General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 197 Views
  • 0 replies
  • 0 Likes

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 879 Views
  • 0 replies
  • 0 Likes

Custom extensions for file blocking

I've got our PA setup to block file types that are risky.  But, I've found a problem with Symantec LiveUpdate pulling down the update files it needs.  It uses a couple odd file types that aren't in the list as types that I can allow for a profile.  I

...

Problem with GlobalProtect password.

Hello all!


If we put a sterling pound (£) symbol in a user password, the authentication fails. We are using GlobalProtect 4.1.8 and use a RADIUS server running Microsoft Azure MFA server on the authentication profile of the GP gateway, with just an LD...

Global Protect Client 5.0 for Windows and Mac

I'm looking at the release notes for the Global Protect client for Windows and Macs, now at 5.0.1

 

Am I missing something ?

What is the reason for the 5.0 client?

I don't see that there are any new features, or changes in behavior.

 

Or is it simply that

...

gefuchs by L1 Bithead
  • 1860 Views
  • 1 replies
  • 0 Likes

Limit download file size with specific response message

Hello Guys,

 

I succeed limit the download file size with the following KB: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClhHCAS

 

However currently the user is alerted with the antvirus response page. Is there a way to provi

...

kasito by L1 Bithead
  • 4385 Views
  • 2 replies
  • 0 Likes

Resolved! Receive ping count 0

I've allowed ping traffic from an external source to the outside interface IP.

When they try to ping the firewall, I see allow traffic on the correct rule, but it only shows a send count >0 and the receive count remains 0. Also they report they do not

...

CHKlomp by L2 Linker
  • 4648 Views
  • 5 replies
  • 0 Likes

Resolved! Global Protect Gateway communication

Does anyone have insights into how often the client will talk to the gateway if used only for user-id and not utilizing a tunnel?  I know you can set the portal refresh time, but how often does the client actually talk to the gateway after grabbing c

...

Sec101 by L4 Transporter
  • 2934 Views
  • 1 replies
  • 0 Likes

Redistribution Profiles - Source Types

Hi. I need to redistrubute some routes (loopbacks, and statics) into BGP.

 

Are their any advantages to having the source type as static vs connected under Virtual Router - Redistrubtion Profile - then go into Redistrubution Profile - Source Type.

 

Than

...

Resolved! Query on Brute Force Attack

Hello,

 

Is it possible for the PaloAlto FireWall to stop brute force attacks for inbound SSL sessions without the inbound server certificate being installed on the PaloAlto?

 

Is there any KB for this?

Resolved! Proxy IDs and routing

When having Site-to-Site VPN with Proxy IDs, do we still need to configure static route with next-hop the VPN tunnel interface or will traffic matching the proxy IDs be sent over the tunnel regardless of static routes?

BatD by L4 Transporter
  • 4547 Views
  • 2 replies
  • 0 Likes

EDL file problem

Hello -

 

I have created an EDL in PANOS 8.0.0 using a feed from Minemeld 0.9.40, when I commit I receive the following message:

 

EDL(vsys1/Skype-IPv4 ip) Downloaded file is not a text file.

 

Does anyone know how to correct the error ?

 

Thanks

paul_w by L2 Linker
  • 19992 Views
  • 19 replies
  • 0 Likes

Resolved! Test Global Protect before deployment

We are currently running Global Protect 3.1.6 on PAN-OS 7.1.14 (we're a little behind) and I am wondering if it possible to test a newer version of GP before deploying company-wide.  I am new to the company and there is some concern that has lingered

...

  • 24013 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels