Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 217 Views
  • 0 replies
  • 0 Likes

Ignore all Computers from xmlapi mappings

Hi Everyone,

I am trying to intergrate clearpass with Palo alto using xlampi, all was going well however i struck a problem

In clearpass i have two types of users that are autheticating, domain joined machines (which authenticate using "compute authent

...

Resolved! Troubleshooting SSL decryption failure of a website

Hello.

 

We are using panOS 8.0.7 , Pan-DB URL filtering, and SSL decryption.

 

We are K12 education and use many Chromebooks in the organization.

 

We are trying to use a system called Clever to have our students log into their Chromebooks by scanning a Q

...

dannon by L3 Networker
  • 8415 Views
  • 10 replies
  • 1 Likes

Global protect username tags

Hello all,

 

I use RADIUS server for authenticating GP users. Is there a possibility to read tags sent by RADIUS server associated with user groups and palo could allow/deny specific users?

 

 

Palo alto traffic shaping

Hi,

 

I have the below topology .   video conference device is connected in distribution .

All the devices are cisco . Actually I want to prioritize and  reserve  10 mb for  the vc .

Marking  the vc network as real time will help . I have never seen the

...

Traffic Shapping.png
simsim by L4 Transporter
  • 4675 Views
  • 9 replies
  • 0 Likes

Resolved! Zero indicators in inboundfeed

I am trying out minemeld and I started by adding miner (zeustracker.badips) and removing the default dshield and spam nodes. Before removal inbound feeds were showing subnet ranges/indicators. After removal there is not a single ip. processor shows R

...

raji_toor by L4 Transporter
  • 5525 Views
  • 3 replies
  • 0 Likes

Network Outbound baseline.

I need to provide a baseline of allowed traffic outbound for a period of time.

 

So to list

 

Client -> External Server [ Port/Application ]

 

Is there a report on the PA-3020 that can be crafted to do this

 

Thanks

 

 

Rob

Overlapping entry in custom url lists

I have 2 custom url categories. One as whitelist and other as blacklist. I am in the situation where I have *.youtube.com in allow list and needed to block tv.youtube.com

I added tv.youtube.com to blocklist but the firewall is still taking *.youtube.c

...

Resolved! How to allow GRE protocol 47 through Palo Alto FW?

Dear Friends, 

I'd be grateful if you could help me with this ...

 

I'd like to allow GRE traffic (protocol 47) through my Palo Alto FW. I want to allow all the GRE traffic through and not terminate a GRE tunnel on the PA itself. Appologies if this is s

...

Jedi_D by L2 Linker
  • 6294 Views
  • 3 replies
  • 0 Likes

Firewall with Vsys in Panorama

Hello

 

We are managing a several firewalls with single vsys with our M500 Panorama.

 

Now we will be adding a new PA Firewall with multiple context to panorama.

 

So the question is: What is recommended

 

1. Should we first add the firewall in panorama and

...

Data centre backup solutions which support PANOS8

What Data Centre backup solutions support PAN devices (both panorama and firewalls)?

Backbox seems to be a preferred PAN partner - http://hemispheretechnologies.com.au/cms/wp-content/uploads/2017/01/PaloAltoNetwork_BBX-Solution-Brief_2017.pdf

Are there

...

DDyall by L0 Member
  • 3430 Views
  • 6 replies
  • 0 Likes

Resolved! Global Protect pangps log messages - What to watch for

Our company just finished a rollout of the Global Protect client to all of our locations.  Now we are getting occasional complaints about disconnects/reconnect and other assorted odd behaviour.  Much of this is just users looking for something to bla

...

BeejCyr by L1 Bithead
  • 4925 Views
  • 1 replies
  • 0 Likes
  • 23611 Posts
  • 107 Subscriptions
Labels