Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Problem with Security Zones.

Dear Members, 

I need some help regarding the Paloalto firewall. We are managing the firewalls using the Panorama. I am new in the environment. I have been told that the source subnet resides in the inside zone hence I added the source group in the i

...

omarali53_0-1726352843740.png
omarali53_1-1726353054367.png
omarali53_2-1726353282724.png
omarali53_3-1726353419343.png

Inbound and outbound security rules

Hi Experts,

 

I have 2 rules which are for Inbound/Outbound traffic and both are using Geo locations. These 2 rules have the Negate feature checked.

 

Inbound and outbound rules allow 20 countries, and the rest are denied (China is on the denied list

...

tinhnho by L3 Networker
  • 1206 Views
  • 1 replies
  • 0 Likes

Firewall Rules

I was wondering if anyone had any interest or thoughts, but I am tired of always having to build rules for popular products that are not well-documented.  I was thinking of starting a forum to share these common configurations so we all don't have to

...

Strata.png
bschaper by L2 Linker
  • 1574 Views
  • 5 replies
  • 1 Likes

What does FBO stand for

We are troubleshooting something with TAC wherein they asked us to set the FBO to "Software". 

What, exactly, is an FBO? I cannot find any references thereto in the docs besides the CLI reference, and that tells me nothing.

HA Passive interfaces not coming up.

Hi All, I have searched the community before posting however I cannot find a solution for the issue I am experiencing.

 

We have a very straightforward physical topology. A cisco 9500 sw switch stack operating as a stackwise-virtual chassis. On Switc

...

fw1972 by L0 Member
  • 1904 Views
  • 3 replies
  • 0 Likes

Traffic Issues

Hi Friends,

 

We are seeing this issue with one of our customer in recent few days where a particular destination traffic which should go via security rule are passing via PBF policies which is not expected.

 

The Destination address which is not spe

...

Satyak by L3 Networker
  • 771 Views
  • 1 replies
  • 0 Likes
  • 1714 Posts
  • 56 Subscriptions