General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 304 Views
  • 0 replies
  • 2 Likes

Resolved! URL Filter Test A Site page is broken

For about the last week https://urlfiltering.paloaltonetworks.com/ has been broken in way that makes it impossible to submit reclassification requests.

 

I have several sites that I'd like to reclassify, but I have been unable to do so.

When will this b

...

as-mg by L3 Networker
  • 4575 Views
  • 3 replies
  • 0 Likes

PCAP with only source IP Filter and Global counters

 

Hi Everyone,

 

For certian cloud apps we do not know specific destination IP as users have given is list of urls and multiple subnets.

My question is if we do PCAP with only source IP as filter and then do the PCAP and check the global counters for err

...

MP18 by Cyber Elite
  • 1540 Views
  • 1 replies
  • 0 Likes

Resolved! App-ID Issues with Dropbox traffic

Hello,

 

We've got QoS setup on a PA-220 that classes any traffic marked with the dropbox App-ID. This class is then restricted to 2mbps. However we find that not all traffic generated by the Dropbox Sync client is marked as dropbox. Sometimes it's jus

...

Unable to get multiple global protect working.

PA3020 ,8.0.12.

I have working GP with a public ip.

I am trying to setup 2nd GP with 2nd public ip.

This 2nd ip is used as destination nat for rdp as well.

When I configure the loopback interface with 2nd ip and use it in portal and gateway ,rdp gets bro

...

How will threat functionality work with asymmetric routing

Posted this on threat discussions but havent had any responses. Please help me understand what will happen in this case.

 

I would like to understand what will happen to Threat Protection and AntiVirus(TPAV) in the following case.  Both firewalls have

...

question.PNG
SuryaR by L3 Networker
  • 1968 Views
  • 1 replies
  • 0 Likes

Seeson end reason aged out

HI friends,

 

We have created interzone rule looks like below

 

<entry name="Rule1>
<profile-setting>
<profiles>
<url-filtering>
<member>default</member>
</url-filtering>
<virus>
<member>default</member>
</virus>
<spyware>
<member>Sinkhole</member>
<

...

Rule base management best practices

Hi Everyone,

 

I'm new to the Palo Alto firewall system. My experience is with Checkpoint firewalls. I've been asked by management to look into the best practices for rule base management.

 

Currently we go through the rule and look at every rule and try

...

Log retention in firewalls and panorama

Hi, I have the following question related to log management:

 

  • why PAN-70X0 can't send event logs to Panorama ?
  • are the event logs stored in compressed format ? If so, what is the compression ratio ?

 

Regards

 

Mario

Resolved! Panorama failover and connection to Firewall

We have M100 in active and PAssive mode.

Did failover where active was suspended and passive M100 became active

 

Check the firewall it still shows connected to Suspended PAnorama and it is active one from FW point of view?

is this by design?

MP18 by Cyber Elite
  • 3068 Views
  • 6 replies
  • 0 Likes

Resolved! Minemeld SSL Certificates

Hi - 2 questions:-

 

> How do we change the default SSL certificate on Minemeld?  Standard Apache cert replacement?

> If we have a custom source running SSL with a self-signed cert, can we force a HTTPS miner to ignore the cert error?

 

Thanks!

apackard by L4 Transporter
  • 24082 Views
  • 11 replies
  • 0 Likes

Resolved! Load Partial Config: merge vs append

When loading a partial config you have 3 options:  replace, merge, append.  I can't find a description anywhere as to what exactly each of these does!  Especially between merge and append.  I did see this KB article but it really doesn't explain the

...

Packet Flow Sequence and Application Override

Hello everyone,

I have a question regarding the "AppID override" ,

In this article "https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClVLCA0" we can read the following:

"
Special Note about Content and Threat inspection
Applicatio

...

Resolved! TLS 1.3 is Coming - How to deal with it????

My security counter parts came to me letting me know that in Chrome version 70.X+ TLS 1.3 will be turned on by default.  This appears to be causing problems in our current firewall deployment:

 

A/P HA-par 5220s running 8.0.10 (soon to be 8.0.12).

 

It l

...

TLS_Error.png
TLS_1.3.PNG
  • 23650 Posts
  • 107 Subscriptions
Top Liked Authors
Labels