General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Advise on using AD user-id in local PA groups?

I am struggling with utilizing ActiveDirectory groups in firewall policy. My concern is then our AD administrators have control over transversing our firewall policy. Generally speaking say for example we have a FW policy setup where AD group ServerA

...

zthiel by L2 Linker
  • 2386 Views
  • 3 replies
  • 0 Likes

Resolved! User-ID Proof Of Concept - With Proxy

Good afternoon Team,

 

Pardon my stupidity here. I'm running a PoC at the minute and customer is keen on the User-ID aspect. However, the have most of their users behind a proxy.

 

We have configured the PoC in standard TAP, with LDAP server profile etc

...

One to one NAT mapping for many to many

Sonicwalls have a setting that allow a /24 subnet being natted to a different /24 subnet to get mapped on a one to one basis. 

 

Example, 192.168.1.10 will get bidirectionally natted to 10.0.0.10, 192.168.1.11 will get bidirectionally natted to 10.0.0.

...

Query on Split tunneling

Hello,

 

We are trying  to exclude one IP from including routing in split tunneling.

VPN is working, however, I found that when going to 192.168.16.22, still through VPN rather than local LAN.

What we need to setup is ONLY this range, 192.168.0.0/16, wil

...

Config.png

Resolved! Can Wildfire be integrated with Traps?

Hi;

 

If Wildcard declares a file to be melisious after having been downloaded by one user, then what? Can Wildfire inform End Point Protection Traps management to quarantine that particular user device?

 

 

Kindly

Wasfi

Many to many dynamic NAT (/24 to /24)

Is there a way to make a dynamic NAT rule that translates one /24 subnet to another /24 subnet work in both directions and map last octet to last octet? There's a way to do it in Sonicwall so if your natting a subnet to another it will make .20 on th...

Wildfire integration with PAN-DB service

Hi;

 

If an email is sent with a text containing a link that is a Malicioius URL, does wildfire navagate to the link, download the file, sandbox it and generate a verdict then inform PAN-DB that this is Malicious or

 

Does it check with PAN-DB service fo

...

  • 24197 Posts
  • 100 Subscriptions
Top Liked Authors
Labels