General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 448 Views
  • 0 replies
  • 2 Likes

show counter interface management multicast packets dropped

show counter interface management


Interface: Management Interface
-------------------------------------------------------------------------------


-------------------------------------------------------------------------------
Logical interface counters:
-

...

MP18 by Cyber Elite
  • 5149 Views
  • 7 replies
  • 0 Likes

PAN-OS 8.1.3 in production environment?

Anyone running 8.1.3 in prod? I have a change window to upgrade this weekend from 8.0.3 to 8.1.x as we wish to make use of the split tunnel by URL feature in GP, but reddit has filled me with some horror stories

welly_59 by L3 Networker
  • 3391 Views
  • 7 replies
  • 1 Likes

Resolved! Pan(w)achrome stats collecting?

Hello folks,

 

We are going to be moving datacenter soon and changing our ISP.  We plan to consider a 1Gbps Internet line coming in.  Not sure of exact upload vs. download at the moment.  In preparation, I am being asked to characterize our traffic, co

...

OMatlock by L4 Transporter
  • 2881 Views
  • 3 replies
  • 0 Likes

Resolved! DOS protection alert test

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClL3CAK

 

I am using the above linked KB to create DOS profile and policy for a particular server, but i have not changed the defaults as i donot want it start actioning on it ri

...

raji_toor by L4 Transporter
  • 4999 Views
  • 8 replies
  • 0 Likes

Routing traffic from branch through HQ to vendor

 

Currently Im labing a situtation where I'll need to have branch users route to a vendor through HQ via IPsec tunnels. Users at my banch access can acesss Web/HQ services though the HQ firewall, but when accessing the vendor. Logs show from HQ the at

...

example.jpg
k.truex by L1 Bithead
  • 3765 Views
  • 2 replies
  • 0 Likes

Monitoring VPN tunnel status

Hi,

 

I would like to monitor VPN is UP using NAGIOS. I think its necessary configure tunnel monitor for this, right??? what are the options to monitor VPN is UP? and monitor config profile.

BigPalo by L4 Transporter
  • 2615 Views
  • 3 replies
  • 0 Likes

Log s for Firewall generated Traffic

Hello All - I am not seeing logs in the monitor section, when i generte traffic from Paloalto Firewall itself. For example,  when I ping 4.2.2.2 from the Firewall, i am not seeing logs showing for.

 

Is it a known behavior? or i missing something? is t

...

Link Aggregation - IP addressing

So I configured Link Aggregation on my PA5260 running 8.1.

 

The first pair of links in ae1.8 comes up perfectly using 192.168.255.3/25 as the IP address. The second pair of links in ae2.9, however, refuse to respond on 192.168.255.131/25. The second p

...

PaloAlo ports not coming up!

Hi,

 

I am configuring some new PA850s and interfaces are set to Vwire mode. ports are connected to cisco switch but they are not coming up.

 

they come up and go down. here are settings from cisco side:

speed 1000
duplex full
no mdix auto

 

paloalto ports:

sp

...

qasim02 by L2 Linker
  • 7373 Views
  • 7 replies
  • 0 Likes

Importing Logdb into different devices

I'm trying to import logdb coming from a PA-2050 to a smaller devices like VM-100, PA-200 or PA-500 but without any luck. Has anyone successfully tried this operation?

The command scp import logdb from ... seems ok but in the end no data is shown unde

...

NGS_SOC by L3 Networker
  • 4217 Views
  • 2 replies
  • 0 Likes

MineMeld can not get O365 JSON format list

[Failure event]
In the case of O365 's xml format, when MineMeld received traffic after ClientHello, I got a list but if I set config for JSON support I can not get a list.

[Prerequisites]
MineMeld will go through Paloalto and do Internet communication

...

Resolved! Implicit web-browsing and ssl

I've noticed that some App-IDs have web-browsing and ssl implicit to the application while others they are dependencies.

 

Is there a reason for this?

Are the App-IDs being updated to make these 2 applications implicit?

 

For instance, I'm setting up fire

...

  • 23703 Posts
  • 110 Subscriptions
Top Solution Authors
Labels