General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2156 Views
  • 0 replies
  • 0 Likes

SSH Decryption

Hi. If my FW is doing SSH decryption and sending all decrypted traffic out of a mirror port where my Kali machine is, what tools would be able to "read" the username/password from the decrypted SSH traffic?

 

I was looking for something similar to what

...

Resolved! Disable HTTPS

I am running pfBlockerNG.

It cannot connect to Minemeld because of the self-signed certificate.

This is for my home, so I don't have a signed certificate to use.

Is it possible to simply disable SSL on the web server so I can get past the cert error?

 

Th

...

jonjon by L1 Bithead
  • 8579 Views
  • 5 replies
  • 0 Likes

outside to inside nat tcp and udp specific?

i have a situation where outside users will tupe in a public ip which the palo alto will nat it into a inside privtae address like

destination "public" x.x.x.x port udp 8443   >>> translated destination "private" y.y.y.y udp 8443

 

,but when i tired to

...

Capture1.PNG
Capture2.PNG
Capture.PNG
chuckles by L2 Linker
  • 7412 Views
  • 5 replies
  • 0 Likes

Resolved! GlobalProtect with MFA - Always On

I was wondering if anyone here using GlobalProtect with MFA, such as Duo, Okta or Ping.

 

Currently, clients portal app is set to User-Logon (Always On).  I'd like to implement MFA for GP, but also keeping the always on functionality.

 

The question is i

...

MikeC by L3 Networker
  • 15699 Views
  • 11 replies
  • 0 Likes

TAP multiple virtual routers

Has anyone successfully setup a TAP interface on a pair of 5220s with multiple VRs to send the traffic to a single TAP interface/zone?  Trying to integrate a sensor appliance in, but it's not passing any traffic...open to any suggestions at this poin

...

Resolved! two Internetconnection IpSec build

Hello, I have two PAs and want to build IPSec tunnels between them. one PA A has a static IP. The other PA B has two internet connections. One with a static IP and one with a dynamic IP. Now I want to build two tunnels from device B to the A side. my

...

Resolved! Granular URL Monitoring

I want to be able to grab full URLs when specific sites are visited e.g. github so I can see what app/repo is being hit. Right now all I get is the domain.

 

How granular can URL monitoring be? Can I get a full URL from URL filtering or URL category hi

...

mike406 by L2 Linker
  • 6521 Views
  • 6 replies
  • 0 Likes

confused with PA-220 licensing and features

im having difficulty understaing the licensing on palo alto , from the attached pictures do i have the anti-virus , vulnrability protection , anti-spyware , url filtering , file blocking , data filtering and wild fire? or does each of them need a lic

...

licenses.PNG
chuckles by L2 Linker
  • 5325 Views
  • 3 replies
  • 0 Likes

Resolved! PA HA failover and IPSEC connection shows inactive

 

Yesterday during PAN OS upgrade when Passive PA became active I saw that our IPSEC connections stopped working.

 

CLI shows status as inactive

I did clear vpn command

test phase 1 and phase 2 still samething.

 

Only way to make this work was via restartin

...

MP18 by Cyber Elite
  • 13849 Views
  • 6 replies
  • 0 Likes
  • 24247 Posts
  • 119 Subscriptions
Top Liked Authors
Labels