General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Azure DC : Creating a MineMeld feed from an XML file

Hello I'm trying to create a mine meld feed that will somehow download and read an XML file (or just read and xml) which contains a list of Azure datacenter IP addresses , which I can use to apply to my PAN firewall. Any help/direction is appreciated. XML file can be downloaded from; https://www.microsoft.com/en-us/download/confirmation.aspx?...

carysoc by L1 Bithead
  • 6107 Views
  • 2 replies
  • 0 Likes

Resolved! Is it possible to skip 8.0 and go straight to 8.1

Good morning everyone we are running 7.1.x right now and are wanting to move to 8.1.x. Does anyone know if it is possible to install 8.0 dont reboot then install 8.1.x then reboot or do you have to reboot after 8.0 and then reboot after 8.1.x install.

Understanding Panorama & Firewall Configurations

Our Panorama server has 3 firewalls connected to it, all 3 are the same model. All 3 firewalls are linked to there own seperate template, template stack & device group. Each template, template stack & device group is linked to only one firewall. None of the 3 firewalls share the same template, template stack or device group. I am won...

Exporting full applipedia list

I was wondering if there was some way to export the full applipedia list to include the standard ports and implicit use/depends on applications also. Or if this information is somewhere else that is easier to pull from than selecting on each individual one in applipedia.

Disabling NetBIOS with DHCP Option 43

All, I am in the process of migrating DHCP services from a Cisco IOS-XE switch to Palo Alto 220 firewalls. DHCP is working flawlessly however I am curious about the implementation of Option 43 for disabling NetBIOS. In the Cisco world it is implemented like this: ip dhcp pool DHCP_USERS option 43 hex 0104.0000.0002I am trying to understand if ...

image.png

Resolved! Hangout/meet configuration

Hello everybody, In my company, we are implmenting g-suite and I would like to know if some of you already did it. I'm facing some problem mainly on google-hangout/google-meet. When I try to do a hangout video and audio, I see my traffic going to stun and after, I have my traffic "aged-out" and my conference never works. Any idea ? David

Resolved! Data filtering blocking when it should not

We were testing File Blocking and found that it was blocking too much. The configuration consisted of 2 rules: - Applications = ms-ds-smbv1, File-types=any, Action=continue- Applications = any, File-types=any, Action=alert The test was to download an excel file using SMBv1, and result was blocked.We would expect that it would allow it. If we j...

Threat in "ZIP", how do you determine what request it was in??

I keep getting a specific threat logged for a "dll" which I suspect may be in a ZIP that has been inspected. I can't seem to find any information on what ZIP it was in so I can corrolate the event with our web filtering system. The threat log does not seem to give me any clues.. Cheers Rob

Resolved! Diasble 7.1 Administrative session cipher suites

Hello, A recent PEN Test has advised we disbale the Arcfour when connecting via SSH to manage the Palo Alto via CLI. We are on release 7.1.6 (pending upgrade). https://www.paloaltonetworks.com/documentation/global/compatibility-matrix/supported-cipher-suites/cipher-suites-supported-in-pan-os-7-1/cipher-suites-supported-in-pan-os-7-1-admin-sessi...

Resolved! IPSec S2S VPN between Palo Alto and 3rd party Security FW Vendor -> ISAKMP Negotiation

Hi, I am trying to setup a Site to Site VPN between a Palo Alto FW and a 3rd Party Security FW Vendor; I would like to undestand under which condition the Palo Alto FW would attempt to start an ISAKMP negotiation (for Phase 1) with the IPSec peer counterpart. I'm familiar with the Cisco ASA setup - where, for ex., the tunnel is brought up only w...

CarloInt by L0 Member
  • 3852 Views
  • 1 replies
  • 0 Likes
  • 24431 Posts
  • 125 Subscriptions
Top Solution Authors
Labels