General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1655 Views
  • 0 replies
  • 0 Likes

Resolved! unknown-tcp when tls decryption is enabled

I have a VM-100 in my lab. I haven't used it in while but recently booted it up and upgraded to 8.0.12.  I noticed a lot of unknown-tcp traffic for mostly any site when I enabled tls decryption. If i disabled tls decryption, the traffic is all ssl.

 

I

...

ce1028 by L4 Transporter
  • 3049 Views
  • 2 replies
  • 0 Likes

Resolved! Panorama Shared Policy Zones

Hi all,

I want to understand before I deploy shared policy in Prod 

I have 2*2 firewalls in HA (2 For DMZ, 2 For LAN) - I want to create a shared policy to both firewalls (LAN and DMZ)

For example,

In LAN I have 3 zones (Users, Servers, DMZ) 

In DMZ I Hav

...

Resolved! zone protection issue.

Hi to all!

I have such kind of problem.

I have applied Zone Protection profile on my outside(untrust) interface.

The problem is, that PAN is behind IBR(is configured as virtual wire), where are configured all our public ip.

What can we do in this case?

Th

...

Re: configure airgapped miner for on premise minemeld

Hi guys,

we recently setup a minemeld server meant for a airgapped environment and we are trying to figure out how to setup a airgapped miner with the other information found here on customizing a miner.

https://live.paloaltonetworks.com/t5/MineMeld-

...

Resolved! Traffic using unintended Security Rule?

Hello folks,

 

We have recently installed Cisco Nexus switches and UCS system.  All of our routing has been through our PA firewall and continues to be, except for a new Management network created on the Nexus switch.  We are trying to use this managem

...

pasecurityrule3.jpg
pasecurityrule2.jpg
pasecurityrule.jpg
OMatlock by L4 Transporter
  • 3960 Views
  • 5 replies
  • 0 Likes

Query on HA pair upgrade

Hello,

 

We are using PAN-OS 7.0.2 which is end of life and wanting to upgrade to 7.1.17.
 
Can we upgrade one firewall through all the versions 7.0.2-->7.0.19-->7.1.0-->7.1.17 before moving on to another in the pair or do we have to bring both firewalls
...

Farzana by L4 Transporter
  • 3155 Views
  • 4 replies
  • 0 Likes

Miner shows 422 Unprocessable Entity

 

 

 

 

Hi,  I am trying to configure a miner that downlods a stream of IP addresses via HTTPS request.  Data stream looks like this

1.1.1.1

2.2.2.2

2.2.2.3

3.3.3.3

etc.

 

I created the following protype

 

NSFOCUS_ip-v2: class: minemeld.ft.http.HttpFT ...

otto38dd by L0 Member
  • 4153 Views
  • 3 replies
  • 0 Likes

SSL Decryption breaks certain website functionality

So I’ve enabled SSL decryption and as expected some sites or applications fail when it’s turned on. No problem I can exclude the domain from decryption.

I have a special case though, in the fact that one of these web applications is a service that my ...

welly_59 by L3 Networker
  • 4911 Views
  • 3 replies
  • 0 Likes

Resolved! Route specific traffic out backup ISP?

We have dual ISP (ISP-A and ISP-B) and utilizting PBR which works just fine.  Now I have use case whereas I have a NAT configured on ISP-B (1 to 1) and I want to force traffic to a specific destination out the backup interface.  I want to do this to

...

drewdown by L4 Transporter
  • 12772 Views
  • 13 replies
  • 0 Likes
  • 24215 Posts
  • 117 Subscriptions
Top Solution Authors
Top Liked Authors
Labels