General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2064 Views
  • 0 replies
  • 0 Likes

Field name of "Name" at Palo Alto Threat logs

May I know what is the field name of "Name" at Palo Alto Threat logs, i've checked the documentation on https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-admin/monitoring/use-syslog-for-monitoring/syslog-field-descriptions/threat-log-fields but it

...

a.png
yaboixd by L0 Member
  • 2751 Views
  • 2 replies
  • 0 Likes

Resolved! DoS protection policy process order

Hi All,

 

Basic question and l think l know the answer but just would like to confirm.

Is it the same for the DoS protection profiles if you compare with normal security policies, fist match from top to bottom?

I have a general DoS rule with broad src an

...

myky by L3 Networker
  • 3663 Views
  • 2 replies
  • 1 Likes

TCP / UDP Flood

Hi all,

I have set up a dos rule from outside to my server zone.

Why sometimes I can see attacker and victim IP and sometimes not?

 

s_quasar by L3 Networker
  • 6669 Views
  • 4 replies
  • 0 Likes

Cisco ASA to Palo Migration for ACLs

It seems to me that the "migration" from Cisco ASA to Palo is not apples to apples. Working in ASA for quite some time I am able to control traffic as what I allow in to the interface....So if I have 14 security zones I can control what comes into in

...

Allow downloading from Akamai or other CDNs

PANOS 8.1

 

Hi all - I have ongoing issues with trying to control downloading of files from CDNs. An easy example is .cab files used by Microsoft Office templates. When you download a template it goes off to a page off: templatesmetadata.office.net, bu

...

SARowe_NZ by L3 Networker
  • 5114 Views
  • 2 replies
  • 0 Likes

Resolved! Multi VSYS, VRs and ARP tables?

Hello team,

 

I will be deploying a couple of 3250s in HA and multi VSYS, and VRs.

 

My main concern is that are we getting separate ARP tables per each VSYS/VR? Let me give you some more background about what we will try to achieve:

 

We want to create 4

...

clipboard_image_0.png

Resolved! Block all traffic but a single IP Address

Let me start by saying that I am not a firewall expert by any means but I think the task I have is simple. I want to block all traffic through a PA-500 except for a single conversation between a dedicated machine on each side of the firewall. Is ther

...

hdaigle by L0 Member
  • 5290 Views
  • 3 replies
  • 0 Likes

Resolved! GlobalProtect VPN - Management Access

Hi,

 

Does anyone know a way to get access to the panos web management interface over a globalprotect VPN? We are using three interfaces on our firewall;

 

1 - Management Interface

2 - Trust

3 - Untrust

 

Global Protect is setup on the trust - and I have a r

...

HyderB by L0 Member
  • 5973 Views
  • 2 replies
  • 0 Likes

Issues observed in PANOS 8.1

Hi All,

 

I upgraded the PANOS from 8.0 to 8.1 last week, current version is 8.1.0. Now I am observing some issues.

 

1. Traffic logs are not showing source user.

PA is connected with active directory via WMI, connection status is fine. Source User in sec

...

Resolved! Address to use for Tunnnel Monitoring with Azure VPN

I have used this KB article to configure an IPSec tunnel to an Azure network

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm6WCAS

That has worked fine and the tunnel is up and passing traffic.  However I want to enable tunn

...

djr by L4 Transporter
  • 9480 Views
  • 2 replies
  • 0 Likes

Resolved! Commit Function on Suspended PA

When PA is in active passive mode.
I suspended the active PA and passive took over.

This is fine.

 

 

 

I did the config changes on the suspended PA and did the commit.
I saw that config changes from suspended PA got syn with active PA?

My understanding of s

...

MP18 by Cyber Elite
  • 3354 Views
  • 2 replies
  • 0 Likes

Upgrading

I need to update my firewall from 8.0.17 to the latest release of 8.1.  In the past I was instructed to first upgrade to the base release for the PANOS, and then install the maintenance release on top.  Is that still the way it should be done.? If I

...

  • 24230 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels