General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Forward segments exceeding TCP content inspection queue

Hi,

 

On a new PA-3020 Firewallcluster I decided to disable the default setting "Forward segments exceeding TCP content inspection queue". Practically everything was working as it should. But onfortunately the devil is in the details. I had very few co

...

Remo by L7 Applicator
  • 12021 Views
  • 7 replies
  • 0 Likes

Resolved! Virtual Firewall

Dear All,

is it possible to make a Local Virtual Firewall using Hyper V or Vmware for the purpose of learning the functionalities of the Virtual Firewall ?

Adding a section title to a group of rules

Hello,

is there a way of adding a title/header to a group of rules in order to create some logical structure/grouping in the rule set?

In Checkpoint this is possible and we find that it helps keeping a big ruleset organised.

Thank you.

NicPezzi by L0 Member
  • 2617 Views
  • 1 replies
  • 0 Likes

Whats wrong with my xpath??

Hi all, trying to delete a single object from a static address-group. Why does it keep deleting entire group?? My syntax below:

 

 

https://x.x.x.x/api/?type=config&action=delete&key=LUFRPT1BeWFJamVEYmdUV0JXZTdjNlFzOUMzdmhOaXM9RkdEb0lMT1g1WVNhMk9mL3&xpa

...

Using unlicensed VM100.

I have a VM-100 on VMWare ESXi running 7.0.4 . The demo license has expired for VM.

Would I be able to us it for testing still ( not using any url,threat features). I am see speed issue from trust to untrust

and traffic just trickles.

FQDN jobs FAILED

Hi,

 

We have added several FQDN objects and its not working. If we run

 

update.symantec.com (Objectname update.symantec.com):

Not resolved

us.archive.ubuntu.com (Objectname us.archive.ubuntu.com):

Not used

xxxxxxx (Objectname HOST_xxxx13):

Not resolved

 

2017

...

Resolved! High number of logins to AD

Good day,

 

Is it normal for the account that the FW uses to get the user-id information from AD to have a high number of logins? Across our entire network, this account is over 90% of all of our successful logins. It just seems that this account is lo

...

Resolved! LAN users cannot reach GP users

Hi All,

 

I've one inquiry where the client used to have an issue where the GP users can reach the LAN users but not vice versa.

Users in LAN and GP are on the same zone (Trust) but only GP can ping the LAN.

 

The tunnel of the GP doesn't have an IP addre

...

How to disconnect remote users at a specific hour

Goodmorning,

I need to disconnect one or more users from Global Protect VPN at a specific hour.

I try to explain, I don't want that after 7pm the remote suppliers can work on my net. I can't use the scheduled policy rules becouse the sessions started b

...

FassaSRL by L1 Bithead
  • 6262 Views
  • 5 replies
  • 0 Likes

Resolved! URL Filtering Issue

Hi,

 

Without URL Filtering in the Security Profile of the policy, we can access vimeo.com but with URL filtering profile, getting error message below in IE, Chrome and also on the phone. No proxy used, no SSL decryption. This is happening to the categ

...

Error.png
DetailedLogView.png
Farzana by L4 Transporter
  • 3300 Views
  • 4 replies
  • 1 Likes
  • 23688 Posts
  • 105 Subscriptions
Top Solution Authors
Top Liked Authors
Labels