General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Deny the access to the servers in LAN zone

Hello,

I need to restrict the access to a critical server in our company i the LAN zone . I add a security rule that restrict for exemple the address 192.18.1.25 to access to database server tht has the address 192.168.1.20 . I add a security rule fr

...

RCHAIBI by L2 Linker
  • 2573 Views
  • 6 replies
  • 0 Likes

How to Allow an App But Block a "Depends On?"

From what I understand, you need to explicitly allow "depends on" apps for a given app to work,

 

https://live.paloaltonetworks.com/t5/Management-Articles/How-to-Check-if-an-Application-Needs-Explicitly-Allowed/ta-p/61893

 

However, what if I want to

...

cosx by L2 Linker
  • 3064 Views
  • 2 replies
  • 0 Likes

Resolved! Eicar no longer in AV signatures?

Is Eicar testfile no longer blocked by PA? I've tried through 2 PA devices and on both occasions it arrived to endpoint station (where was blocked by endpoint AV).

On 8th September 2015 same configuration was still blocking it.

 

Yes, I am trying htt

...

santonic by L6 Presenter
  • 3994 Views
  • 4 replies
  • 1 Likes

PCoIP_server_win32.exe protection with TRAPS

Hi all,

 

When trying to protect the PCoIP_server_win32.exe process from the VMware Horizon View desktops, connecting to those desktops becomes impossible. When I disable that policy, we can start connecting again without reboots of the desktops. The

...

MS SQL Server Endpoint Protection policy settings

Hi all,

 

I'm trying to see if we can protect Microsoft SQL Server using the TRAPS agent (currently this means protecting the TRAPS server with the TRAPS agent). When I do protect the MS SQL server however using provisional mode, sqlservr.exe crashes

...

Aggregate Ethernet Trunked Traffic in a VWire

Hi Team, 

 

I was wondering if the below is acheivable. I plan to deploy vwires for this setup. Upstream switch's are Cisco switch's and same with downstream. (downstream switch's are stacked switch's - so logically one switch) The red is indicating

...

Screen Shot 2015-10-17 at 15.45.02.png

Issues with SSL Inspection

Hi,

 

I am having this weird issue where an application breaks because of SSL inspection. I have made an exclusion  based on the certificate:

ssl-exclude-cert [ login.salesforce.com *.salesforce.com ];

 

However, the firewall still decrypts the traffic, a

...

salesforce.JPG
MMCiobanu by L3 Networker
  • 3633 Views
  • 6 replies
  • 0 Likes

PBF e-mail notification

Hello,

Does anyone know if there's a way to have a notification e-mail sent when PBF kicks in?  We had a hiccup on our Internet circuit and PBF worked flawlessy... so well though that I wasn't really aware of the circuit issue until the next day when

...

dwoolley by L1 Bithead
  • 3141 Views
  • 4 replies
  • 0 Likes

Resolved! PA-500 6.1.4 Policy and URL filtering

Hi,

I have very big problem with my firewall. I have a few URL filtering rules which I block some of sites. 

Example:

1. Allow social network(linkedin) block youtube -> name AllowSN

2. Allow youtube block social network(linkedin) -> name AllowYT

3 an

...

ITBT by L1 Bithead
  • 3539 Views
  • 8 replies
  • 0 Likes

PA 500 stop sending reports automatically by email

Hello,

 

After upgrading two cluster of PA500 to 7.0.1, customized reports cannot be sent automatically using email.

Using the 'Test send email' is working so it's not an issue with the config. The device stop sending the reports after 18 days...

 

Regard

...

licenselu by L4 Transporter
  • 2653 Views
  • 4 replies
  • 0 Likes

PCNSE6 exams now available at Pearson VUE

Effective today, students and partners can sit the PCNSE6 certification exam at a Pearson VUE testing center.   To register go to http://pearsonvue.com/paloaltonetworks/

 

 

We are excited to expand our test delivery availabilty through the Pearson V

...

mtuite by L0 Member
  • 1909 Views
  • 0 replies
  • 0 Likes
  • 24272 Posts
  • 99 Subscriptions
Top Liked Authors
Labels