General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 2155 Views
  • 0 replies
  • 0 Likes

Resolved! Confidence level in logs

Hi, 

 

In minemeld logs from the nodes, taking AF-Ransomware node as an example,  I have 2 questions regarding the confidence, thanks!

 

1. does the confidence level come from the source feed?

2. can customers change this confidence level?

 

 

chtoh82 by L2 Linker
  • 5604 Views
  • 2 replies
  • 0 Likes

Resolved! Questioning about agentless user-id.

Hello!

I have questions about user-id functions.

1. How much user-id be supported by agent-less user-id? I guess that 64K user-id and 640 user-group would be supported on all of PAN model. right?

2. When using user-id collector, How much user-id and use

...

Sharefile custom URL site allow

We block access to sharefile.com as a whole.  But we do have a sharefile.com company site which we allow access to.  The problem that I am running into is this, when a user attempts to download a file from our sharefile site a random number will be g

...

Self-signed Root CA Certificate FQDN?

I’m planning a test deployment of a globalprotect vpn, so currently going through the guides to see what’s needed. Part of the requirements if not using a trusted CA is to generate a self-signed root CA.

What should the FQDN be on this cert? The deplo...

welly_59 by L3 Networker
  • 2657 Views
  • 1 replies
  • 0 Likes

Resolved! Valid Object Name Requirements Documentation Wrong

When creating an Address Object (as well as other object types) the documentation for Palo Alto 8.1 says this, "The name is case-sensitive, must be unique, and can contain only letters, numbers, spaces, hyphens, and underscores."

 

The popup that appea

...

JasonKC by L1 Bithead
  • 4308 Views
  • 2 replies
  • 0 Likes

Confused about zones

I'm currently migrating from a pair of Cisco ASAs and the zones have me a little confused.

 

Right now I have interfaces on the ASAs of inside, wireless, outside, dmz-private-web, dmz-private-db, dmz-public-web, dmz-public-db, dmz-dev-web, dmz-dev-db.

 

...

HA sync times

Recently I have noticed that it is taking longer to commit and sync the changes from my active PA to my passive PA and the management plane ramps up to 38%. any suggestions

jdprovine by L4 Transporter
  • 3691 Views
  • 7 replies
  • 0 Likes

Resolved! Minemeld on CentOS

I have seen a few older threads referencing minemeld on CentOS using ansible or docker etc, Does anyone have it running on CentOS natively without the use of other 3rd party tools? or an up to date walkthrough? The Ubuntu 14.04 setup is quick, simple

...

hshawn by L4 Transporter
  • 6598 Views
  • 5 replies
  • 0 Likes

Resolved! Stop routing if PBF monotoring is down PA-500

 

 First post to this forum!

 

I have a PA-500 and 3 ISPs. 2 of the 3 VLANs are forwarded using PBF (VLANs 10 & 30 ) and the third uses the default route (VLAN 20).

 

My (simplified) configuration is as follows;

 

 VLAN10 - PBF to ISP 1 fail-over to default

...

James_D by L0 Member
  • 3136 Views
  • 2 replies
  • 0 Likes

Resolved! how interpret MAC in pcap

Hello,

I have a doubt about how to interpret macs in rx pcap and tx pcap. I thought that:
when the traffic enter a layer 3 interface:

the mac destination addres in rx file must be the mac of  ingress interface?
and in tx the source mac, must be the mac o

...

Marivi by L2 Linker
  • 4272 Views
  • 2 replies
  • 0 Likes
  • 24247 Posts
  • 119 Subscriptions
Top Liked Authors
Labels