General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Data pattern to check 2 conditions on Credit Cards

Hi,

 

Let's say I want to create a Data Pattern to check 2 conditions on DLP:

 

1) Check Luhn number. This can easily be done by setting a weight in the "CC" field on a DLP Data Pattern.

2) Once the Luhn number checked, check if the first 7 numbers of the

...

MarcelST by L3 Networker
  • 2392 Views
  • 2 replies
  • 0 Likes

Resolved! Bandwidth limit AD group

We have a need to limit download and upload to 50 Mb/50 Mb for a specific AD group in our company. I have followed the steps in this article

 

https://www.paloaltonetworks.com/documentation/70/pan-os/pan-os/quality-of-service/use-case-qos-for-a-single-

...

Resolved! ACC report on Sunday

Hi Guys,

 

ACC issue. Don't know what could be the reason for the URL block report to show some activities when nobody was using a network on Sunday. NTP? And also question to why all users got 2 digits in the end of their username, Is it normal?

 

Thx,

M

...

Latimer issue.PNG

BlackNurse Testing Causes issues on Egress Firewall

FYI It doesn't appear to require an attack to be an IP address bound to the PA.

 

It also appears that testing a remote firewall while egressing through a PA firewall causes your local firewall to experience DOS effects. It is not just inbound to an IP

...

bspilde by L4 Transporter
  • 2483 Views
  • 3 replies
  • 0 Likes

Resolved! TLS secured SMTP inbound inspection?

Hi,

I've recently had a client who's PAN appliance failed to pick up a Zero-Day piece of malware that found it's way into their network via email.

We have wildfire configured correctly and it transpires they are using opportunistic TLS on their mail re

...

Dpeters1 by L2 Linker
  • 14529 Views
  • 11 replies
  • 0 Likes

Resolved! show routing resource

When using  show routing resource command. Why is there a overlimit value when we are under the 2500 limit count

 

 

LOBAL ROUTING RESOURCE USAGE:
==========
All Routes (total): 1088 (limit 2500)
All IPv4 Routes (total): 1088 (limit 2500) (overlimit counts

...

BlackNurse Denial of Service Attack

http://www.netresec.com/?page=Blog&month=2016-11&post=BlackNurse-Denial-of-Service-Attack

Has anyone here tested the effect of this on any PAN-devices ?

http://blacknurse.dk says:
LIST OF REPORTED AFFECTED PRODUCTS :
Cisco ASA 5515, 5525 (default setting

...

Dulle by L2 Linker
  • 3845 Views
  • 4 replies
  • 0 Likes

Resolved! Different subnets on the same interface

Hi,

 

my ISP has assigned me with a /30 for the p2p connection and it is routing a /24 public subnet towards that /30. Meaning the WAN interface in the Palo will have to respond to many different ips on two different subnets. I haven't found any Kb tha

...

myrdin by L2 Linker
  • 9654 Views
  • 10 replies
  • 0 Likes

Block page for security policy matches

Is there a way to return a block page to users when their connection is blocked not by the URL-filter but by a security policy?

 

We have a security policy that blocks all outbound traffic to a list of foreign countries.  The problem is when users atte

...

fmurray by L1 Bithead
  • 1675 Views
  • 1 replies
  • 0 Likes
  • 23712 Posts
  • 104 Subscriptions
Top Solution Authors
Top Liked Authors
Labels