General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4228 Views
  • 0 replies
  • 0 Likes

Resolved! Policy Order - How to allow URL categories ahead of an IP Blocklist

We have IP Blocklists before the rules for Web Browsing. However, we need to allow some URLs that would otherwise be blocked in the IP Blocklist (subsites of Weebly, don't get me started). Right now I have a Policy above the blocklist that alertss http/https with Service/URL Category/URL Category set for the Custom URL Category for the exempti...

Resolved! Cannot access PAN Webgui

Hello, Recently we performed a decrypt change to allow website to bypass decryption.Now no user can access the PAN Webgui https.Tried in different browsers and from different machine but no change.Connection to FW via putty session is fine. We have rebooted the device.Kindly advise how to fix this issue.

Webpage.jpg

Issues with the MineMeld Microsoft EDL's

For the last couple of weeks we are running into an interesting issue with our Office365 EDL's. We pull the Office365 API based IP/URL list into Panorama using MineMeld. This process is working perfectly. We have compared the output within MineMeld against the EDL on our firewall and they are identical. For some reason I am seeing multiple c...

Need information on DHCP Relay

Hello. To start I had a DHCP server configured on one of the interfaces on our Palo 810 PanOS 8.1.2. The DHCP addresses being handed out were not being registered with our DNS server so I was tasked to make that happen. I figured I would just set up DHCP relay instead. Unfortunatly I cannot get DHCP relay to work because of some setting on the D...

IPsec tunnels, VPN features & licensing

I have a few PA 200's all with base license ready to install for a multisite company that needs a full mesh all over broadband internet. I am willing to manually configure each IPsec tunnel one by one if that is a free option that does not require additional licensing. Can someone give me advice on the best way to accomplish this setup and what ...

Resolved! XML Config from Panorama managed device, where are the policies?

Hi community, scenario: When provisioning a standalone firewall with panorama and performing a config-sync to a non-panorama-managed passive HA peer, there are not policies etc.After exporting the xml config from the active peer, I noticed, that the xml does not contain any policy rulesets and objects. Now I wonder:What happens if panorama is no...

Chacko42 by L4 Transporter
  • 2682 Views
  • 1 replies
  • 0 Likes

Resolved! Updating MineMeld from 0.9.50 to the latest stable version

Hi guys, I don't know if someone else have experienced that but I'm having some problems to update my standalone MM machine. I use CentOS 7.0 and started to use MM in 0.9.44 version. Following the procedures in https://live.paloaltonetworks.com/t5/MineMeld-Discussions/Stable-MineMeld-version-and-new-Office-365-API/m-p/216203/highlight/true#M222...

Full mesh for multi site over broadband

I have a few PA 200's all with base license ready to install for a multisite company that needs a full mesh all over broadband internet. I am willing to manually configure each IPsec tunnel one by one if that is a good free option that does not require additional licensing. Can someone give me advice on the best way to accomplish this setup and ...

Resolved! Atlassian custom Miner and Feed

I am trying to create a miner/feed for Atlassian IP-Ranges which they publish in a JSON file. I have configured the below and it all looks good and I have Indicators, but when I go to the feed URL it returns a blank page. I created the prototype by using AWS EC2 list which also uses JSON

JDomNY by L1 Bithead
  • 17649 Views
  • 5 replies
  • 1 Likes

Resolved! PA traps certificate expired

Hi, We have ESM Console and server using SSL certificate. This certificate has expired so we lost communication between traps and agents, and we only connect to ESM from the own server.How can i renew the certificate SSL???? Its mandatory to install executable installation traps again? thanks

Disable HTTPS

All: I'm running MM Community edition, and for lab testing I need to disable the HTTPS redirect. I have followed the guide here, but still cannot get the HTTP-only running on the nginx: https://live.paloaltonetworks.com/t5/MineMeld-Discussions/Disable-HTTPS/m-p/120623#M465 Has anyone tried this on newer versions of MM? Specifically, with the p...

KorkLM by L0 Member
  • 4372 Views
  • 1 replies
  • 0 Likes

Resolved! Error polling virus total

I'm running into an issue with the virus total miner. Once the API key is set it continues to throw this error: 2017-09-08T14:24:58 (2986)basepoller._actor_loop INFO: virustotal_notifications-green - command: 1504880698052 poll 2017-09-08T14:24:58 (2986)basepoller._polling_loop INFO: Polling virustotal_notifications-green 2017-09-08T14:24:58 (...

chirss by L3 Networker
  • 7909 Views
  • 6 replies
  • 0 Likes

Newbie: Local (wildcard?) certificate(s)

I'm running a VM-100 with several zones where I have MS AD / WSUS in one, two zones with lots of wireless device management, another zone for vmware management etc. Every day I run into web browsers yelling about unsecure acces to local device management due to lack of trusted certificates. I know I can just continue to create and import local ...

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels