General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4221 Views
  • 0 replies
  • 0 Likes

Re: Application based Policy approach

While moving from a service based to application based policy approach how to tackle the dependent applications for the specific application. for instance consider a app "webex-base" which is dependent on apps"rtcp, rtp-base, ssl, stun, web-browsing"."Webex-base" has a standard-port tcp/443,80,1270, udp/8070,8090,9000. when i see the logs it sho...

Sanssj by L2 Linker
  • 3731 Views
  • 1 replies
  • 0 Likes

Resolved! Mixed Internal and External GlobalProtect

Hi All!I'm working through the "Mixed Internal and External Gateway Configuration" and something isn't quite clear - Do I need to create 2 separate GlobalProtect Portals (one to listen on the outside interface and one for the internal interface) or should I be able to access the same portal using the same IP? Using 2 separate Portals on 2 separa...

Issue with External Dynamic List

I have just created a new/first External Dynamic List on my firewall with a type of URL. I have applied an action under a number of URL filtering Profiles, but I see the following messages: request system external-list show type url name edl-url1 Server error : external dynamic list global/edl-url1 not used in rule after a while the message will...

murphyj by L2 Linker
  • 3607 Views
  • 3 replies
  • 0 Likes

sip application deny log that hitting trust to untrust any allow policy

Hello, i have a issue this is rule 213. (trust ==> untrust any allow) this is action deny log that hitting rule 213 & sip applicationpackets sent is 1 and received is 0 this is action allow log that hitting rule 213 & sip application both log image is equal destination ipWhy is this happening?if sip session is not created, then the...

20180801_103542.png
20180801_103631.png
20180801_104737.png
hbshin by L2 Linker
  • 2056 Views
  • 1 replies
  • 0 Likes

Resolved! GlobalProtect VPN and third-party application installed on user's machine (Windows 10)

Hi there, Being a vendor, I'm having a hard time deplyoing my Windows 10 UWP application on client's machines.The application needs access to the internet in order to operate. It loads a login webpage inside webview, using HTTPS (port 443). No other ports or protocols. The problem is that the app fails to load login page on client's machine when...

Problem adding zone to tunnel

I'm trying to add a zone to a tunnel interface. I can create the tunnel and configure it via panorama defining virtual router, vsys and zone to be applied via template. But when I check the devices where it should be applyed both zone and virtual router are defined as "none" for the tunnel even though Panorama is showing the configuration I wan...

ibge by L1 Bithead
  • 2296 Views
  • 1 replies
  • 0 Likes

Resolved! moving policies and objects to another device group

Policies and objects are currently in the wrong device group. able to move everything successfully except for the address objects. i feel the move is pretty self-explanatory, but i have taken the time to read the user guide and still no luck. is there some particular order this needs to be done? any assistance would be appreciated.

SFP Compatibility

Hi I have got 3 firewalls. 5050 and (3020-1 & 3020 -2 HA pair). We are trying to replace the core 6500 switch with meraki 425. and we have got the MA-sfp-10gb-sr and we need to look for supported sfp in palo side. I found one good fit as PAN-SFP-PLUS-SR (AFBR-709SMZ ). from online. But, I am not sure that whether one end witht the cisco sfp...

Minemeld Installation on RHEL 7.4

Dear Team, I have successfully installed minemeld on RHEL 7.4 and Am able to access the web console from Local Machine but am not able to access from Network. Please help if anyone faced the same issue. Thanks and Regards,Ramprasath

Virtual IP address in HA- Active Passive Mode

Hi Experts, I've query about High Availability Active-Passive. As we know, interface IP addresses are same on both the firewalls and when Active device goes down, secondary firewall will take over by sending gratuitous arp to switches. So switches can learn about the new Mac addresses and traffic start forwarding. But this causes a blip in netwo...

  • 24355 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels