General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 241 Views
  • 0 replies
  • 0 Likes

Resolved! Moving Colo Datacenter

Hi folks,

 

We got some dreaded news that our colo vendor is not renewing lease and we are now moving.

We have two 3020 firewalls configured in HA.

 

I am looking for any general comments that could help in my direction.

 

One thought:

  • Break HA.
  • Take secondar
...

OMatlock by L4 Transporter
  • 5014 Views
  • 7 replies
  • 1 Likes

Palo Alto against spam

hello

İn the network users get many spams.We dont have any other anti-spam solution.Is it possible to stop spams by Palo Alto NGFW?

Radmin_85 by L4 Transporter
  • 9148 Views
  • 4 replies
  • 0 Likes

Resolved! Global Protect Migration Assistance

Hello!

 

So, we inheritted an infrastructure with a few hundred VPN users whose Global Protect clients were all deployed pointing to the IP address of the GP Portal (not an FQDN). And, of course, we are now in a position where that physical site (and i

...

locampo by L2 Linker
  • 7119 Views
  • 6 replies
  • 0 Likes

Aruba AP Tunnel Problem

Hello, I'm having problems with Aruba AP connection through a FW.

 

I got my APs in the inside zone, and the controller is in a DMZ. Previously I had a security rule that allowed aruba-papi and syslog app and the AP connected to the controller without

...

gmunoz by L1 Bithead
  • 5294 Views
  • 3 replies
  • 0 Likes

Youtube working from - youtube application in phone

Hi Team 

 

as per the requirement youtube needs to be blocked , 

we have blocked youtube with applcation , url category and it is blocked on browser. 

but when customer accessing the youtube application it is not getting block even though it is hitting t

...

Rameshwar by L3 Networker
  • 1862 Views
  • 1 replies
  • 0 Likes

inbound ssl decrypt and iphone

Hi

 

Seems like I am having issues with iphones and inbound ssl decrypt with 8.0.12

 

any one else having this issue. seems like 0-200k of data is okay, after that ... dies in the arse

A

Trigger/logs DoS policy

Hello,

 

We would like to be notified when there is a high number of requests to our servers, and even to control them in time. Aside to be able to see an event in the logs (as it is the case with the flood in the sessions)

 

The configuration we are loo

...

BigPalo by L4 Transporter
  • 2635 Views
  • 2 replies
  • 0 Likes

Can't Update License from License Server

I recently bought a used PA-200 off ebay just to play with and learn on. It's been factory reset and has no licenses loaded. I am unable update the license from the license server. I do not have a support contract. I suspect I'm just hosed, but wante

...

Resolved! GlobalProtect with Certificate Profle

I have configured GlobalProtect to use Authentication Profile using LDAP (sAMAccountName) and a Certificate profile.

 

I have user certificates pushed through Group Policy.  The configuration works. However, I noticed a few things

 

1) If I login as User

...

ce1028 by L4 Transporter
  • 5678 Views
  • 5 replies
  • 0 Likes

Resolved! Received conflicting ARP on interface ethernet

Hi all, after exporting the old config from my old pa500 to the 820, I had an old interface that was for my  wifi vlan, that used to be a physical int on the 500 but I needed to remove it since now the 820 only has 4 ethernet ports, I reset it as a s

...

cdcirexx by L2 Linker
  • 13788 Views
  • 7 replies
  • 0 Likes

502 Bad Gateway Errors

I've recently noticed that I've started to receive '502 Bad Gateway' errors when trying to connect to a couple of specific websites (two so far).  I use a PA-200 as my home network boundary device, running 8.0.3.  I know that it's an issue with my fi

...

Sbarlock by L1 Bithead
  • 12637 Views
  • 5 replies
  • 0 Likes

Guest Captive Portal Auto-Registration Page

Hi,

 

my customer have an PaloAlto 5050 , and he need to configure captive portal wifi guest access,

my question is : is it possible using palo alto captive portal to have a form with the following information to fill (by the guest)

 

  • first name
  • last name
  • e
...

Resolved! SSL Decryption just some users

Hello everybody,

 

I'm struggling thinking how i can do this. I've implemented SSL Decryption in the Palo Alto FW and i just tried with two IP's  with a succesful result.

 

Now i would like to open the range. I want to apply that decryption rule to an OU

...

Deleting Security-Policy Rules from CLI

I'm trying to find a way to mass delete a couple of rules from the CLI. Is there a way to do this?

I know you can run something like:

 

> show running security-policy | match Minemeld|MineMeld

But I have not found a way to actually remove one of the matc

...

fospina by L0 Member
  • 4097 Views
  • 1 replies
  • 0 Likes
  • 23624 Posts
  • 107 Subscriptions
Labels