General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 776 Views
  • 0 replies
  • 0 Likes

Resolved! Newbie - GP and NAT

1) this is for a home use environment.

 

2) I have successfully configured Global Protect to work external. 

 

3) I have PLex running and need to get it communicating to the world. Was able to do this before GP by setting "Service" to "any" in the NAT ru

...

ckg1999 by L1 Bithead
  • 7261 Views
  • 15 replies
  • 0 Likes

Static NAT between virtual routers

Hi,

 

I'm going to migrate a Juniper SRX firewall with a Palo Alto VM-500 firewall.

The case: The Juniper firewall is configured with multiple virtual routers. Between this routers we can static NAT subnets. As showed in the picture below, we have 2 vir

...

Juniper-SRX-VR-Prinsipp.png
JohnOlav by L0 Member
  • 3624 Views
  • 1 replies
  • 0 Likes

Resolved! Forum Location for Education institutes

Greetigns

 

Is there a section of the forum where people involved with education Institutions.

 

I want to get some idea of how and what people allow when dealing with Children in a school when the age ranges from 8 years old up to 17 years old. as well

...

Wykeham by L1 Bithead
  • 2561 Views
  • 2 replies
  • 0 Likes

Log percentage and space

If logging is set to allow up to 95% space on the disk and it hits 95% that same partition,/dev/md6 3.8G 3.2G 454M 88% /opt/panrepo      - PAN-OS Image repository.(Device/Software), resides the PAN OS what happens when you hit 95% on logs and try to

...

jdprovine by L4 Transporter
  • 3708 Views
  • 6 replies
  • 0 Likes

Resolved! Wrong IP calculation after Whitelisting on MineMeld

Hi, 

 

I have installed MineMeld  and it works fine. Before creating our configuration I wanted to test something on Whitelisting as it is going to help on what we are aiming to do with MineMeld.  I hope the below finding is a configuration mistake o

...

StamL by L0 Member
  • 4837 Views
  • 3 replies
  • 0 Likes

Intrazone Rules

Hey guys,

I took over a Palo Alto Firewall and I noticed that there is a intrazone allow rule at the end for every single internal zone.

So source zone: internal zone xy

source address: any

destination zone: internal zone xy

dest address: any

application:

...

MPI-AE by L4 Transporter
  • 5436 Views
  • 6 replies
  • 0 Likes

Resolved! When to use ZoneProfile and DoS Profile

Hello All - Can i understand that Zone Protection Profile is to Protect Firewall itself and DoS Protection Profile is to protect the servers and hosts behind the firewall from Internet?

Can i achieve a DoS protection (For example SYN Flood attack) onl

...

GlobalProtect - Windows 7 Issue

The company I worked for observed an unusual error today with just Windows 7 users of GlobalProtect

Windows 10 & Macos users were unaffected.

 

We use okta verification to allow authentication btw

 

In a nutshell, did some testing in virtual machines runn

...

capita.png
Windows 7 2018-09-13 16-01-38.png
Windows 10 2018-09-13 16-08-02.png
carterg by L2 Linker
  • 10372 Views
  • 3 replies
  • 0 Likes

Resolved! CDR report

Did anyone receive a threat report from palo alto and hushly? 

"Here is your Palo Alto Networks - 2018 Cyberthreat Defense Report you requested"

jdprovine by L4 Transporter
  • 2560 Views
  • 2 replies
  • 0 Likes

Resolved! Traffic Reports Bytes Field Empty

This probably has a very obvious answer, but google searches for the solution wound up showing me irrelevant pages...probably my fault as well.

 

I am running various traffic reports, and all of them lack value in the bytes field.  Any idea what is wro

...

2018-10-03 07_52_18.png
colesch by L2 Linker
  • 3308 Views
  • 4 replies
  • 0 Likes

Panorama - Commit getting stuck at 0%

I have got PAs in two DC, each DC have PA in active-passive unit, when I commit to one of the pairs in one of the DC, the committ is stuck at 0%.

 

I see the Panorama is connected to "Passive" FW instead of the active FW , could be the reason why the c

...

Resolved! MineMeld can not get O 365 JSON format list

Hello

 

[Failure event]
In the case of O365 's xml format, when MineMeld received traffic after ClientHello, I got a list but if I set config for JSON support I can not get a list.

 

[Prerequisites]
MineMeld will go through Paloalto and do Internet com

...

  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels