General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Ensuring a Safe and Secure Community: How You Can Help

 

Dear LIVEcommunity Members,

 

Ensuring a top-tier experience on LIVEcommunity and protecting our members’ safety and security is our top priority! To this end, we have implemented additional security measures to safeguard our vibrant global commun

...

safe-community_oct24.jpg
report-content.jpg
jforsythe by Community Team Member
  • 263 Views
  • 0 replies
  • 1 Likes

Syslog miner fields

Looking for some information on the fields to use for the syslog miners...

 

This document explains the fields and lables but it doesn't appear that minemeld follows it exactly from other examples I have seen, here and here.

 

I am trying to pick ind

...

weden by L1 Bithead
  • 3536 Views
  • 2 replies
  • 0 Likes

Panorama

With Panorama, how oes know when or fi they need to upgrade it? What are symptoms of box that needs upgraded from M-100 to M-500? Is there s trending log that shows histortical? I hav a M-100 which supports 4 pairs of 5060 2 pairs of 3020 and 3 pairs

...

Resolved! Changing max logging rate to 50000 on VM-100

I followed the learning article What Units are used for Max-packet-rate and Max-log-rate?

on a PA VM-100:

admin@PA-VM> show system info ... vm-license: VM-100 vm-mode: VMWare ESXi sw-version: 8.0.3 ...

And the max logging rate modification does not seem

...

Cannot retrieve contents of MineMeld Output Processor

Guys, I'm new to Minemeld (AutoFocus version). I've setup my first Output node. Very simple, just using the prototype that tracks Azure IPs. I'm going to use it in a Palo rule to allow specific traffic outbound to Azure IPs. Below is the scenario:

 

...

Resolved! Minemeld miners timing out, but curl works fine.

Hi,

 

I am having problems running miners in my network. We use a proxy, so that might be an issue, but the HTTP_PROXY and HTTPS_PROXY values are set correctly, and curl/wget work fine. But I am unsure how to check what Minemeld is doing.

 

This is w

...

Resolved! SPAN port on Dell N2048P

Hi

 

Got a PA-850, wanted to install a TAP port into the DELL N2048P, but it doesn't have capability to do a SPAN port.

 

Any suggestions on how to deal with that.

 

I do have the PA as DGW for all the networks, more worried about looking at PC to PC - sam

...

Log Collections - I am confused

Hi

 

Okay I have pa-5220 - cluster and a single pa-850 and 1 panoram vm.

 

I would like to see all the log that i see by logging into the individual fw on the panorama interface.

 

So do I need to setup panorama as a log collector or do I setup log forward

...

Move Rules to Device Group Order

Hey

 

i just noticed that on panroama 8.0.2 when you move multiple rules to other Device group than the rules are moved in other order than the original order.

for example if you select the last rule and than select the first rule and move than to other

...

minow by L4 Transporter
  • 1852 Views
  • 1 replies
  • 0 Likes

Resolved! Capacity - want to see last 7 days

I want to be able to see what the CPU usage of the firewall has been for the last 7 days or so. I can only find the current usage on the dashboard. Is there a report that will show me what the capacity on my firewall has been for 7 days or more?

Resolved! a problem with json output

Hello, I have a problem with json output.

I have configured output node with "value":true configured but I still cant get indicator value in json format.

 

 

I try to get data in this way -> https://xxx.xxx.xxx.xxx/feeds/node-1498136004722?v=json

Bu

...

image.png
KVasiliy by L2 Linker
  • 4247 Views
  • 2 replies
  • 0 Likes

Resolved! How to verify a specific Threat is blocked?

Hi Folks,

 

I am being asked how we know that specific threats like Wanna Cry and Petya are blocked by our PA 3020.

 

I see that our Content was updated back in 698 release that includes the update for Microsoft SMB vunerability, threat ID 32422 and has

...

OMatlock by L4 Transporter
  • 2836 Views
  • 1 replies
  • 0 Likes

Resolved! Malware everywhere

Hello there,
I'm planning in getting some Palo Alto equipment/ services as I'm an average Jenny but I keep getting tampered by vicious trolls/hackers.
I have multipath internet connections and several malware on my laptop. Even when I take it to the st...

cat777 by L1 Bithead
  • 3989 Views
  • 8 replies
  • 0 Likes

Customizing Parameters for Alienvault

Hello, I am new to MineMeld and was trying to figure out how to customiz the alienvault reputation prototype to only pull in values with a alienvault_reliability > 5. 

 

I have the feed setup to an stdlib.aggregatorIPv4Generic and then to a FeedHCwit

...

rrspyder by L0 Member
  • 2832 Views
  • 1 replies
  • 0 Likes

DHCP trough the PA

Hi all,

 

I'm having a question about allowing DHCP trough the PA firewall.

The issue I have is the following.

 

- We have a PA deployed between LAN, Internet and WAN

- The LAN has a L3 switch, that performes inter VLAN routing, and uses a transit subnet a

...

Eleven by L0 Member
  • 2364 Views
  • 2 replies
  • 0 Likes
  • 23630 Posts
  • 107 Subscriptions
Top Liked Authors
Labels