General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4244 Views
  • 0 replies
  • 0 Likes

Skype audio and video problem

hello We have some problem with skype.Inside the company we can use skype application.But when we try to call by skype outside the company call and video dont work onle chat.But inside network we can use all features.When we test the skype without Palo Alto it works fine.What can be the reason? why Palo Alto dont pass the voice outside

Radmin_85 by L4 Transporter
  • 2652 Views
  • 3 replies
  • 0 Likes

Is there any easy way to check Daily Log and how Retention working?

Expect this stupid calculation - https://live.paloaltonetworks.com/t5/Management-Articles/Panorama-Sizing-and-Design-Guide/ta-p/72181 Is there any easy to check log capacity depending on daily, weekly, monthly? this is so ridiciluous that doing calculation like this not matching reality, also any possible way to check what days logs have delete...

Tulgabat by L0 Member
  • 2582 Views
  • 1 replies
  • 0 Likes

Resolved! Wildfire & Brightcloud URL filtering

Hi All. So when Wildfire creates a signate for a piece of malware and assoicated URLs are added to the malware category of URL filtering. Is this added to the brightcloud URL database or only the PAN-DB database? Thanks Chris

Talos Blacklist

I am trying to create a miner/processor/output nodes for the talos black list ( https://talosintelligence.com/documents/ip-blacklist ) and am failing. Has anyone got this to work?

Hal_Blum by L0 Member
  • 7623 Views
  • 2 replies
  • 1 Likes

One GP portal, forward select users to alternate firewall zone?

Hi all, We currently have a single GlobalProtect gateway, single portal VPN configuration which happens to work really well (currently running on a single PA-3020). This gateway/portal combination first authenticates against LDAP (employees) and then against the local user database. What I'd like to do, however, is add support for vendors and co...

Resolved! How to monitor for VOIP traffic interuptions?

Hi folks, We've had a couple of occassions lately when our Lync phone system all of sudden will stop sending/receiving external calls. In this case a restart of the Windows server Lync Mediation service restored service. Our carrier does a "heartbeat" type of session ping every second and I can see the gap in this communication during the down...

voipsessionping.jpg
OMatlock by L4 Transporter
  • 4346 Views
  • 2 replies
  • 0 Likes

Amazon Echo Alexa video calling issues

I'm a current Palo Alto Home user. I've been able to figure out issues with current APP ID's that are not listed for most home use for IOT devices. I'm trying to see if anyone has figured out how to let Amazon Echo Alexa Video calls go through using custom App ID's.

hicksm by L0 Member
  • 8063 Views
  • 2 replies
  • 0 Likes

Email config audit on change.

On our old firewalls we used KIWI CATTOOLS to pick up configs hourly and compare them for differences, this sort of works on the Palo but each night it seems to generate strange changes in the configs. Ideally I would want to send out the config audit on commit, the emails that normaly come through are more or less useless and unreadable. Or can...

Resolved! PA-820 - Am I asking too much!

Hi,I've been asked to assess if PA-820s could be used to support a smallish MSP environment and as I'm new to the PA world (and indeed MSP network design) I'm hopeful some of you can point me in the right direction. I may be going about the design wrong so do say if you think there are better/relatively cost free ways to acheive the desired outc...

Generic Customer.png

Resolved! SSH2 Brute Force events in System Logs

Hi guys,I've noticed in my System logs that there are SSH2 brute force attempts against our firewall.Unfortunately nothing is listed in the Traffic or Threat logs under the Monitor tab to indicate from which zone the traffic is originating from.Why would this be the case and how can I enable logging for this in the Traffic\Threat logs to determi...

8.0 credentials phishing queries

Hello All, I have case where in client is having set up the user-id without agent on DC. As per the document says that with this set up the only protection feature available is "Use IP User Mapping" under URL-filtering. I am seeing that it is working partially. When I test the same with log in page on zoom, I am seeing that the URL log shows th...

apatel by L0 Member
  • 2392 Views
  • 1 replies
  • 0 Likes

URL Filtering - Block-Continue On Embedded URL

As a rule we present the "Continue" response page to users for potentially time wasting categories such as streaming media. This works fine, although we have instances where some videos are embedded into other web pages. In these instances the browser does not display the block/continue page, just a generic browser error. We don't want to allow ...

SARowe_NZ by L3 Networker
  • 3965 Views
  • 1 replies
  • 0 Likes

Resolved! SSL Forward Proxy Decrypt Performance Experiences on 5060

Greetings, My company is planning to migrate from an inhouse MS shop to a Office365 based one. We will be using Ofiice365 to provide access to applications like email, LYNC, and Sharepoint. In order to enforce internal security policy, I need to decrypt all of the connections that originate internally to Office365. The decryption is needed for t...

j.silva by L1 Bithead
  • 3149 Views
  • 1 replies
  • 0 Likes

Resolved! Max number of DHCP servers?

Hi all, I have a PA-220 with PAN-OS 8.0.6. I run multiple VLANs on it and have configured 5 DHCP servers on 5 different VLAN interfaces. Now I'm wondering why this setup even works because when I read the PA-220 feature overview it says that only 3 DHCP servers are supported on this device.See "Address Assignment" on https://www.paloaltonetworks...

Resolved! Disabling SSL Decryption not working

Hey everybody!After watching all tutorials and reading all PAN's walkthroughts, I still fail to disable the SSL Inspection (decryption) on all of the outgoing (or any..) traffic. This is my decryption profile:*Rest tabs are default. This is my Decryption Policy: *My Security Policy is just any,any,allow (nothing special) and my traffic is never ...

Capture.PNG
Capture.PNG
Capture.PNG
Capture.PNG
  • 24359 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels