General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 776 Views
  • 0 replies
  • 0 Likes

Connect Linux Machine to GlobalProtect

Hi,

 

This is my first post, so please bear with me if this is the wrong forum of if this has been answered somewhere before..

 

I am having issues connecting a Linux client to Globalprotect. I have tried to follow the following:

https://live.paloaltonetw

...

Device block on MAC without Global Protect

Hi, Would anybody know if there is a way to block devices on a LAN (without Global Protect)?  I know reservations and static IP's can be assigned but asking the question to see if it's a possibility.

 

Many thanks

 

Will

CDS_Will by L0 Member
  • 1777 Views
  • 2 replies
  • 0 Likes

Traffic Flow in SSL VPN

Hi All,

 

Please can someone explain me the traffic flow in SSL VPN as am a bit confuse about it.

 

I might come up with more questions once this discussion starts.

 

Thanks

mahmoodm by L3 Networker
  • 2629 Views
  • 3 replies
  • 0 Likes

What priviledge need user-id agent user to work with WMI?

Hello,

We need to know the priviledge minimum to the user-id user to work with the WMI probes and it can't look the security log of DC.

The problem is that on the security log appears one user of application siteadvisor that is installed on every PC of

...

jvmartin by Not applicable
  • 3965 Views
  • 5 replies
  • 0 Likes

Resolved! Global Protect some questions

Hi

 

I have PA-3050 Cluster and will configure SSL-VPN for remote users "without licenses installed", so I have a couple of questions on Global Protect;

 

1- How many users can connect through SSL-VPN on this device?

 

2- Can we connect SSL-VPN over mobile

...

myasin by L2 Linker
  • 2915 Views
  • 4 replies
  • 0 Likes

Generate an e-mail alert from a DENY policy

Hi

Just a quick question, one of my policies on my PA5020 is a "Deny_Any" policy whereby if no application matches the policy base then it gets denied. The only time I see this is when I view the monitor | logs | traffic.

 

Is there any way I could get

...

JulianH by L1 Bithead
  • 2849 Views
  • 3 replies
  • 0 Likes

LDAPS inexplicably working on 2 DCs, not on 3rd

Please suggest a better title, this issue has sent me through the ringer.

 

We have a site with an MPLS connection down.  The PAs use the domain controller in our datacenter for authentication for both admin, and GP users, which is over the MPLS.  LDAP

...

Resolved! Netflow not working

Hello,

 

In the Traffic monitor logs, nothing is showing up for netflow.

Using PAN-OS 7.0.4.

Tried using port 2055 and 9996.

Tried to use default and MGT interface of Netflow and SNMP Trap under Device>Setup>Services>Service Route Configuration.

 

We have s

...

Farzana by L4 Transporter
  • 4555 Views
  • 1 replies
  • 0 Likes

How to SSL Bypass based on application

Hello,

 

I wanted to share a solution I have implemented recntly.

 

Bypassing SSL Decryption based on applications was a request I had from many customers.

I know there is an FR for that. but until then, with PAN-OS 8, it is possible to achieve differentl

...

tag.png
dynamic address group.png
bypass rule.png
log forwarding.png
Ozamir by L2 Linker
  • 7591 Views
  • 2 replies
  • 8 Likes

ERR_SSL_PROTOCOL_ERROR GlobalProtect

Hi All,

 

When I try to open the URL of our portal I get the following error in Chrome:

 

Chrome: ERR_SSL_PROTOCOL_ERROR

Firefox: SSL_ERROR_HANDSHAKE_FAILURE_ALERT 

 

I also imported the wildcard certificate to 'Personal' and 'Trusted Root CA.'

 

Logs:

 

PanGP

...

DocEmre by L0 Member
  • 6834 Views
  • 4 replies
  • 0 Likes

Single Pass Parallel Processing SP3

Hi All,

 

Please can someone explain me the concept of SP3 in simple terms as i dont find any good resource to understand this.

I understand that passing the traffic through different devices will impact throughput and add latency,but how does PA works

...

mahmoodm by L3 Networker
  • 15389 Views
  • 11 replies
  • 0 Likes
  • 23985 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels