General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 379 Views
  • 0 replies
  • 0 Likes

Subscribing to taxii output?

We're trying to subscribe a few products to taxii outputs and so far we're not having any luck. Some questions which might help here are:

 

1) How do we enable authentication on outputs? There are warnings about it in admin and whatnot, but I'm not p

...

chirss by L3 Networker
  • 2608 Views
  • 1 replies
  • 0 Likes

Resolved! Message of the Day Updating?

So I know that one can go into the GUI and easily update the MOTD, problem is I'm not usually in the GUI for anything on my devices. Does anybody know how one can update the MOTD through the API or CLI, I could have sworn that I found it in the CLI a

...

BPry by Cyber Elite
  • 2338 Views
  • 2 replies
  • 0 Likes

Resolved! Clear a Commit in PAN OS 7.0.5-h2?

Hi folks,

 

Trying to figure out if there is a way to clear a Commit in PAN OS 7.0.5-h2?

 

I see there is mention of it in the PAN OS 7.1 New Features guide.

https://www.paloaltonetworks.com/documentation/71/pan-os/newfeaturesguide/management-features/com

...

OMatlock by L4 Transporter
  • 4317 Views
  • 4 replies
  • 0 Likes

Resolved! IPSEC interoperability between PAN and Cisco 5510 ASA

Hi, 

 

We have a site A with PAN Firewall and site B with Cisco 5510 ASA. IPsec VPN tunnel is built between these 2 sites.

 

In certain occasions, we have the ISP site B network link up, but the users is experiencing no internet in siteB. As it is only a

...

Resolved! Scheduled SaaS Report

I feel I must be missing something obvious with the SaaS report.  I have set a schedule up to create it weekly and if I hit "Run Now" I get the nice graphical report, but if I view the output of the scheduled run , I get a very plain tabular list of

...

djr by L4 Transporter
  • 5373 Views
  • 9 replies
  • 0 Likes

Resolved! Converting Cisco ASA Access Lists to PAN

Is there an easy way to convert a Cisco ACL to PAN format. Right now I have a 70 line ACL and it looks like each ACL will require 14 set commands. At this point I'm thinking it might be easier to just enter the 70 ACLs into the PAN via the GUI. 

Any o

...

palomed by L3 Networker
  • 5035 Views
  • 4 replies
  • 0 Likes

Resolved! Pre-Install Pan Upgrade with no reboot

Does anyone download and install PANOS updates but wait to reboot until a scheduled maintenance window?  I'm wondering how risky this would be and/or how long you can let a firewall sit waiting for a reboot to the installed new version.

 

This would sa

...

epeeler by L2 Linker
  • 5888 Views
  • 5 replies
  • 0 Likes

IPSec Conversion utility for Cisco ASA to PAN 6.1.1?

I have a couple of Cisco ASA tunnels I need to convert to Pan. Each has about 200 lines of config all told. Whether I mark things up in a word processor or enter it in PAN gui - it's going to be a slog. Pausing to ask the community: Might there be a

...

palomed by L3 Networker
  • 2776 Views
  • 5 replies
  • 0 Likes

Hot shield proxy- PA unable to block

we have created the application filter for proxy based apps-140+ apps are in that proxy filter which includes IKE, IPSec, Hot-shield etc except SSL.

 

This proxy-based app filter is called in the security policy (with block action). In addition to that

...

botnet

Hi,

If someone running a botnet inside local network ,is there a way to  get an alert  like siem, from reports ,from live stattistics ?

 what are the steps to identify these kind of traffic ?

Finally how to block them when threshold reaches  ?

Thanks

 

 

 

simsim by L4 Transporter
  • 3180 Views
  • 8 replies
  • 0 Likes
  • 23835 Posts
  • 112 Subscriptions
Top Liked Authors
Labels