General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Welcome to the General Topics Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 624 Views
  • 0 replies
  • 0 Likes

How to block TCP22 connections

Hi everybody

 

I like to know if there is a way to block incoming connections attemps to port TCP 22.

 

I have an end-customer which has lots of connections to his public ip range 0.0.0.0/24 to port TCP22 but not hit the vulnerability 40015 (SSH User Aut

...

SOC_CSG by L4 Transporter
  • 3139 Views
  • 4 replies
  • 0 Likes

Resolved! How to submit a CSR to Microsoft CA?

Hello folks!

 

I have seen a few articles and documentation for generating CSR and submitting to Microsoft CA for subordinates.  What about just a root stand alone enterprise Microsoft CA?

 

I am preparing to configure a Global Protect portal, generated/

...

microsoftCA_1.jpg
OMatlock by L4 Transporter
  • 1874 Views
  • 1 replies
  • 0 Likes

Research paper shows vulnerabilities with SSL interception

On Feb 2017, some universities, Mozilla, Cloudflare, and Google released this paper on corporate and desktop HTTPS interception.

 

First they figured out how to identify when someone connects to a web server through an SSL interception appliance. Then

...

Maxstr by L3 Networker
  • 3746 Views
  • 5 replies
  • 0 Likes

CLI debug pcap verbosity levels

I've been using the cli debug pcap captures for a number of issues recently but was frustrated in the last one by a lack of detail. In this case I was capturing OSPF (debug routing pcap ospf on). When I viewed the capture it looks more like a summary

...

JWileyR by L1 Bithead
  • 2400 Views
  • 1 replies
  • 0 Likes

Resolved! IPS best practise

Hello all,

 

I configured my security profiles with default seetings ..

 

Is ther any refrence for best practise for IPS and wildfire ??

Miner Data Priorities

Is there a way to have MineMeld prioritize miner data once they get to the output stage? Since some output feeds may be too large for certain firewalls, I want to ensure that our static blacklist is always at the top of the list. Currently new additi

...

groehl by L0 Member
  • 2641 Views
  • 1 replies
  • 0 Likes

How to configure Syslog to send a CEF in PAN OS 7.1.3

I had found this article for CEF on PAN OS 6.0.0

https://live.paloaltonetworks.com/t5/Configuration-Articles/PAN-OS-6-0-CEF-Configuration-Guide/ta-p/59938

 

Do the same rules apply for PAN OS 7.1.3? 

I would need to add "CEF:0|Palo Alto Networks|PAN-OS|7

...

User-ID 8.0 - PKI Setup?

Anybody seen any specific directions on how to setup the new PKI enteprise certs in UA 8.0 beyond the fluffy "whats new" feature section.

 

Also what is the different between UAinstall and UAcredinstall ... Release Notes are silent.

PeterT by L2 Linker
  • 3373 Views
  • 3 replies
  • 0 Likes

Panorama Packet Capture: "File Not Found"

I noticed when trying to open a packet capture in the GUI by clicking the green "down" arrow I get the following error message: "File Not Found". This happens for every capture I try to open with the green arrow in PANORAMA. 

 

The packet capture opens

...

Packet Capture File Not Found.PNG

Resolved! URL Categories - match different categories

Hello

How do the PA decide which categorie it should use, if a web site matches 2 categories.

Example: I have checked "www.paloaltonetworks.com" at Brightcloud. The result, it matches "Business and Economy" and "Computer and Internet Security".

So I cre

...

TRisec by L1 Bithead
  • 7078 Views
  • 3 replies
  • 1 Likes

Resolved! Create new output

Hi,

 

I am new to Minemeld, we are running with the classic O365 Minemeld config on MM version: 0.9.34.

 

I have a requirement to extract the data for Skype only.

 

Is it possible to create an output from just the 'office365_skypeBusinessOnline' node

...

paul_w by L2 Linker
  • 3588 Views
  • 2 replies
  • 0 Likes
  • 23944 Posts
  • 113 Subscriptions
Top Liked Authors
Labels