General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4244 Views
  • 0 replies
  • 0 Likes

Question about VMI and error found

Hi everybody! I have a question about this mistake obtained in a PA, I have 1 device 850 but i tried to implement a user-mapping.But the issue is the PA lose connection of my servers (I have 5 servers LDAP) Lose connection random of my servers, I have tried to follow the next Kbs but i still have the issue https://knowledgebase.paloaltonetworks....

Resolved! Minemeld - excluding entries from URL list

Hello, I have setup IPv4 and URL lists for O365 using minemeld for whitelisting. I have noticed that the office365.onenote prototype in minemeld includes www.youtube.com in the url list. How would I go about removing that entry and a few others from the generated list? Thanks,Dan.

Does Palo alto on L2 deployments forward BPDU On RSTP?

I have a PA-850 deployed as layer 2, on this palo i have 3 switches connected trunking 4 same vlans( 30,31,50,51) for each port to the switch, switches are from different vendors so I using 802.1w, RSTP as loop prevention, I know that on PSVT+ of cisco palo alto forwards the BPDU, but using RSTP Im seeing on each switch that is not receiving...

Eddgar0 by L0 Member
  • 4848 Views
  • 1 replies
  • 0 Likes

DHCP Issue

We have 2 VLANS that terminate on a PA-3020 firewall. One VLAN (100) uses DHCP relay and works without any issues. The DHCP relay exists on the firewall for VLAN 100, but this relays to an internal DHCP server on our network. The other VLAN (200) uses the PA-3020 as a DHCP server, but this is not working. The DHCP server for VLAN 200 is hosted...

Resolved! Global Protect client certificate auth Current User Vs Local Computer Store

Having some trouble with a generalized single certificate (wanting to use as part of user/pass authentication) across multiple machines. Wanting to require this certificate be on a machine and the user enter their user/pass combination for authentication to portal/gateway (not user/machine specific cert). Not doing prelogon at this point. ...

Sec101 by L4 Transporter
  • 25907 Views
  • 25 replies
  • 0 Likes

The real meaning of "Config>Revert Changes"

Hi team, While reviewing the EDU 210 book v8.0 page 21 we can read: Revert Changes : revert changes to previous saved configuration However from the help icon in the firewall dashboard, Reverting changes restores the settings to the values of the running configuration. I performed some tests and came to the conclusion that the Revert Changes a...

Microsoft Azure Datacenter IP Ranges

Hi Luigi, One of my customers needs to allow traffic to Microsoft Azure Datacenter IP Ranges for Microsoft Power Bi. Any plans to add a miner for it? The URL source is http://www.microsoft.com/EN-US/DOWNLOAD/confirmation.aspx?id=41653 The file is in XML format I tried to create a new prototype but I couldn't find an XML class. Are you planning...

msabena by L1 Bithead
  • 28653 Views
  • 14 replies
  • 0 Likes

WhatsApp and Minemeld

Hello, It seems that Facebook allows again customer to easily access network requirement for WhatsApp (https://developers.facebook.com/docs/whatsapp/guides/network-requirements/) such as Ports, Protocols and IP Addresses. The IP Addresses are stored in a ZIP file behind an URL. I'm not an expert nor a beginner to develop a miner to exploit t...

Management of a multi-VSYS firewall from Panorama

Hello friends, I have been tasked to deploy a multi-VSYS PA and to manage it from Panorama, honestly this is the first time that I do this so I'm reaching out to you in order to guide me in the most siple way to achieve this. The way I'm planning this is: 1. Enable multi-VSYS funcionality (I guess that by default VSYS1 should be created automati...

Resolved! Minemeld Regex Syntax Issue

Hi Everyone, I am having issues setting up a prototype within Minemeld to pull correctly pull values from an external XML URL feed. The issue is with the indicator regex The data is provided in XML like this: <uri>https://example.com</uri><type>combo</type><pubDate>Wed, Nov 14 2019 03:30:03 UTC</pubDate>&l...

Resolved! PanGPS vs PanGPA logs on globalprotect

What is the main difference in between these log files? - I had read that one was more for the agent/gui - and one is the actual service? I do know that most of the helpful logs tend to show up in the PanGPS logs file - or so it appears. Does anyone have good feedback on this? - As far as troubleshooting the actual agent - which is better a...

Sec101 by L4 Transporter
  • 28732 Views
  • 4 replies
  • 0 Likes

Palo Alto and Fireye Integration

Anyone worked with integration of Fireye and Palo Alto firewall? We are experiencing packet loss when connecting fireye and wondering if anyone has work with this type of setup recommended sites:https://camjke.comhttps://pornsites.prohttps://freeporn.ooo

yunicapi by L0 Member
  • 2316 Views
  • 1 replies
  • 0 Likes

Resolved! DoS threshold per zone

Hi All, What additional tool can l use to get CPS/SPS intonation hitting specific zone?I found this KB with three wonderful MIBs:https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/zone-protection-and-dos-protection/zone-defense/take-baseline-cps-measurements-for-setting-flood-thresholds/how-to-measure-cps Is there a way to get the same st...

myky by L3 Networker
  • 4795 Views
  • 3 replies
  • 0 Likes
  • 24359 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels