General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Xbox Live & Decryption

Hello Everyone,

 

Recently I have faced an issue where Xbox Live fails to connect or more specific, fails to 'authorise' when decryption is enabled.

 

Looking into this further it seems that Xbox Live connects to similar services that Windows uses fo

...

Screenshot_43.png
Screenshot_44.png
bmorris1 by L4 Transporter
  • 2321 Views
  • 0 replies
  • 4 Likes

Highlight Unused Rules

Hi

We're running 4.0.1 in a test environment. We have a large Checkpoint rulebase that we will export. It ideally needs a rule tidy up to remove unused rules and objects.

Can someone describe how the "Highlight Unused Rules" tick box option on the pol

...

fmd by L3 Networker
  • 4325 Views
  • 5 replies
  • 2 Likes

High Availability Active/ Standby per Virtual System

 Hello,

As you may know, PA HA is per physical boxes only. If you have 2 boxes running virtual systems and you want to have HA, you can't have VSYS1 on box1 active and VSYS2 on box1 standby. Box1 must be active on all VSYS on it or Standby on all VSY

...

PA.PNG

PAN-OS Bi-Directional NAT and Nintendo Online Gaming

I have a couple of Nintendo consoles on the network which would like to connect for online gaming.

 

I am on a cable connection so am using Dyndns lookup for my external-IP.

 

I have the following Bi-Directional NAT policies configured.  

 

Applicati

...

screenshot_25.png
screenshot_26.png
screenshot_27.png

Resolved! Decrypting Dropbox

Hi,

I want to decrypt Dropbox but it doesn't work. I have a catch-all decrypt policy that decrypts any-any SSL. It works fine except for Dropbox. My understanding is that Dropbox is on the PanOS internal exception list so decryption is supposed to be

...

Global Protect Routing Table

Currently for Global Protect we route all traffic through the firewall.  Is there a way we can add IP’s to the routing table for GP clients only?  For instance, add GoToMeeting IPs and have all that traffic go out the Internet.  Is this possible?

rrau by L3 Networker
  • 4825 Views
  • 1 replies
  • 0 Likes

K-12 - QOS with PARCC Testing

Has anyone looked into doing any QOS for the PARCC assesment testing? Right now I'm not doing any QOS on our 5050, but think it would be a good idea to do something so the testing gets priority over some staff member watching Netflix during their bre

...

bbilut by L3 Networker
  • 1517 Views
  • 2 replies
  • 0 Likes

user to ip mapping with LDAP

I have a pa 3020 running 6.0.8 doing LDAP lookups to multiple edir servers,

 

I have many users that PA shows as unknown but when I look on the server I see they are logged in x.x.x.x

Why does this work for some but not all?

 

I have done the followi

...

ccboe by L0 Member
  • 1590 Views
  • 2 replies
  • 0 Likes

Resolved! Dedicated log collector licensing

How are dedicated M series log collectors licensed. We are planning a deployment with two M-100 appliances in an HA configuration. If we add a third M-100 as a dedicated log collector, do we need a third license for Panorama? 

Lepton by L1 Bithead
  • 3703 Views
  • 1 replies
  • 0 Likes

Resolved! User-ID redistribution SSL error

Hello,

 

I am trying to configure to 2 PA to share their user-id data.

I used the following guide: https://www.paloaltonetworks.com/documentation/60/pan-os/pan-os/user-id/configure-a-firewall-to-share-user-mapping-data-with-other-firewalls.html#61291

...

Marck.To by L1 Bithead
  • 3342 Views
  • 2 replies
  • 0 Likes

User Activity Reports on Panorama

 

When we generate a UAR (Using Monitor/PDF Reports/User Activity Report) on Panorama for a particular managed firewall, we do not get any broswing summary sections in the report. If the same report is run on the firewall itself, we do get that infor

...

Nig by L1 Bithead
  • 1781 Views
  • 2 replies
  • 0 Likes
  • 24276 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels