General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! application dns and action reset both

 

need to understand deeply reset both action by PA for dns query in threat logs

I know PA send the tcp fin to both ends.

 

But client who is doing dns query if it does not get reply what does it shows there ?

does the client again makes query?

 

or does PA

...

MP18 by Cyber Elite
  • 5178 Views
  • 11 replies
  • 0 Likes

Resolved! suspend active panorama when passive panorama is rebooting

 

If passive panorama is going through reboot.

 

Active Panorama  shows passive panorama as unknown   

 

what will happen if i suspend the active Panorama ?

 

will all the firewalls connected to the Active panorama will get disconnected?

MP18 by Cyber Elite
  • 3085 Views
  • 6 replies
  • 0 Likes

Resolved! Source Users and Source Users Reported as "None" By FW

Hello,

I'm on version 8.1.2,  in ACC tab I do have a User Activity "widget" or pane that shows Source User, Destination User, Bytes, Sessions, Threats, Content, URLs and Apps. Always the Source User, presents "None" for Source User and also I see "Non

...

Restrict network access for mobile devices

Hello,

 

I have an environment where mobile devices are managed using MobileIron. I want to restrict network access such that the only mobile devices that can connect are managed and belong to a known user.

 

What is the best way to approach this problem

...

mikembau by L0 Member
  • 1868 Views
  • 1 replies
  • 0 Likes

Resolved! GlobalProtect - To which ethernet interface? WAN Facing?

Greetings,

I am setting up GP on a small home office PA220 .  I have a single E 1/1 Untrusted L3 interface that is internet facing.

My logic tells me this interface should have the GP configured on it.  However, the documentation and video turtorials d

...

catrock by L2 Linker
  • 4926 Views
  • 6 replies
  • 0 Likes

Almost all traffic identified as unknown-tcp?

We are seeing some of our Palo's periodically logging (almost) all traffic as unknown-tcp.

 

As the traffic is being allowed through (and logged against) rules that do not allow it we assume this is a problem with the logs, rather than traffic being mi

...

apackard by L4 Transporter
  • 4121 Views
  • 4 replies
  • 1 Likes

Resolved! Flags field in csv file

i have a question about flags in csv log.

 

 

 

do you know what does mean Flags 0x19?

in NTP OR DNS logs, flag is 0x19.

Thanks.

20180802_154251.png
hbshin by L2 Linker
  • 9032 Views
  • 8 replies
  • 0 Likes

Application dependency behavior

Rule 1 blocks apps A & B

Rule 2 allows the same apps as they are included in an application filter, along with otyher apps.

 

Why do i see app dependency warning for the apps that are blocked by rule 1, & how can i resolve this.

 

Rule 1 allows apps A & B

...

raji_toor by L4 Transporter
  • 2203 Views
  • 1 replies
  • 0 Likes

OSPF Issue in 8.1.1

Hello,

 

I am facing a flapping issue in OSPF, where the neighbor keeps going up and down, I tried adding a static route but the connectivity still drops packets between two devices behind the firewall on one side and behind the other mpls router on th

...

u-turn - why?

Hello,

i'm moving complex configuration from Juniper's ISG2000 (ScreenOS) to PA-5220 and i faced a problem with internal servers (in DMZ zone) which should be available for everyone (including our own employees) on public IP addresses.

 

On ScreenOS it

...

MarcinR by L1 Bithead
  • 6589 Views
  • 9 replies
  • 1 Likes
  • 23560 Posts
  • 106 Subscriptions
Labels