General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 600 Views
  • 0 replies
  • 0 Likes

Security Policy organization best practices?

We're working on an audit of our security policies to start getting rid of some generalized rules and start making things more specific.  I figured we could do some organization at the same time.  I'm curious how others are organizing their security

...

jsalmans by L4 Transporter
  • 4039 Views
  • 2 replies
  • 0 Likes

Resolved! Block Domain on NGFW

Hello,

 

can you anyone let me know how i block access based on domain name, e.g. i want a rule to allow all SMTP inbound except from domain testblock.com, how do i do this?

 

Thanks

 

Ryan

Resolved! Global Protect Portal Cached credentials

Under Global potect client logs i see in PAN GPA logs

 

cached credential for the portal

 

does it mean it i using username and pw for only the portal connection?

 

if i do not want portal to use cached credential what config change i need to do?

MP18 by Cyber Elite
  • 16343 Views
  • 3 replies
  • 0 Likes

Resolved! Policy not catching correct traffic

Hi all, first time poster so go easy!

 

We're running into an issue where a rule that is meant to catch ether-ip traffic on port 20033 is slipping through and being caught by a lower rule which allows any application and service. Rules as follows:

 

 

Whe

...

rules.png
rulebig.png
cli.png

HA1-B down on 3200 series

I've been doing some tinkering with a pair of 3220s and am noticing that in the GUI it's reporting HA1 Backup is down in the HA widget of the dashboard if I use the HA1-B port.  HA1-A is up, and if I use the management port for HA1-Backup, it comes u

...

dan731028 by L3 Networker
  • 10901 Views
  • 6 replies
  • 0 Likes

Resolved! Adding a sub-interface to an exsiting Security Zone

Hi,

 

I have a Palo Alto with existing security zones managed via Panorama. I need to add an existing sub-interface to an existing security zone which has been done on Panorama and committed. However, after logging into the firewall node directly the s

...

vvadia by L1 Bithead
  • 6590 Views
  • 6 replies
  • 0 Likes

move subinterfaces to new aggreagate group

Hey guys,

I got a pair of PA-3020s (8.0.7) and 2 ae's with a lof of subinterfaces. Each subinterface does have a gateway, security zone and vlan tag.

Out of permonance issues, I want to create a third ae with two new physical interfaces.

Then, I want to

...

MPI-AE by L4 Transporter
  • 2534 Views
  • 3 replies
  • 0 Likes

Wrong user from access log

Hello!

 

The local user Administrator is logged in on the desktop and he is not allowed to access the internet. But he can access.

When checking in Monitor on PA220, I noticed that another user appears in the Source User column and not the Administrator

...

How to view searched words using custom reports

Hello Community!

 

I´m trying to see the searched words made with different search engines. For this I wanna create custom reports and look for terms on the URL log database with the help of different query builders. I´m following the idea of this doc:

...

Carracido by L3 Networker
  • 2917 Views
  • 3 replies
  • 0 Likes
  • 23935 Posts
  • 113 Subscriptions
Labels