General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 286 Views
  • 0 replies
  • 2 Likes

GlobalProtect Client is not Connecting

 Hi there , 

 

i'm new here , hope i get a reply  

 

i'm using an ipsec tunnel between two site .

 

in the second site i'm not able to use the globalprotect , he cannot connected .

 

but , when i change the desktop dns to 8.8.8.8 it worked . 

 

any solution !

...

Resolved! Issue with Windows Insider Updates when using SSL Decrypt

PAN-OS 8.0.x

We have users not receiving updates for Windows Insider Program builds when SSL decryption is enabled.  

 

Does anyone know what changes need to be made to make this work?  I've solved a few other SSL decryption issues where decrypt-excepti

...

DMast by L2 Linker
  • 7029 Views
  • 9 replies
  • 0 Likes

Non-reordered IoC feed

I have an IP IoC feed that I would like to ingest and re-publish via MM.

 

The feed is ordered by priority i.e. earlier addresses are newer\more active\higher risk, but if I ingest and publish (miner -> output) it is re-ordered by numeric order.  Is

...

apackard by L4 Transporter
  • 2390 Views
  • 1 replies
  • 0 Likes

Using Minemeld to mine Adobe Creative Cloud addresses?

I saw this link where someone was looking at this same type of thing I am trying to do but I have not seen someone actually create the miners for Minemeld w/ Adobe. I am looking at their GitHub on how to create a miner for them myself, but I figured

...

acdop100 by L0 Member
  • 3950 Views
  • 1 replies
  • 0 Likes

Decrypt Port Mirror problem

We have decrypt port mirrior license on our PA-850

But under interface types we can not see the Decrypt mirror type interface

The Pan-os version is 8.0.8

 

Screenshot_7.png
Screenshot_8.png
Radmin_85 by L4 Transporter
  • 3477 Views
  • 5 replies
  • 0 Likes

Resolved! PA 500 not booting up

Hello,

 

we tried to make a factory reset on PA 500 following this link

 

https://live.paloaltonetworks.com/t5/Management-Articles/How-to-perform-a-factory-reset-on-a-Palo-Alto-Networks-device/ta-p/56029

 

Finally we have not been able to make the factory

...

Denis by L2 Linker
  • 4323 Views
  • 6 replies
  • 0 Likes

VPN tunnel to a firewall NOT internet facing

Hi,

 

I have a scenario with two sites which has two sets (HA) of firewalls, external and internal. So external handles everything internet and behind the internal the datacenter resides. Clients are in between.

 

We have MPLS between the sites which ter

...

Filtering the monitoring log fails endlessly

Pretty often seemingly simple monitor filters seem to get our PA devices in an endless loop.

 

For example:

( rule eq management_services ) and !( addr.dst in a.b.c.d ) and ( app eq ms-sms )

 

will never succeed. The fitering start running, shows a couple

...

mvdven by L1 Bithead
  • 3461 Views
  • 5 replies
  • 0 Likes

Resolved! Query MineMeld for a single IP\IoC?

We are looking at various options to build a SOC framework and one of the objectives is to be able to have an internal 'queryable' API that we can use to investigate a single IP\IoC.

 

Is there anyway to make MineMeld work in that manner i.e. so we c

...

apackard by L4 Transporter
  • 3611 Views
  • 2 replies
  • 0 Likes

Importing PA200 configuration to PA220.

We are planning to phase out PA200 firewall with PA220 .

PA200 firewall is running PAN OS 7.1.14.

PA 220 firewall comes preloaded with PAN OS version 8.0.X.

 

My concerns is, Can we directly import the firewall configuration  (device state) from PA200 to

...

Nischal by L1 Bithead
  • 4970 Views
  • 2 replies
  • 0 Likes

URL alerting without SSL decryption

Hello all! I've got a question on URL category alerting. I can set up alerting for malware and phishing categories, for example. I get the alerts if the site is HTTP only. I don't seem to get them if it is HTTPS.

 

My question is this... Shouldn't the

...

Active/Active HA tentative state question

Let's say we have 2 firewalls in A/A HA

each firewall has 2 vWire (single interfaces, no aggregration)

eth1/eth2 = vWire 1 and eth3/eth4=vWire2

link monitoring is set such that if any of eth1/eth2 interfaces are down or any of eth3/eth4 are down the fir

...

PerryK by L2 Linker
  • 3636 Views
  • 3 replies
  • 0 Likes

Resolved! Minemeld Mining IPv6 and IPv4 through AWS JSON script

Hi Minemeld Community, 

 

Can I check with the team which existing miner can I use to mine the IPv6 and IPv4 from URL https://ip-ranges.amazonaws.com/ip-ranges.json? Using just 1 miner if is possible.

 

Or how can i customize the miner to mine it. Th

...

dkoh by L2 Linker
  • 4179 Views
  • 1 replies
  • 0 Likes
  • 23644 Posts
  • 107 Subscriptions
Top Liked Authors
Labels