General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 776 Views
  • 0 replies
  • 0 Likes

Resolved! BGP filtering question

Hi

 

Quick question, pretty sure I know the answer.

 

But I want to redistribute some of the OSPF routes I have into BGP.

So I create a redist profile, say the source is OSPF

 

then I can use the BGP export filtering to stop what I don't want out.

 

So lets s

...

Proxy ARP

Hi

 

I have a 5220 in the DC and a 850 in the office

On the 5220 I have an interface onto network 2.7.3.0/24
On the 850 I have a NAT for 2.7.3.129/32
the 5220 get this via OSPF

How can I make the 5220 response on the interface 2.7.3.0/24 for arp requests f

...

OSPF and Cisco Routers

Greetings all,

 

I was doing some Core routing work during an outage this last week and ran into a repeat of some issues we had when we initially put our PAN boxes in to place.  The original scenario:

 

  • A subinterface existed on the Palo Alto with the ta
...

jsalmans by L4 Transporter
  • 5612 Views
  • 2 replies
  • 0 Likes

Resolved! NAT Security rule

I'm used to working on Cisco ASA and I'm having a hard time understanding why the security rule states Untrust-L3 for both the source and destination zone. Typically wouldn't that be Untrust-L3 to DMZ? Is there a specific reason for this behavior?

 

 

Screen Shot 2018-01-06 at 6.57.18 PM.png
Glitchen by L0 Member
  • 2320 Views
  • 2 replies
  • 0 Likes

DNS proxy not working

Hello,

 

We are currently getting resolve-fail events for DNS. 
Failed to resolve domain name: after trying all attempts to name server(s): 8.8.8.8 8.8.4.4
DNS server is in loopback.2 Interface/Untrust/IP:203.44.x.x
 
Below are some pics of DNS proxy setti
...

sessiondetails.jpg
DNS Proxy.jpg
Farzana by L4 Transporter
  • 5119 Views
  • 3 replies
  • 0 Likes

Outlook and Global Protect

In the past when our users disconnected Global Protect, Outlook would disconnect immediately.

 

Seems like this no longer the case. When GP is disconnected Outlook continues to work.

 

I'm wondering if anyone has every eperience this before?

 

Thanks

berket13 by L0 Member
  • 2886 Views
  • 4 replies
  • 0 Likes

Resolved! Expressway-E and C and NAT and VW

Hi,

 

I have deployed Expressway (cisco ToIP) E and C  as per the diagram below .PA is in VW mode .

Does it work  without any changes in the PA ? 

Or Is there any policy must be created ? 

 

Thanks 

PA.png
simsim by L4 Transporter
  • 2559 Views
  • 1 replies
  • 0 Likes
  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels