General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

How and Why to Accept a Solution to Your Post

Did you know that you can help your fellow community members by accepting solutions when a reply answers your question Accepted solutions are a super-helpful resource in the community, and we want to make sure our members understand how this feature

...

JayGolf_0-1691518400714.jpeg
JayGolf by Community Team Member
  • 1955 Views
  • 1 replies
  • 11 Likes

Directory Sync Service Certificate

Hello All.  I set up the directory service for the first time yesterday.  Everything works, but I noticed the certificate I have to create is only valid for 3 months.  Do i have to renew it every 3 months?

dan731028 by L3 Networker
  • 1472 Views
  • 0 replies
  • 0 Likes

Captive Portal - Terms of Service

I would like to configure my PA-200 in such a way that when the user tries to browse a web site, he is presented with the captive portal. On this page I would like to display a "Terms of Service" banner telling him about acceptable use etc. I do NOT

...

u13001 by Not applicable
  • 12256 Views
  • 36 replies
  • 2 Likes

Captive Portal NTLM and responce page

Hello

 

Today I configured for one of my zone insted of default-web-form default-browser-challenge.

When I try to open new session on computer that isnt a Windwos AD machine i got:

and when I clicked Cancel:

 

I'm pretty sure that above message is possible

...

2018-06-20_203000.jpg
2018-06-20_203012.jpg
_slv_ by L4 Transporter
  • 2871 Views
  • 2 replies
  • 0 Likes

limitation when monitoring uptime with snmp

Hello Community.

 

I have an inquiry with which maybe you can help me. This is the situation:

 

In order to know the uptime I´m using the OID 1.3.6.1.2.1.25.1.1.0 to get the value of object hrSystemUptime. This is a counter of 32 bits and considering it´

...

Carracido by L3 Networker
  • 2862 Views
  • 4 replies
  • 0 Likes

panMgmtPanorama2Connected custom poller = Not-Connected

can someone tell me how can we troubleshoot palo alto firewall disconnection from Panorama. I tried to check system logs but there are no enough logs to troubleshoot it. 

 

logs

FW has lost connection to panorama, no log will be forwarded

Disconnected fr

...

SSL Forward Proxy Decryption with ECDSA Cert?

Just wondering if it's possible to use an Elliptical Curve DSA cert with CA and Trusted Root to be the Forward Trust Certificate for the SSL Forward Proxy decryption feature? 

 

Reading about the Perfect Forward Secrecy feature here:

https://www.paloalt

...

jsalmans by L4 Transporter
  • 2594 Views
  • 2 replies
  • 0 Likes

user-ID user mapping problems

Our PA 4.1 has problems mapping entries received from user-ID agent and LDAP queries.

show user ip-user-mapping command produces following output:

192.168.1.1 AD        grybai\vltr12345678

Here grybai is our NetBIOS domain name for domain and  vltr1234

...

SimasK by Not applicable
  • 2811 Views
  • 3 replies
  • 0 Likes

Resolved! Please suggest about mac-address control

Hi expert ,

 

I would like to know about suggest mac-control because  my customer  use Fortinet which use device control   and I will replace and migrate  to Palo-alto if that possible about control this thing .

 

Thank you