Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 220 Views
  • 0 replies
  • 0 Likes

Resolved! Decryption certificate validation issue

Hi Guys,

 

I'm experiencing issue where one of the site is not accessible when the decryption profile is enable with no decryption for SSL forward proxy. After disabling the block untrusted issue I'm able to access the  site. 

 

I'm facing this issue in

...

BlueKeep HIP policy

I've created a HIP policy to filter GP users if they are missing the security patches for BlueKeep. However, with monthly roll-ups I have to go in and generate a new HIP object each month. 

 

We currently patch our Windows machines 30 days behind Micro

...

SPI Value in phase 2

I wanted to know that I could see the SPI value in the wireshark in site to site policy based VPN.

 

So basically in base two there are two SPI value inbound and outbound, so if the attacker is capturing my traffic then he'd able to see my SPI value. t

...

panorama Device template HA setting error

Hello,

 

I am getting an error pushing a template from panorama to a device as below

 

Details:

  • High-availability ha1 interface needs a prefix length(Module: ha_agent)
  • Commit failed
  • Warnings:

 

This is related to a HA settings. However i have manually set

...

KarimSN by L1 Bithead
  • 3577 Views
  • 1 replies
  • 0 Likes

Panorama logging quotas

Does anyone know if you can configure logging quotas per device group(s) or firewall(s)

 

My panorama is running 9.02 in legacy mode.

wibba by L1 Bithead
  • 2161 Views
  • 1 replies
  • 0 Likes

Source user column not populating

Source user column is empty under the monitor tab - traffic logs. We have checked all the settings from our end and couldn't see anything wrong with that.

It was working before, no changes been made. Noticed it stopped working recently.
No proxy server

...

Resolved! Multi-category URL in PanOS9

Can you please help me with understanding the new PanOS9 URL multi-category feature?

 

Now URL can have up to 4 categories. If the four categories have different actions, I assume that the firewall will take the most restrictive one, however I could no

...

BatD by L4 Transporter
  • 4951 Views
  • 2 replies
  • 0 Likes

Global Protect N-FACTOR authentication

Hello,


I have the following question is it possible to assign multiple authentication profiles to globalprotect.  I wan't to accomplishg the following:

 

Users of LDAP GROUP X.:  Use LDAP authentication only.

Users of LDAP GROUP Y:  User RADIUS auth with

...

GOMEZZZ by L2 Linker
  • 2569 Views
  • 1 replies
  • 0 Likes

enabling interface ping

Hello,

 

We have a vlan.101 interface with profile permiting ping (ping service selected) enabled on it.

However, hosts on this vlan.101 cannot seem to ping this interface.

 

Arp entries of some of the hosts are seen.

 

Appreciate all help.

Thank you.

Resolved! Minemeld Regex

I want to only use the url portion of this feed ignoring the protocol portion http://

 

https://ransomwaretracker.abuse.ch/downloads/LY_DS_URLBL.txt

 

My regex is below:

 

regex: ^(http:\/\/)(.*)
transform: \2

 

This works fine outside Minemeld as python rege

...

bokeke by L0 Member
  • 6295 Views
  • 3 replies
  • 0 Likes
  • 23616 Posts
  • 107 Subscriptions
Labels