General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Minemeld upload feeds from otx AlienVault

Hi, I just trying to figure out how correctly add miners from OTX AlienVault. The main Issue is when I added threat feed or any indicators from different groups or AV user, it always stuck with error "collection error - not found". Using prototype something like this :_________________________________age_outdefault: 30dsudden_death: falseatt...

What is: 'Syslog connection established to server[\'AF_UNIX./opt/pancfg/mgmt/syslogng/logd.\'

Hello, we have the following event in our panorama log: Type: syslogSeverity: highEvent:syslog-conn-statusDescription: 'Syslog connection established to server[\'AF_UNIX./opt/pancfg/mgmt/syslogng/logd.\' Can anyone please explain what this means? Is this the syslog-connection of the local Panorama-device to its filesystem?The event occours serve...

Clermont by L2 Linker
  • 2852 Views
  • 1 replies
  • 0 Likes

205 access points blocking one ssid

We are current ly running 4 ssids on our network. One of which is for our food service. We have 3 accesspoints providing coverage over the commons during lunch, we would like to disable one ssid created for student use while leaving the others open on the access point closest to the POS units. Is this possible or is it an all or nothing deal?

the easiest way to get the peak number of active sessions on firewall?

i'm wondering to aquire the easiest way to get the peak of number of active sessions on firewall? some ways i figured out are1) check SNMP active session OID every minute and spot a chart.2) fire up SSH "showing session info" every minute by a python snippet.3) seems like to built a customized report by couting traffic log4) chrome has a plug...

DannyDai by L1 Bithead
  • 2688 Views
  • 1 replies
  • 0 Likes

IPsec Site-to-Site VPN trouble (decap bytes 0)

Hi all.I am trying to set up an IPsec s2s tunnel with non-Palo Alto peers. So far I have tried 3 different peers (Strongswan 5.3.2, Cisco router, Cisco SOHO router) and every time I have problems seeing incoming decrypted traffic to the PA."Local site" being the PA one, here's the info I have so far:- IPsec tunnel is up- "show session all filter...

AMS-IX by L1 Bithead
  • 26911 Views
  • 11 replies
  • 1 Likes

Resolved! native vpn client

Has anybody been able to successfully setup the native windows vpn client for Windows 8 and 10 to connect through a palo alto firewall

jdprovine by L4 Transporter
  • 9400 Views
  • 6 replies
  • 0 Likes

ADFS SAML Configuration

Hi all I need help to configure ADFS SAML with global-protect.i have successfully imported the metadata.xml from adfs into palo.But now i can't export the metadata from paloalto. Whats the correct identifiers and endpoints urls for global-contect clientless? I have no idea, what i must configure in adfs. Can anyone help?I use panos 8.0 regards...

Screen Shot 2017-02-25 at 03.50.54.png

Security Policies Not Applied When Client Use Web Proxy on Their Browser

Dear all, I am currently learning the Palo Alto Firewall using Palo Alto VM. I've configured some security policies, for example, file blocking that forbide client to upload a PDF file (including to those website which use SSL). All of the policies are working as expected. Then, I try to set the client web browser to use a web proxy (Squid) loca...

hibagus by L2 Linker
  • 8602 Views
  • 10 replies
  • 0 Likes

Understanding Panorama Backup and Recovery Procedure

Hypothetical Scenario... Through catastrophic failure I have lost my Panorama which also contained device configs. In order to re-build it from scratch which config file should be saved and exported, and then imported?, I note there are few option around 'snapshot' and 'config-bundle'. But to me the documentation is not entirely unamgibuous, tha...

nawaza by L2 Linker
  • 4201 Views
  • 1 replies
  • 0 Likes

Resolved! Query on TS Agent

Hello, We are planing implement TS Sever. Kindly advise if Windows Firewall needs to be disabled on Server for TS Agent implementation. Please provide the reason for the same whether yes/no. Thanks in advance.

Farzana by L4 Transporter
  • 2194 Views
  • 1 replies
  • 0 Likes

Logs export and viewing

Hi,I have a requirement to be able to maintain logs (all url,threat etc) for a period of atleast 6 months, this should be independant of the disk space. I have founf out that from the command line you can export the logbd using scp and back it up, bu the only downside is, correct me if i am wrong, the exported logdb can only be viewed in the Pal...

Resolved! Changing Time Zone

What are the implications of changing the time setting / time zone of a palo alto firewall in an HA setup?Are active sessions affected?

  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels