General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussions and customer journey guides to the Cyber Elite program and Member Spotlight features. Whether ...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 4123 Views
  • 0 replies
  • 0 Likes

Erroneous application port

I am getting a deny statement for port 8531 for application ssl. 8531 is for ms-update and my policy allows that but the default policy is denying it because it is tying it to ssl for some strange reason. I don't know how to get around that.

tglear by L1 Bithead
  • 2783 Views
  • 3 replies
  • 0 Likes

problem on user time session timeout, only countdown

Hi to all,I'm new on PaloAlto PA-500 7.1 version.I've searched on and I think I did not find my case.Sorry if there is not and found it.I have the wifi sessions (via AP aerohive) timeout all in countdown.The users are in domain via LDAP and RADIUS.The default time is 2700 seconds.With CLI command 'show user ip-user-mapping ip' I can see all the ...

aerspa by L1 Bithead
  • 4898 Views
  • 6 replies
  • 0 Likes

Resolved! Upgrade Path

my appliance is on PAN OS 8.0.0. Can we upgrade directly to 8.0.2. Can't find any info about this. Thanks

AlbertJJ by L1 Bithead
  • 3047 Views
  • 1 replies
  • 0 Likes

Resolved! Allow Vimeo From Specific Website

Hello, I have a customer that would like to block vimeo completely but allow it specifically from one website, aaregistry.org. I have PAN-OS 4.1.6 running right now and have tried to use a custom URL category in my rule to allow vimeo specifically from that one URL, but I am having no luck. I also even added vimeo.com to the URL category and i...

url filtering question

Hi,How PA categorize (business or research....) and filter if a proxy server re writing a url . for example if the original url is https://yyyy.com and after rewriting it became https://yyyy.com.proxy.mycompany.com Is there a possiblity giving certificate error instead of giving access deined message (from palo alto by url filtering)...

simsim by L4 Transporter
  • 6120 Views
  • 11 replies
  • 0 Likes

GRE Tunnel Interference

Has anyone seen interferrence with GRE tunnels passing through PANFW's set up in virtualwire for passive IDS? The policies are all any, any, any etc and there is no inspection configured? I've read NAT'ing issues may have something to do with it, but not sure why that would be required for a passive set up.

How Can I Uninstall GlobalProtect Client Mac OS X without install package?

My previous employer used GlobalProtect and I'd like to uninstall it from my Macbook Pro running OS X. I no longer have access to the install package which seems to be the only instruction I could find to intiate the uninstall process. Is there a generic version of GP that I can use to uninstall without begging for portal access from my old empl...

paloboyy by L0 Member
  • 4919 Views
  • 1 replies
  • 0 Likes

hsts

Hi,Sorry to ask a general question here Is there a reason sometimes hsts break the connection with an error (your cnenction not private ).If two persons using same browser (eg; chrome ) , for first person it works and second does not Is there something needed to be done in PA Thanks

simsim by L4 Transporter
  • 2832 Views
  • 1 replies
  • 0 Likes

Link Failover with BGP to Multihomed ISP

This configuration it's for a very particular case on my site.I have three links with two ISP (for example: ISP1a,ISP1b,ISP2)I cannot annunce at the same time my entire class over ISP1a and ISP1b for two reason:1) BGP loop problem2) For ISP commercial reasons only one line can transport traffic at time. I want:Annunce my entire class over ISP1a,...

Globalprotect Mac

Globalprotect stopped working - I unistall and installed again and still not connectingI am using Mac Sierra version 10.12Please any suggestions? Thanks Rachel

haratz by L0 Member
  • 2760 Views
  • 4 replies
  • 0 Likes

Global Protect, Radius, SecurEnvoy, question

We had a strange issue with our 2Factor breaking this week, logs looked to be showing a radius auth MD5 missmatch. Between PAN 3020 and SecurEnvoy. During that time we had to many hands on the issue, and feel the team made it worse... So some back ground, We have a 3020 current as our vpn using radius for user auth, that connection/password then...

ktruex99 by L0 Member
  • 2184 Views
  • 1 replies
  • 0 Likes

Services

Is there anyway in the traffic monitor, or the ACC or any other logs to see what services are being hit? I can see applications but not specifically services though to can add specific services in the rules

jdprovine by L4 Transporter
  • 10493 Views
  • 26 replies
  • 0 Likes
  • 24336 Posts
  • 124 Subscriptions
Top Solution Authors
Top Liked Authors
Labels