General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4116 Views
  • 0 replies
  • 0 Likes

custom miner in super fast installation

Hi, I trying to install custom miner for minemeld by this instruction: https://github.com/PaloAltoNetworks/minemeld/wiki/How-To-Write-a-Simple-Miner, but path to ft directory in my instalation is different to path in instruction. And the result is that I can't commit new node, cause of prototype can't find the base class

Sergey_R by L1 Bithead
  • 2916 Views
  • 1 replies
  • 0 Likes

Resolved! VM Palo : Unable to see any traffic in traffic log under the monitoring Tab

Hi All,I have setup a VM palo on ESXi as home lab, but i can not see anything coming up under the monitoring traffic log. I tried to change the default behavior of the implicit security policy rules at the bottom to log at both start and end but still no joy.I can see the system logs but not traffic logs. Any suggestions, please most welcome. Th...

Resolved! IPSec VPN decapsulation bytes are increasing and encapsulation is constant

Hi All, Followed this article on teh troubleshooting session: https://live.paloaltonetworks.com/t5/Management-Articles/How-to-Troubleshoot-IPSec-VPN-connectivity-issues/ta-p/59187 We currently have an issue with S2S VPN between Palo and WatchGuard Fws. VPN is up (at least from Palo site). Traffic is initiated from the WatchGuard side (10.10.1.85...

How to configure TMG's FTP over HTTP

Hello all, I'm currently migrating a TMG to Palo and have come across a rule that uses the protocol "FTP over HTTP". I'm not a TMG expert so the above is about all I know of the rule - that and what Mr Google tells me. Any idea how to configure this rule in to the Palo (the customer does not want to simply open port 80 - plus with a command and...

Resolved! Palo Alto Routing Issue (Forwarding Table)

Hello Everybody, I have several PAs for branches, we have MPLS that is connecting all our branches. We are changing our design in order to use site-to-site IPsec tunnels from each branch to the HQ. And using OSPF in our tunnel to advertise our subnets, since we are connecting one site each week, we are still advertising the subnets via BGP until...

Resolved! Monitor Traffic Searching for Dst Subnet

I frequently use the ( addr.dst in 10.211.2.94 ) query type to search traffic in the Monitor tab of the PAN gui. What if I was looking for any host in the 10.211.2.0/24 subnet? Is there way to have the equivilent of( addr.dst in 67.211.2.0/24 ) or ( addr.dst in 67.211.2.* ) or ?? Thank you.

palomed by L3 Networker
  • 3151 Views
  • 2 replies
  • 0 Likes

Outbound Web Access _Authentication

Good Morning to All – Thanks for reading! I was hoping to get some feedback from the community on how everyone handles outbound web access for their users? I have an Active Directory Domain with about 300 users. We use groups from AD on the Palo device to allow users out to the web and or external resources. The problem I have been facing using...

Resolved! LACP from Palo 3020 Active - Passive to Cisco switch

Hi AllAfter some help from the Guru's.I am trying to configure LACP between PA 3020 Active / Passive and cisco switch.I have created the AE group interface Inside with the ip address.I have added 2 interfaces to the AE Group on each FW. I have created a portchannel on the Cisco switch and put the 2 ports from the Active Palo and 2 ports from the...

Minemeld no webpage anymore

Hi, I have installed Minemeld on a Ubuntu 14.4 virtual machine more than a month ago. All worked well, updates, webpage and all.Today I noticed there is no webpage anymore to login to. Ping resolves so network seems ok.I have restarted the VM and tried to update Minemeld to version 0.9.40 but that version was allready installed.Tried to start th...

Resolved! MineMeld CentOS/Docker Stability

What is the current standing of the MineMeld CentOS docker deployment model? The latest post I have seen from @lmori (29/11/2016) is that it is "quite stable now and supported". Could we get an update on PA's current stance on this deployment model? Is it production viable? Cheers

Resolved! Any Packet Lost when Changeing Interface Type from HA to Aggregate (of HA type)

We have an Active/Active PA-5050's in production with HA3 running on a single ethernet (1GB). I need to know if there will be any packet lost (HA packet forwarding) if I change this interface from HA type to AE type/AE group (e.g. ae8). Considering that this aggregated group (ae8) has been already created and have another ethernet (1GB) already ...

Mass by L2 Linker
  • 4936 Views
  • 3 replies
  • 0 Likes
  • 24334 Posts
  • 124 Subscriptions
Top Solution Authors
Labels