General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1978 Views
  • 0 replies
  • 0 Likes

Resolved! Checking Global Protect Client Status via Command Line

We have had a heck of a time getting Global Protect 4.0.2 deployed in our environment.  One of the things I am coming across is that the install goes fine, at least accoring to the exit code on msiexec and in looking thoguht the log created by msiexe

...

BeejCyr by L1 Bithead
  • 22835 Views
  • 7 replies
  • 0 Likes

Port Scan Options

Hi all,

 

Looking for some feedback from anyone else who has run into this issue before.

 

Basically we have zone protection set up for our Wifi and ResNet security zones.  Included in this zone protection is a block-ip rule for port scanning.  We've rec

...

jsalmans by L4 Transporter
  • 4713 Views
  • 6 replies
  • 0 Likes

Custom application tutorials?

Anyone know where I might find an in depth tutorial on creating a more advanced custom application?  The tutorials I've found have all been HTTP related, which is great, but I was hoping to find something that did something a little more complex like

...

jsalmans by L4 Transporter
  • 5053 Views
  • 7 replies
  • 0 Likes

Resolved! How to specify which program generates malicious traffic?

Hello all,

 

I know this question is outside of the PAN device matter. 

But my customer asked me how to specify the program on his computer for removing malicious program.

Let me tell you exmaple:

 

When I see threat log, it shows

Src 192.168.1.1:12345 

Dst

...

emr_1 by L5 Sessionator
  • 2772 Views
  • 1 replies
  • 0 Likes

Resolved! PA cannot distinguish between Dropbox and Cloudfront

Hi,

 

PA does not seem to be able to distinguish between Dropbox and Cloudfront. In the Traffic logs, all sessions are identified as dropbox-base. Outputs from show session id:

 

DROPBOX:

start time : Thu Aug 3 09:58:15 2017
timeout : 120 sec
total byte cou

...

Farzana by L4 Transporter
  • 4088 Views
  • 3 replies
  • 0 Likes

Resolved! policy drop with icmp not sending icmp

I have a catch all before the default/inbuilt rules

my action is drop with icmp

 

but when i test and run a tcpdump at the same time I see no icmp packet to say unreachable .

 

Very strange ? 

 

Anythoughts ??

 

MSFT Office365 Domain As Phishing?

I was running a 228 PAN-DB version and have since noticed the content version updated.  Did anyone else have any issues with Office365 services?

 


ME @firewall(active)> show running url secure.aadcdn.microsoftonline-p.com

DP dp0:

secure.aadcdn.microsofto

...

PA-220 boot Error?

Received this Unit today and on 1st boot,

 

N0.LMC0 Configuration Completed: 8192 MB Warning: Board descriptor tuple not found in eeprom, using defaults KINGFISHER board revision major:1, minor:0, serial #: unknown OCTEON CN7130-AAP pass 1.2, Core cloc...

Resolved! Query on L2 bridging over a L3 network

Hi,

 

We have a pair of PA-500s separated by a L3 MPLS IPVPN network. We require to bridge a layer 2 segment across the two sites.

 

One option we would like to explore is going from PA to PA on a new physical port at each end. We need to bridge HSRP and

...

Farzana by L4 Transporter
  • 2683 Views
  • 1 replies
  • 0 Likes
  • 24205 Posts
  • 117 Subscriptions
Top Liked Authors
Labels