General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! What PAN-OS version is support currently recommending?

What PAN-OS version is PAN support currently recommending for active/passive PA-3050s?  Last I checked (a few months ago), it was 7.0.8.  We're currently running this version, but it has a minor bug that is impacting us.  We were told by support a fe

...

What's new in MineMeld 0.9.28

Release Date: 2016-11-16

 

How to update: Updating MineMeld

 

Core

- stability and performance improvements in most of the Miners

 

API

- new authentication and authorization mechanism for output feeds. Disabled by default for consistency with previo

...

Screen Shot 2016-11-16 at 12.49.48.png
Screen Shot 2016-11-16 at 12.54.53.png
Screen Shot 2016-11-16 at 12.54.30.png
lmori by L7 Applicator
  • 2891 Views
  • 0 replies
  • 1 Likes

Error reading last checkpoint

Hi everyone,

 

I am facing an issue that floods my output SIEM a little to often. The issue seems to be that the miner node is unable to register where it left of during the last check. Any tips on solving this?

 

2016-11-14T08:54:30 (17269)base.read_che...

Forseti by L1 Bithead
  • 4758 Views
  • 5 replies
  • 0 Likes

Resolved! Check error on interface

Hi,

 

I was playing around with CLI and typed the command:

>show system state filter sys.s1.* | match crc

 

Then got this details:
sys.s1.p5.detail: { 'bad_crc': 0x157352, 'fragments_pkts': 0x1247, 'mac_rcv_error': 0x228b09, 'pkts1024tomax_octets': 0x13e0f

...

MineMeld Docker

I started building out a very simple dev (read: unhardened) docker build for MineMeld here: https://github.com/swannysec/MineMeldDocker

 

Looks like it won't start up correctly inside a container and I think it might be related to the use of UNIX soc

...

rsyslogd dependencies problem

Hi Luigi,

 

I was testing stdlib.localSyslog to correlate paloalto logs with indicator following this article https://live.paloaltonetworks.com/t5/tkb/articleprintpage/tkb-id/MineMeldArticles/article-id/11

 

But I was unable to make it work. After a

...

uam by L1 Bithead
  • 5340 Views
  • 3 replies
  • 0 Likes

Link types for HA

I have a client who wants to split their PA3020 HA cluster between 2 datacenters.   What are the limitations for the HA1/HA2 interfaces in terms of distance, and network latency for active/passive HA to work cleanly.  On a 3020 can HA1/HA2 functional

...

rswart by L0 Member
  • 1858 Views
  • 1 replies
  • 0 Likes

BGP Multiple ISP VR Requirements

I'm attempting to wrap my head around a very critical piece of setting up BGP between 2 ISP's concerning how many Virtual Routers are required.

 

I currently have 1 ISP (A) up and running on BGP just fine and my other ISP (B) will be converted to BGP o

...

Application Filter Traffic Reports

Is it possible to view traffic related to a specific application filter through the "Monitor" tab? For example, if I setup an application filter for the "gaming" subcategory, can I view the related traffic without specifying each application individu

...

Resolved! Best Practice policy 7.1

I am attempting to implement best practice internet gateway in the 7.1 admin guide. One on the steps toward the end is creating Temporary tuning rules to see what applications are communicating over non-standard ports. I have rule above the tuning ru

...

web-browse log.PNG

active/active vpn query.

Hi Team,

Case no: 00567829

I have a customer, who have active/active set up.
He had configured a vpn with the floating ip.

The vpn is working fine. No issues with that but he is getting system alert message on the active/secondary device about the phase1

...

  • 24231 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels