General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4480 Views
  • 0 replies
  • 0 Likes

Resolved! Risky ports

What are the risky ports we should not allow from user zone (internal network) to external network (internet / external network)? Like we don't allow 21/23 etc, please suggest other ports too.....

SumitB by L1 Bithead
  • 3827 Views
  • 3 replies
  • 0 Likes

Resolved! excluding threats from TAP allerting?

We have a TAP interface listening to a number of vlans (internal and external) We get a lot of noise in our allerts from threats we would prefer not to get alerted on. For example, presently "SipVicious" scans are occuring all the time to what are actually unused IP addresses on one VLAN. How can we dial these out??? ThanksRob

MineMeld and ELK

Hi all, I'm having some trouble parsing MineMeld events into Logstash, and then into ELasticSearch. Does anyone have any resources available for this kind of set up?

tom.dell by L0 Member
  • 4523 Views
  • 2 replies
  • 0 Likes

Bad Gateway Error - Minemeld Not Running

Hi All, My Minemeld instance seemed to randomly break and I'm not sure why. When I try to login I get a bad gateway error and the EDL URL's give the same message. Here are some log snippets: minemeld-engine.log: 2018-05-11T06:25:45 (4222)base.state INFO: bruteforce_de-IP - transitioning to state 82018-05-11T06:25:45 (4222)basepoller.stop I...

password policy has locked out the admin

Is there a way to have an email warning if a password is going to expire? One of our palo alto (which is stigged) has locked every user out. This includes the emergency and admin accounts. I guess, now the only way to get back in is to to in via the management console via the palo alto, correct?

GP with HIP feature doesn´t work after upgrading Kaspersky to version 11

I´m using a HIP profile to check if antivirus real time protection is enabled in the PC, everything was working properly until upgrading Kaspersky from version 10 to 11. I cannot connect with GP anymore. Does anyone have the same issue? "resubmit host profile" in the agent didn´t work I´m running Pan-OS 7.1.16 adn GP agent 3.1.6

Carracido by L4 Transporter
  • 4057 Views
  • 2 replies
  • 0 Likes

Missing ikemgr.log

I wanted to delete the ikemgr.log.old, however, I deleted the ikemgr.logNow no vpn logging is available anymore. I already restarted the management plane. No luck.Does somebody know what to do?

Gerben by L0 Member
  • 3895 Views
  • 3 replies
  • 0 Likes

Resolved! adding more than one UIA agent on firewall?

Hi Techies, I have a small doubt whether I can add more than one UIA server in my firewall in the sense that they should behave kind of active passive . Requirement is something like that I want to secure user id functionality on firewall so that if one of my UIA gets down , then firewall should contact other UIA server for that.... Let me know ...

Any Any Rule

Many times I have seen that engineers used to allow any rule during troubleshooting and forget to remove which creates problem in audit and compliance check, is there any option so that engineers should configure rule with any in source/destination/port/application fields. Thanks in advance,sumIT

SumitB by L1 Bithead
  • 2450 Views
  • 2 replies
  • 0 Likes

Controling East-West traffic without NSX

Hello,In a "Supported Deployments on VMware vSphere Hypervisor (ESXi)" section of the documentation (https://www.paloaltonetworks.com/documentation/71/virtualization/virtualization/set-up-a-vm-series-firewall-on-an-esxi-server/supported-deployments-on-vmware-vsphere-hypervisor-esxi#_92501) for VM series it is mentioned that VM Firewall can be de...

Resolved! Slow downloads from Non-US sources

Short version: large downloads from Non-US sources are slow. The file I'm attempting to download is the ISO found here from Bacula: https://www.baculasystems.com/dl/KickStart/bacula-enterprise-trial-kickstart.iso I have a sister firewall at another location with basically dupilicate config on the firewall and the file downloaded at more the exp...

Nathan.S by L3 Networker
  • 3933 Views
  • 3 replies
  • 0 Likes

Resolved! Panorama 8.0 Managing Firewalls on PANOS 7.1

We are looking at upgrading Panorama to V8.0 to give us the ablity of perform individual commits, the firewalls will remain on V7.1 for the time being.Because V8.0 has so many new features what would happen if an admin configures a feature not supported on V7.1?Is the commit to Panorama going to fail? or is the commit to the FW going to fail?is ...

Global Protect disconnect issue

3000 series FW, software 6.0.1, GP 2.0.1 -- GP continually disconnects/reconnects.. tried reinstalling client, rebooting, etc.. happens with some users at random times..then the issue will magically go away. Anyone else experience?

rrau by L3 Networker
  • 9655 Views
  • 8 replies
  • 0 Likes
  • 24380 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels