Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Welcome to the Next-Generation Firewall Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4551 Views
  • 0 replies
  • 1 Likes

Newly-Registered-Domains

Hi Everyone We recently implemented Advanced URL filtering at our University, one of the categories we have blocked is Newly-Registered-Domains, we created a custom URL group and implemented dynamic lists for the infosec team to add exceptions and put a good process in place. The issue we seem to have is that we now face a challenge with our...

GinAmRSA by L0 Member
  • 3386 Views
  • 1 replies
  • 0 Likes

Action is Reset Both in traffic monitoring

The user was trying to access the Proofpoint links it is not accessible in the firewall. We could see the action is reset both in monitoring and a session end reason is policy-deny and checked the threat logs but we couldn't see any logs in the threat. could someone please help me to understand the issue

The panorama encountered a commit failure: "failed to create sdwan cluster meta file: object of type 'NoneType' has no len()"

Hi team, While configuring PanOS SD-WAN, I successfully added the firewalls as managed devices to Panorama and installed the SD-WAN plugin version 3.1.2. Subsequently, I included the devices in the SD-WAN configuration, activated BGP policy for automatic creation. However, an error has surfaced in the process. ---------failed to create sdwan clu...

AkashThangavel_0-1708435135979.png

How to check if a specific port/servic is getting passed throgh the firewall to a specific Public IP address

An IT Auditor stated that SNMP is listening through the firewall for a specific Public IP Address. I have been filtering the network traffic on the PaloAlto 3020 for that specific IP address and also filtering with port 161. BUt Id not see any results except that the 'Deny-Deny' catch all group was being used. That is suggesting to me that t...

My PA-450 is not showing Network activity in the ACC tab

Good Morning! I am not seeing any network activity in the ACC tab for my 450. I've cleared all filters just in case, restarted the management plane, I even failed over to see if it was isolated to the one unit. Both are showing this. When I set the date spans, I see that the 9th is the last time datapoints were added to the display. The ONLY c...

RMaillet by L0 Member
  • 1855 Views
  • 1 replies
  • 0 Likes

Resolved! UserID domain name wrong

Hey everyone! So, we've recently made the switch from Checkpoint firewalls to Palo Alto ones, and we're still ironing out some kinks in the setup. Right now, we're focusing on setting up app control rules and such. But here's the thing: we've hit a snag with UserID mapping. We're hooked up to our Microsoft Active Directory on-prem, and everyth...

PA2.png
PA1.png

Resolved! Upgrading PAN-OS

Hi all, I will upgrade the PA-3200 from pan OS 10.1.9 to 10.2.7-h3, do I need a base image of 10.2.0 for the upgrade process? because i don't see documentation for the upgrading to 10.2.0 Thanks

Study Guide PCNSE in contradiction with the Technical doc.

Hi !, Just want to be sure please, The study guide page 181 mention that to use data port for HA1 link and management port as HA1 backup but it's not what is written in the technical doc... HA1 on Mgt port for PA without dedicated port and a data port for HA1 backup. I guess the technical doc is correct. All the best Ramin

remy2vad by L1 Bithead
  • 2292 Views
  • 4 replies
  • 0 Likes

Dynamic User Group Auto Remediation configuration

Zero Trust architecture is the new trend of Security Philosophy based on the principe, never trust and continuously verify trust, which means even if the user is authenticated and permitted to access corporate resources with least privileges using RBAC, he is continuously tracked and monitored to detect any malicious activity, anomalous behavior...

rmeddane_0-1707731434750.png
rmeddane_1-1707731434762.png
rmeddane_2-1707731434765.jpeg
rmeddane_3-1707731434767.jpeg
rmeddane by L2 Linker
  • 1794 Views
  • 0 replies
  • 1 Likes

Agcinvokerutility.exe - Adobe Utility

Hi All, Recently our Palo Alto flagged Agcinvokerutility.exe (Virus/Win32.Wgeneric.Eedlvy(624280308)) as malicious. A quick search on the virus signature on Virus total confirmed it to be highly malicious. However, Agcinvokerutility.exe is also a known Adobe Utility which verifies if a valid version of adobe software is being used. Has any...

PA-410 GUI is very slow over IPsec vpn

We are deploying new PA-410,450,440 in remote location. From Head office firewall to Remote location there is an IPsec vpn. When users from HO try to access PA-410 firewall over GUI it took 10 - 15 minutes to load. During this GUI loading data plane interface latency increases for example if i try ping servers in HO location from LAN inside P...

  • 1588 Posts
  • 60 Subscriptions