General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Aperture use

HI, anyone out there use Aperture yet? I have trial license which I have setup and added polices. Now what is suppose to happen? I see it show me Im now monitoring Salesforce and box.com but  as show below everyting is showing "0's after a week of ru

...

Screen Shot 2016-04-20 at 8.59.12 AM.png

Source IP address is set to "none"

Hello All,

 

Lately I am noticing some polices that the Source IP address set to none as shown below can anyone let me know if none act like any or not?

I think yes as I created policy from Noc_OSS zone with IP add 192.168.*.* toward Default zone wit

...

none.PNG
M.Hafi by L1 Bithead
  • 2796 Views
  • 6 replies
  • 0 Likes

Ethernet interfaces randomly resets

Hi,

 

I have an issue, I'm running PA-200 with PAN-OS ver. 6.0.12

 

I'm running Palo in Virtual Wire mode Eth1/1 is untrusted zone and Eth1/2 is trusted zone.

My problem is that from unknown reason the interfaces randomly just freeze (LEDs are going

...

ScreenShot412.png
jac_nor by L0 Member
  • 1837 Views
  • 3 replies
  • 0 Likes

Resolved! flush-dns flag in GlobalProtect registry resets to "no"

I'm currently having an issue with users having to do "ipconfig /flushdns" in order to gain access to certain network resources when connecting to VPN.

 

There is a registry entry called "flush-dns" located under HKEY_CURRENT_USER\Software\Palo Alto

...

as-mg by L3 Networker
  • 5352 Views
  • 1 replies
  • 0 Likes

Restart UserID will affect to the service?

Hi,

 

If i run these commands in FW will affcet to the service???

 

Please try restarting the User-ID 
>Debug software restart process user-id

>Debug user-id reset user-id-agent all

 

How log affect to the users? Should i ask for a window maintenance

...

Active-Active NAT Rule Binding

I can't find anything which goes into enough detail on Active-Active design around NAT and more importantly ARP.

The easiest way to explain the current deployment is as follows:

  • Site 1 / Firewall A
  • Site 2 / Firewall B

Each firewall is connected to uni

...

CHammock by L2 Linker
  • 3998 Views
  • 3 replies
  • 0 Likes

Best practice for blacklisting App-IDs

What is the best practice for blacklisting potentially harmful Application ID's(from "trust" to "untrust" over 80/443)?

 

I started blocking on specific App-ID's, but maintaining this blacklist per App-ID will be kind of cumbersome.

 

I'm thinking ab

...

jambulo by L4 Transporter
  • 3054 Views
  • 4 replies
  • 0 Likes

Question/FR for mining rDNS zones?

I have a environment that is currently using rDNS to identify host security policies, and it has older Checkpoint firewalls use this data dynamically via CP Domain Objects to tie rDNS lookups to security policies. This obviously has some challenges a

...

mpetzold by L0 Member
  • 2632 Views
  • 1 replies
  • 0 Likes

Feature Request Policy Export

Hi paloalto community

I really don't knwo where I should place my feature request. I hope it's the right place and somebody notice my request.

 

I would appreciate an export button for policies and objects directly to csv. It should be possible to fi

...

Error useridd log

 

Hi,

 

We are having a lot of strage log in the useridd.log file. We dont know why we are receiving these logs.

The LDAP is configured correctly and we have the read permissions for everything in AD user. Users are working fine.

 

Please why are we

...

Dynamic VPN to Dynamic VPN

I'm wondering if anyone has addressed this yet.

 

I am setting up a VPN between a PA-200 and PA-VM100. Both of the sides have a dynamic IP and we're using an FQDN DNS forwarder as our Peer IDs. Both sides won't initiate the connection since they're b

...

ahughes by L0 Member
  • 2648 Views
  • 1 replies
  • 0 Likes
  • 24250 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels