General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 385 Views
  • 0 replies
  • 0 Likes

Default deny logging question

I notice that if a connection comes in and does not hit any policy correctly I do not see the deny in the logs. I think this is because the default behavior of the intrazone-default  rule is not to log anything. Is there a down side to setting this t

...

dstjames by L2 Linker
  • 5193 Views
  • 4 replies
  • 0 Likes

Skype SIP 5061 port allow

Hi,

I have Skype for Business Edge server, it has DMZ private IP and translated to Public NAT IP. This IP should open TCP-5061 Port to Internet and we opened. It seems traffic is passing correctly. But in real, when i do telnet test, it's fail.

It's no

...

image.png
image.png

the new versions are not shown in the panorama gui

Hello community

 

When I have to update my panorama to a new version I go to the software tab and I press the button. Check now they do not show me the new versions I only see the version that is installed in the panorama.

 

Is there any solution to sh

...

Additional network interfaces Dell R630

Hi all,

 

We are going to buy a Dell R630 for running Palo Alto VM100.

 

As this box has only a few standard broadcom interfaces on board, which NIC card would you recommend to more network ports.

4 Gigabit ethernet ports is sufficient in our case.

 

Some p

...

Resolved! Block Category based on local group

 

INFO:
-Palo 3320 PanOS 8

 

GOALS:

I have list of users and groups in local palo database
I want to block SALES group to access porn sites but allow DIRECTOR group

 

QUESTIONS:

1. should I use subinterface

2. since director mac address can't be seen if using

...

2019-07-10 07_57_27-Window.png
nbctcp by L1 Bithead
  • 2942 Views
  • 2 replies
  • 0 Likes

Resolved! minemeld-engine is hanging in STARTING state

I installed Minemeld on a fresh Ubuntu 16.04.6 LTS with the instructions "Manually Install MineMeld On Ubuntu Server 16.04"  but the minemeld-engine is hanging in STARTING state.  minemeld-engine.log shows a couple of directory not found messages for

...

Resolved! DPD palo-to-checkpoint vpn issue

I have a vpn tunnel from palo to checkpoint(peer side). Only one proxy id seems to be having issues intermittently. the other network engineer is asking me to shut off DPD on palo since checkpoint doesn't know how to process them. did anyone experien

...

PCNSA online proctored exam

Hi,

 


I want to take Palo Alto Networks Certified Network Security Administrator (PCNSA) exam. I studied by myself , and I'm not from any academy or customer . And I want to take the exam online at home . I signed up in pearson VUE site , but I don't k

...

PaloAlto.PNG
meisam by L0 Member
  • 4636 Views
  • 4 replies
  • 0 Likes

Resolved! Wildfire API Quota/Limits Question

Hello.

 

A couple questions about WildFire:

 

1) I read here that the quota for WildFire is 1000 submissions per day. Is there a way to increase that limit (i.e. pay for larger subscription)? I didn't see anything in the documentation that mentioned that

...

Resolved! No Module Named datetime

Hi all,

I have updated ubuntu server from version 14.04.05 to 16.04.06.

When i run the follow command :

$ sudo -u minemeld /opt/minemeld/engine/current/bin/supervisorctl -c /opt/minemeld/local/supervisor/config/supervisord.conf status

i got the follow er

...

noModulNamedDateTime.png
Chango by L1 Bithead
  • 4724 Views
  • 2 replies
  • 1 Likes

filter based on age

How would one filter the OTX reputation database so only objects see more than 5 days ago are removed?

 

I have tried to edit the miner with age out config below however im not convinced thats the right place to do it. Failing that what are people do

...

depps by L1 Bithead
  • 3576 Views
  • 3 replies
  • 0 Likes
  • 23841 Posts
  • 112 Subscriptions
Top Liked Authors
Labels