General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Palo Alto and Panorama integration/availibility question

Hi all, I have some questions about integration between PA firewall and Panorama.In my scenario, there's one cluster of PA devices and only one Panorama device.The firewall policies were imported from the cluster into Panorama (Pre-Rules in the Device group).I performed some changes on policies and pushed them back to the cluster. Until now, eve...

licenselu by L4 Transporter
  • 5540 Views
  • 4 replies
  • 0 Likes

pre-stage changes in Panorama

Is there a good way to pre-stage changes using Panorama? Sometimes I have needs to make a rather complex set of changes in various areas, but I don't want to commit them to the firewall for days or even weeks. Is there a good way to handle this? I know that in version 8.0.x of Panorama, that I can commit all changes or just my changes. I can ima...

Fail Over using Path Monitoring & NAT configuration

I have a firewall wth 2 broadband circuits connected to it, one primary & one secondary. My goal is to PAT all outbound traffic usinging the primary interface's public address but in a fail over situation I want to PAT all outbound traffic using the secondary interface public address. I configured path monitoring and believe that the static...

Resolved! Static route path monitoring recovery

I've configured static route path monitoring on primary ISP. When it if fails secondary ISP comes up. Do I need to configure static route path monitoring on secondary ISP for primary to come back when the circuit recovers? Thank you

treese by L3 Networker
  • 7523 Views
  • 4 replies
  • 0 Likes

New throughput measurements values with 64KB HTTP/appmix transactions

Hi all , As all you know, the throughput measurements definition changed with 9.0 version. But there are two values forexample PA-5220 firewall throughput value is seen as 17/20 Gbs . So why we are using two values here? What does HTTP/appmix transactions mean? How we compare this new measurement with previous ? Also how we calculate this new m...

Traffic vs Threat Logs

I am searching for the reasons behind the relatively large disparity between traffic logs and threat logs for specified traffic searches in splunk. Redirected sessions cant be a contributed factor when the firewall is set to "log container page only"

Captive Portal

Dear Friends ! Good Morning,there is 2 questions regarding Palo alto 1. how to reset user session by GUI when he is login to PAN vial Captive Portal for internet Access ?2. how to ping, traceroute and other testings via PAN GUI Mode ?

How to secure PA to Panorama communication channel

Hey, can some one put some light on the authentication & authorization of the PA to Panoram ommunication channel? from what i know is that on panorama side we must have the SN for initial communication.what happens from the point that the PA first contact panorama ? what happens on regular basics on the communication between the PA and the ...

minow by L4 Transporter
  • 4243 Views
  • 1 replies
  • 1 Likes

Best way to identify Macs for URL filtering?

All the Macs are AD joined and everyone logs into the domain. Problem we are having is that after a few hours the Macs are not identified any longer and the URL filtering stops working. The Mac users are creative and get some relaxed filtering....so they can't go to sites they are allowed to go to that the general population is not. Is there a s...

Internet Access Captive Portal

Dear Friends ! i have restrice Internet Access to Clients but before they fall in to Captive Portal Page, they reach to google.com https certificate then PAN poral Certificateas well the Clients are able to ping, traceroute destinations in Internet before they login to Captive Portali would like to configure PAN in such a way to 100% restrict cl...

Resolved! Cust Data Pattern for Azure Information Protection (AIP)

Hello, We're looking to leverage Palo Data Filtering to provide some DLP in our enterprise. PANOS 8.0.12 on a 5020 pair. Microsoft shop running Win 10, and we have implemented Microsoft Azure Information Protection (AIP), which is MS's labeling/protection mechanism. MS Publishes the DLP Tag information here. They call it a 'Custom Property.'...

  • 24412 Posts
  • 125 Subscriptions
Top Solution Authors
Labels