General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! EBL policy (URL & IP)

Hello,

 

We have succesfully implemented the EBL with an Dynamic IP List,

We also want to block destinations URL based , so i've created an Dynamic URL list.

 

Is it possible to combine both objects into one security policy or do I have to create seperate

...

ppater by L1 Bithead
  • 1726 Views
  • 1 replies
  • 0 Likes

Log Retention

I forward all my device logs to Panorama.  I just noticed that the logs only go back 1 day. How can I enable longer retention?  Is there a setting for that?

PANOS Autotag Workflow

I understand we can now add action to dynamic update source / destination IP to our DAG by log forwarding profile.

 

Can i create 2 traffic profile, 1 for forwardining to syslog another 1 to update the DAG?

 

How does it work.

 

Thanks

yctan by L2 Linker
  • 2477 Views
  • 3 replies
  • 0 Likes

On-Site-Spare (OSS) revert License

Dear all,

Pls help me

I transfered license to Spare device for PAN-OS upgrade, now I can not revert the license back to Primary device, is there any suggestion for me in this case?

Huy by L1 Bithead
  • 2982 Views
  • 4 replies
  • 0 Likes

Ethernet logs on palo alto

My internet link is terminated on ethernet 1/3 of palo alto firewall, how can i can find ethernet logs on firewall to troubleshoot circuit issue and report it to service provider?

Resolved! Looking for PANOS 8.0 spec sheet

Hi,

 

With the new hardware platform (PA220, 800 series and 5200 series) and new PAN OS 8.0 released.   I am looking for a comprehensive cheat sheet that has all the limitation on all the PAN firewalls running on 7.1 and 8.0,  ie, 

 

# of ARP

# of ipv6 ne

...

DIPP A/A Enviroment Floating IP

Hi Guys,

 

we´ve an Active/active Cluster enviroment. For the normal Internetconnection we will use Source/Hide NAT (DIPP).

At the moment we will NAT on both firewalls the traffic through the interface IP. This works fine, the failover is

ok only one pak

...

mschwab by L1 Bithead
  • 2082 Views
  • 3 replies
  • 0 Likes

topology

Hi,

 

I have the below topology .

Planning to put  PA in vwire mode in betweent the asa and core in active standby.

If r1 fails and asa1 is active and asa2 is standby  ,asa2 will become active .

. Lets say pa1 is active and pa2 is standby .

When asa change

...

PA.png
sib2017 by L4 Transporter
  • 3670 Views
  • 8 replies
  • 0 Likes

http proxy -session end reason decoder.

All traffic via firewall works fine except http-proxy. PC makes connectio with http-proxy but the proxy session keeps on dropping. session end reason decoder. Is that normal for http-proxy app.

pa-500 doesn't resolve host in log

Hi,

 

I have Pa-500 with firmware 7.1.6

 

I have created dns registers for laptops, pc and mobile phones (inverse and direct zones).

 

In Monitor/Logs/Traffic. When I check resolve hostname. It resolves sources only for laptops or pc are in domain.

 

It does

...

  • 24002 Posts
  • 102 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels