General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! No Traffic Logs in CLI and Gui

No traffic logs in cli and guilast log i see is midnight 2AM MST debug log-receiver stats all logs incremented tail mp-log logrcvr.log shows 2019-02-01 02:58:42.332 -0700 Error: _write_task_disk_flush_process(pan_logdb_writer.c:1501): Error executing the disk flush routine from write_task_disk_flush_process2019-02-01 02:58:42.332 -0700 Error: _t...

MP18 by Cyber Elite
  • 4839 Views
  • 2 replies
  • 0 Likes

Please recommend

Dear all, Can you recommend to use 200 users for PA firewall? What kind of firewall we should use for 200 users? Best regrets,Cardi Moe

Resolved! Failover PPPoE Connections

We have PA-200s and 220s that we provide to our branches that have their own internal range that gets advertised into our network through global protect. They all have their own internet connection but if that goes down then we have no redundancy in place. I've been looking at the multiple ISP docs for failover and i can do that successfully wit...

Resolved! URL Filtering with Any Any

Hello all, We are preparing a firewall in which the first security rule has to be :Source and Destination: ANYFrom TRUST Zone to INTERNET Zone. Application and Service: AnyAnd then there is a URL Filtering profile attached to the rule. So will this rule match all the traffic coming from TRUST Zone to INTERNET Zone. Or when URL Filtering profile ...

Does PANOS is impacted by DNS Flag day ?

Hello community, Do you know if PANOS is impacted by DNS flag day ? I know CheckPoint and Juniper SRX are impacted by this change DNS config. But I do not see any info provided by Palo alto about that. Best RegardsAndres P.

Suggestion for Panorama update

Within Panorama, while managing client firewalls, routinely the customer wants some variation of the built-in URL category restrictions. While it is great to have so many categories and for the most part they are well apportioned. However, to get around the one off requests for sites to be opened that are in a category that is blocked, it is our...

kprewitt by L1 Bithead
  • 3064 Views
  • 3 replies
  • 0 Likes

Panorama Dynamic Updates SSL Connect Error

After upgrading some of our firewall and Panorama to PAN OS 8.x, we cannot push out dynamic updates from Panorama anymore. We are still able to push out dynamic updates to firewalls running anything below PAN OS 8.x, but nothing within the PAN OS 8.x range. We verified and are not blocking port 28443 anywhere, but are getting an error when tryi...

Dynamic Updates Palo Alto.jpg

User-ID: Require some guidance on best architecture for UserID deployment

Hi everyone.We currently have a small rollout of UserID across 2 of our firewalls across 2 sites. I think there are some gaps in performance and redundancy and I'd like people's opinions about the best way to deploy UserID. Bit of background about our environment. We have approx 40 domain controllers spread across 2 domains over 10-15 sitesUser ...

URL Filteting question

We received an alert about the behavior of the virus. The malicious loader is downloaded from the URL of compromised legitimate sites, where it is disguised as an image.The URL by which the malicious loader is hosted, all addresses end with the string abc.jpg. The string in the URLs where the encryptor is hosted is:hxxp://[anything]/abc.jpg I re...

aaobuhov by L2 Linker
  • 6996 Views
  • 7 replies
  • 0 Likes

Passive Node not showing recent config

Hello, We have a cluster of two palo alto 850, the passive node is not syncing config with the active node despite dashboard claiming they are in sync. Pushing the config from panorama is successful however the passive node does not show the most recent config.How do we fix this issue? Thanks in advance!

User-ID & Fast User Switching?

Is there a best practice for making the Palo able to realize who is currently actually logged onto the machine, or are we forced to disable Fast User Switching for this? (Windows 10) I know currently that if user A logs in, it knows it's A. If we switch user and B logs in, it then knows it's B. However if we switch user back to A, the logs ca...

Resolved! Admin Roles restrict commit from Panorama

We have Panorama managing the firewalls.certain admin role name we do not want them to do commit on the panorama and firewall. so we want if user log into panorama and from there if he go to firewall context or he directly log into firewall thencommit should be disabled. I logged in to the panorma and under panorama admin roles i disabled the...

MP18 by Cyber Elite
  • 3635 Views
  • 2 replies
  • 0 Likes
  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels