific AD group so only users in the group allow to connect to VPN it doesn't work. Even sometime with specific group added others users can connect to the VPN or it doesn't allow anyone to connect. Alrea...

umar00o by L2 Linker
  • 2837 Views
  • 2 replies
  • 0 Likes

Resolved! Azure Active Directory IP ranges

Hi all, I'm trying to use Minemeld to create an EDL that includes only the IP address ranges used by Azure AD. I've tried a few things, but can't seem to get it to work. My current setup is as follows Miner = cloudIPsWithServiceTags Processor = based on stdlib_aggregatorIPv4Generic but using the following config infilters:- actions: ...

dpurton by L0 Member
  • 15328 Views
  • 4 replies
  • 0 Likes

Wildfire Public Cloud - email

We’ve recently upgraded our PAN from 8.0.4 to the latest version (8.1.13) successfully. Now the issue is that we’ve been getting an email stating that “registering Wildfire Public Cloud has been successfully” every 20 minutes. Is there a way to make this particular email to stop? Subject: INV-FW1 - SYSTEM ALERT : medium : Successfully registered...

SD-WAN - routing with variables

Anyone been trying to setup SD-WAN routing with template variables? Surely that page in admin guide is completely wrong? Variables should be of type IP address.

santonic by L6 Presenter
  • 4167 Views
  • 2 replies
  • 0 Likes

Resolved! Download the licenses to PA 3220

What options are there to download the license on a PA3220 replacement of a failed PA 3220 , which cannot connect to the internet, please inform me how to do it thanks

Resolved! Palo Alto Traps Support for SQ1 processor

An error while installing the Palo Alto Traps. The error This installation package is not supported by this processor type, contact your product vendor. As per Palo alto Traps, Agent will support Intel and AMD processor only and I have Processor Microsoft SQ1 @3. 0 GHz, 3.0 GHz How I can install Traps on Mircosoft processor or any other alternat...

Resolved! Deny rules with service application-default

It is not clearly described in documentation and I could not find a complete topic related to it. How does application:any, service:application-default behaves when apply to a “Deny” rule? Presumably it will block the application if application is detected on a default port, but normally deny rules do not have recognised application, because of ...

batd2 by L4 Transporter
  • 7835 Views
  • 3 replies
  • 0 Likes

Resolved! Syslog Custom Log Format

If I use a custom log format for syslog does the new custom format replace the existing default format? So if I want syslog to send before-change-detail and after-change-detail do I have to add every default field to the new custom format so I get default+custom?

IPsec VPN throughput on 3220

Hi Everyone, As per PA-3220 datasheet IPsec throughput can be 2.5Gps.https://www.paloguard.com.au/datasheets/pa-3200-series.pdf The palo in my environment got 1 Gig interface (internet facing) and multiple ipsec tunnels are configured to communicate to different cloud providers without any rate limiting....so question is how to figure out what...

how to create virtual system in gns3

Hello Experts,I am new to palo alto. I have installed palo alto (8.0.0) in gns3 but there is no option of creating virtual system. May i know how to create ? Also could you please let me know from where can i learn palo alto. Is there any document/website ? ThanksNitesh

  • 24432 Posts
  • 125 Subscriptions
Top Solution Authors
Labels