General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4110 Views
  • 0 replies
  • 0 Likes

Clientless VPN (Web) and SSO credentials

Dear Palo Alto Experts, We have set-up a Clientless VPN webpage for certain users so that they can connect to an internal website from outside the company. When they logon to the VPN portal, with their Windows Credentials (Radius authenticaton), they are shown a couple of icons for internal webpages. One webpage uses Windows authentication to l...

GlobalProtect_Chrome.png
GlobalProtect_Edge.png

Using custom URL categories

Hi guys, We're trying to stop users from accessing webpages featuring 'momo' content. We've set up the below custom URL category and it only blocks Google searches for momo while in incognito mode, and still allows Google image and Youtube results. Is there anything wrong with this, we may have gone OTT trying to get this to work: Using asteri...

URL category.png

Block websites when using VPN

Some users started to use SoftEther VPN client on our company which allows them to bypass URL Filtering policy. How can we allow them to use VPN client but still allow or block access to certain websites. We already implemented SSL decryption rule but it is not working when they are using SoftEther VPN.

nredaj by L1 Bithead
  • 9024 Views
  • 8 replies
  • 0 Likes

Palo Alto and Panorama integration/availibility question

Hi all, I have some questions about integration between PA firewall and Panorama.In my scenario, there's one cluster of PA devices and only one Panorama device.The firewall policies were imported from the cluster into Panorama (Pre-Rules in the Device group).I performed some changes on policies and pushed them back to the cluster. Until now, eve...

licenselu by L4 Transporter
  • 5317 Views
  • 4 replies
  • 0 Likes

pre-stage changes in Panorama

Is there a good way to pre-stage changes using Panorama? Sometimes I have needs to make a rather complex set of changes in various areas, but I don't want to commit them to the firewall for days or even weeks. Is there a good way to handle this? I know that in version 8.0.x of Panorama, that I can commit all changes or just my changes. I can ima...

Fail Over using Path Monitoring & NAT configuration

I have a firewall wth 2 broadband circuits connected to it, one primary & one secondary. My goal is to PAT all outbound traffic usinging the primary interface's public address but in a fail over situation I want to PAT all outbound traffic using the secondary interface public address. I configured path monitoring and believe that the static...

Resolved! Static route path monitoring recovery

I've configured static route path monitoring on primary ISP. When it if fails secondary ISP comes up. Do I need to configure static route path monitoring on secondary ISP for primary to come back when the circuit recovers? Thank you

treese by L3 Networker
  • 7302 Views
  • 4 replies
  • 0 Likes

New throughput measurements values with 64KB HTTP/appmix transactions

Hi all , As all you know, the throughput measurements definition changed with 9.0 version. But there are two values forexample PA-5220 firewall throughput value is seen as 17/20 Gbs . So why we are using two values here? What does HTTP/appmix transactions mean? How we compare this new measurement with previous ? Also how we calculate this new m...

Traffic vs Threat Logs

I am searching for the reasons behind the relatively large disparity between traffic logs and threat logs for specified traffic searches in splunk. Redirected sessions cant be a contributed factor when the firewall is set to "log container page only"

Captive Portal

Dear Friends ! Good Morning,there is 2 questions regarding Palo alto 1. how to reset user session by GUI when he is login to PAN vial Captive Portal for internet Access ?2. how to ping, traceroute and other testings via PAN GUI Mode ?

How to secure PA to Panorama communication channel

Hey, can some one put some light on the authentication & authorization of the PA to Panoram ommunication channel? from what i know is that on panorama side we must have the SN for initial communication.what happens from the point that the PA first contact panorama ? what happens on regular basics on the communication between the PA and the ...

minow by L4 Transporter
  • 4134 Views
  • 1 replies
  • 1 Likes
  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels