General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! HA Configuration question?

Hi folks,

 

As I prepare for my first HA configuration next weekend, have at least one question today.

 

I understand from reading that the configuration will copy over to the second passive firewall over the HA1 link.

Does that include everything?  Certi

...

OMatlock by L4 Transporter
  • 1515 Views
  • 1 replies
  • 0 Likes

Resolved! Destination NAT vs Source NAT with Bi-directional?

Hi folks,

 

I am reading several articles about NAT types and bi-directional.

I have a test going, but confused about how my web server is translating its source address when replying.

 

I thought that I would have to create a bi-directional NAT rule to g

...

visio.jpg
NATRules.jpg
Securityrules.jpg
web.jpg
OMatlock by L4 Transporter
  • 9967 Views
  • 8 replies
  • 0 Likes

Resolved! PA-3020 - Internet Connection over Cisco Switch

Hey guys,

 

at the moment, there is a direct connection between my Palo Alto Firewall and the Internet Router.

 

Ethernet 1/20 on the PA is my external interface - it's one of the fiber interfaces.

 

I want to change this connection from "direct" to "over

...

MPI-AE by L4 Transporter
  • 3655 Views
  • 3 replies
  • 0 Likes

Google drive not getting blocked

Dear Team,

As per logs, I am getting drive.google.com is blocked.But actually, I can still able to access it. 

Please advise regarding this issue to get fixed. Give us the proper permanent fix for this issue.

I can block mentioning the specific URL “dri

...

qqq.png

Block web browsing but allowing other apps.

I need to block webbrowsing but allow other apps which has web dependency.

Trust to untrust - all allowed. But when I deny webbrowsing from trust to untrust other apps like skype stops working.

Requirement is only web-proxy ip is allowed webbrowsing fr

...

2 Factor Auth Issue

Hello,

 

We are having issue with GlobalProtect VPN client when using 2 Factor Authorisation to authenticate.

 

Instead of being presented with a second login prompt to enter the code from the keyfob, Palo Alto is rejecting logins unless the keyfob code

...

Farzana by L4 Transporter
  • 4153 Views
  • 8 replies
  • 0 Likes

PBF SMTP for both ISP1/ISP2

I'm wondering if anyone has a similar setup and got it working. I'd like to have both SMTP services enabled on two ISPs for load-balancing and redundancy. I tried using PBF but couldn't get it working. It seems SMTP for ISP1 works fine but SMTP for I

...

x by L1 Bithead
  • 1971 Views
  • 1 replies
  • 0 Likes

Over 110% untilization

I am seeing my management plane spiking over 100% when do a preview and a commit, what could be causing that ? Also can a defrag be run or need to be run on the hard drive?

jdprovine by L4 Transporter
  • 6098 Views
  • 27 replies
  • 0 Likes

VM based PAN FW

Hi,

I have not been able to list the interfaces on VM based PANOS 7.1.0 after the VM PAN FW boots successfully. 

interfaces have been set to vmxnet3 type on VM settings. I have configured 3 interfaces (1mgmt and 2 data). assiged the static mac-address.

...

Minmeld on Unbuntu

Hi,

 

We run a hyper-v shop so I am looking to set this up on Unbuntu. Just a few questions before I set off on the install:

 

Can we install with the most recent version of Unbuntu? Is there a reason I need to run it on 14.x?

I didn't resource requi

...

Minemeld engine stopped - error starting engine

I would like to create ipv4 output based on the aws ec2 and route 53 miners. I cloned miners, aggregator and output from prototypes. When I hit commit nothing happens. I can see the processes stopped under System. If I hit restart for the engine, I g

...

  • 23668 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels