General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PAN OS 8.1.5 - Thoughts?

Hi there! Has anybody had the chance to play with PAN OS 8.1.5 yet in Production? Are there any noticable issues? I've been locked into this killchain of bugs ever since we made the leap to 8.1.0, and I'm just wondering if this build will be the "sta

...

Fr4nk4 by L2 Linker
  • 11674 Views
  • 18 replies
  • 0 Likes

Resolved! Unallowed to apply NAT rule

Hello,

 

I'm trying to configure double NAT rule (SNAT + DNAT) using Panorama 8.1.4 managing PA 5220 devices running PanOS 8.0.14.

 

I can valid / commit configuration on Panorama, but when pushing config to devices I get following error message :

 

  • vsys -
...

Resolved! Export Qos Interface Statistics

Hi just wandering if you can export QOS interface statistics once you have configured your specific interface profiles..  You can view these statistics in realtime but l can only seem to export to PDF/CSV the configuration ?  Unless there is another

...

acmi by L1 Bithead
  • 3259 Views
  • 2 replies
  • 0 Likes

Resolved! Security Policy Best Practice

Hello all,

I've read multiple documents from PA and read some on the forums here, but cannot find anything definitive on this.

 

What I'm trying to find out is what is the best practice/most effective way to configure a Security Policy for filtering. I

...

GCSS-RT by L2 Linker
  • 2491 Views
  • 2 replies
  • 0 Likes

CheckPoint / Migration Tool / Panorama

I have been through the process of getting the files from CheckPoint, going through the migration tool to eliminate unused address, services, etc.  I have completed the merge, generated the XML & SET files.

 

I want to get these configuration files int

...

Help with "blutmagie.tor_exit_nodes" miner prototype

I'm trying to create a miner that generates a list of TOR exit nodes for consumption by PAN-OS in an EDL. I found the "blutmagie.tor_exit_nodes" prototype and built a graph. My graph uses stdlib.aggregatorIPv4Generic for the processor node and stdlib

...

Resolved! Query on Log Forwarding

Hello,

 

We would like to send traffic logs to both Panorama and OpManager (Syslog Server).  How can get this configured?

 

We followed the link below but when we go to Policy>Action to forward the log we are not able to select both Panorama and OpManage

...

Actiontab.jpg

Resolved! Query on URL filtering

I found this article on URL filtering.

My question is how is *.baidu.com not allowing mp3.baidu.com or news.baidu.com as well

What does *. signify or equate to this scenario.

 

ALso is there is any need or scenario in which we would need to add 

www.baidu

...

Resolved! Custom Prototype for 'basic' weblist mining

Hi,

 

I'm trying to create a new custom prototype to ingest a list of URL's that is hosted on a simple webserver.

 

badman.one/1/2/3 badman.two/ badman.three/2/3/4/5.exe

The list is published as above, and it works perfectly when I use as an EDL sour

...

apackard by L4 Transporter
  • 3320 Views
  • 2 replies
  • 0 Likes

Resolved! Site to Site tunnel

Hello

 

I have a question about the configuration of the ipsec tunnel, in the article when the tunnel interface is created

 

"Optional) If you want to assign an IPv4 address to the tunnel interface, select the IPv4 tab, and Add the IP address and netwo

...

Resolved! WildFire phishing emails allowed instead of blocked?

Hello Everyone,

 

I note that when I view the Monitor -> Wildfire Submissions activity on my Palo Alto PA-3020 8.1.6, all the detections with a verdict of "phishing" with a Severity of "high" are allowed. 

 

However, the other verdict I can see, which is

...

  • 23712 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels