General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 616 Views
  • 0 replies
  • 0 Likes

Strange Behavior with SIP traffic related to ALG

I'm running into an issue where specific NAT and Security policy names or numbers change then the SIP traffic stops working. I found that if I clear the sessions post change then everything starts working again. I believe this is related to ALG, lik

...

Packet Capture filters not correct

I have a problem once in a while where packet capture filters are not working.  I set up the filters at one point and if I delete the filters and set up a new filter.  Turn packet capture back on and it still gives me captures of the old filter.  I c

...

Getting old PA-200 back in IT life

Hello

i inherited on PA-200 on my new job and want to get it back on IT life. While booting i observed the CLI and this is what i got. Needless to say i have no responces to any command entered.

Is anyone abel to provide some info how to set it up agai

...

Traffic Logs - Multiple IP's

Hi,

 

Is there an easy way to monitor traffic logs on say 20 IP's to see if any IOC's are being hit? I'm guessing I could build a filter for each IP but I was hoping there might be a way to do it easier. These are not contiguous IP's so CIDR won't help

...

Resolved! Looking for screenshots of a bare metal restore on a 2050

I'm developing an SOP and require screen shots for the following steps:

  1. On the ‘Device’ tab, choose ‘Setup’ and configure the following:
    • On the ‘Management’ tab under ‘Management Interface Settings’, enter the firewall’s IP address, netmask, and defaul
...

PAN-OS 8.0.2 URL logs not showing up

Hi guys,

 

I'm running a new PA-VM-50 on 8.0.2 within Esxi.  The VM is fully licensed and has all the latest dynamic updates and URL filtering db.

 

VM License - VM-50
VM Mode - VMWare ESXi
Software Version- 8.0.2
GlobalProtect Agent - 0.0.0
Application Vers

...

Resolved! "Engine Fatal" error message in minemeld

Currently on version 0.9.38 and I'm getting a fatal engine error message. Tried restarting the engine I get this error message. 

 

minemeld-engine FATAL Exited too quickly (process log may have details)
minemeld-supervisord-listener RUNNING pid 1519, up

...

RobertWu by L0 Member
  • 4177 Views
  • 1 replies
  • 0 Likes

SSL decryption for email

Hi,

 

Do we need to enable SSL decryption simply for reading SMTP messages?

 

We have created a profile under Objects and attached it to incoming mail policy but attachments with extension dll, bat, exe file all get through and see nothing in Wildfire su

...

FileBlock.png
Farzana by L4 Transporter
  • 2338 Views
  • 2 replies
  • 0 Likes

Config .XML in the config bundle is empty

Hi everybody!

 

I have a little issue with which maybe you can help me: I have a HA with a pair of 3060s among other FWs managed by a Panorama, when exporting a config bundle from the Panorama, the config XML file for the pair of 3060s is empty. What

...

Carracido by L3 Networker
  • 2936 Views
  • 3 replies
  • 0 Likes

Resolved! Monitor Logs

How do I change what gets logged in the monitor URL logs.. All I see are block url messages.. I need to see all traffic.. Thanks

rmsdip3 by L1 Bithead
  • 2738 Views
  • 4 replies
  • 0 Likes

Check patchs installed HIP

Hi,

 

We configured the HIP module in Palo Alto but is not able to detect patches installed on Global Protect clients sometimes.
There are clients, connected to the VPN GP that if it is able to see the patches, in contrast there are others that does not

...

patch.JPG

How to find source of high open sessions and/or throughput

If your Palo Alto firewall is experiencing an unusually high OPEN session count, and/or high throughput, what is the best way to determine the source or destination at the same time of the event?

 

We have most of our security rules set to log at ses

...

jambulo by L4 Transporter
  • 7271 Views
  • 5 replies
  • 0 Likes

Resolved! web access for local administrators

We have our web access rules setup to match up with AD groups, so if you’re not in an web access AD group then you can’t get on the internet.

 

The issue our PC support guys have is when they log into a PC or laptop as a local administrator they will n

...

  • 23940 Posts
  • 113 Subscriptions
Top Liked Authors
Labels