General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4111 Views
  • 0 replies
  • 0 Likes

Idenfiy number of connection of per zone with or without snmp

Dear All, I need to configure zone protection, how to find the number of connetion per second for each zone. I tried with "show session info" and i can see "new connection establish rate" but i need to take the average for 2 or 3 weeks.So if its on the snmp which ouid i have to use to monitor or any other method to identify the con...

Resolved! Incoming Traffic from Palo Alto IP Address

I have a customer who asked about traffic which he saw on his Firewall.I looked in firewall logs from several others customers and find the same IP address. It is always a HTTP oder HTTPS connection. The traffic is coming from the 70.42.131.170. According to several internet sources this IP address belongs to PaloAlto Networkshttps://whatismyipa...

Resolved! IPS Signatures

Hello friends, I have some signatures with fortigate names and I neet to know the equivalence in Palo Alto, by the CVE Palo Alto dont indentify it, could anyone help me? web_app3: Narcissus.Image.Configuration.Remote.Command.ExecutionCVE-2015-1579 CVE-2014-9734applications3: Ektron.XSLT.Transform.Remote.Code.ExecutionCVE-2012-5357applications3: ...

Website Down??

Can't get to the main website, it briefly worked but was useless as it only had CLOUD event stuff on it?? Can't get to support site either? "Live" works Various chcek sites say the same, DOWN.

Resolved! PAN-OS 8.0.8 - use region in policy based fowarding rule

Hi community! I would like to know, if it is possible to use a region-object as destination address in a Policy-based-forwarding-rule?I found an articel from 2014 ("Policy Based Forwarding PBF based on destination country or self defined region?") that says it is not possible.Since it is a couple of years old, the PAN-OS version mentioned in tha...

Resolved! How to find log user-local database

Hi all, I would like to know it can be to find log file user-local on Palo Alto which I can just see useridd.log and useridd.log just see user-id and user-id agent but not user-local, please suggest me. Thank You

Resolved! FileBlocking only one way or ip ?

Hi, iam new to the PA product line and trying to figure out stuff in my pa220 before i release them to production. In one of the scenarios presented; there was a request/question - is it possible to allow users to upload files to a share from one specific ip range and then deny that very ip range to download any type of files from that share ? A...

IMG_4022.jpg

Resolved! Agentless or User-ID Agent?

Hi,In my environment, we have several domain controllers around the world across MPLS. In order for users to go out to the internet, they must have an AD account in a certain AD group. This seems to work just fine....but recently we've had a few issues where the user will lose connection to the internet. When we look in the logs, the user's User...

PA 5050

I heard that the PA 5050's are going end of life in 2020 so why did they sell me premium support to July 2020? Do I loose what I bought or do they honor it till the expiration?

jdprovine by L4 Transporter
  • 3718 Views
  • 5 replies
  • 0 Likes

Resolved! How to block Geo IPs for some services?

Hi,i have a ssh Service connected via the internet.But i would like to filter a bit, because there comes often automatical scans from china IPs and so on.The devices who connect to the port 22 have a dynamic ip so i cant set a static source.But i know that these connections comes all from france dynamic ip adresses. So how can i configure it, th...

Resolved! Recover from Split Brain PAN OS 8.0.6 (PA3020)

Hi Community, i have two PA3020 in an A/P HA deployment.The cluster is virtualized with 2 VSYS - one for comany A and one for company B.Between the companies, the coreswitches are linked with 20GBit. (a kind of dark fibre - 500 meters) The 3020 HA setup manages both companies. VLANs for both companies are configured on both cores to ensure a cle...

Resolved! Global Protect VPN Unique ID's and one user allowed

Hello all, I have a requirement for the following and short of any draconian methods, I'm hoping that the PA GP will be able to answer. These are PAN8.0.7 on 5520's in Active/Passive I have a req to ensure that a user of GP is only allowed one GP session at a time. No sharing sessions or passwords. Options explored inlude a unique ldap group ...

  • 24332 Posts
  • 124 Subscriptions
Top Solution Authors
Labels