General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

List of custom risks

Hi,

Just started out configuring a new PA3020 and decided to block all risk level 5... there are a couple of apps that I wanted to allow through so re-graded them risk 4.

In the future I want to ensure this is manageable, is there somewhere on the syst

...

Resolved! Panorama Botnet View

Hi All,

Where do you find the Botnet monitor and reports for firewalls running 4.x from a Panorama interface running 4.x? And minimum level permission is required in order to see these Botnet reports?

Appreciate the assistance.

apc050 by Not applicable
  • 5226 Views
  • 6 replies
  • 0 Likes

Active Directory Users not Authenticating to GP

Hi,

We configured agentless User-ID with our PAN OS 5.0.2. We created policies using the AD usernames and it is working fine.

However, We are trying to configure our GP to authenticate using the AD users. This is not working and we are getting the foll

...

rsaber by L1 Bithead
  • 2521 Views
  • 3 replies
  • 0 Likes

Resolved! Using Local DB and LDAP for Global Protect

Hi All,

Is it possible to have Local and LDAP users authenticate to the Global Protect Client.

In the GP configuration, I can only choose one Authentication Profile, which is chosen for Local DB.

I tried to configure another GP Portal but I could not us

...

rsaber by L1 Bithead
  • 3207 Views
  • 3 replies
  • 0 Likes

Best practices for HA PANs and switch stack

For this scenario, assume a simple setup. Two firewalls in HA and two switches in a stack. Also assume the firewalls are in active/passive. Consider the below setup, each firewall has one physical link to separate switch members of the stack.

In this

...

SDorsey by L4 Transporter
  • 8432 Views
  • 14 replies
  • 0 Likes

Resolved! Mask MAC on interface

Does the PAN allow you to clone or mask the MAC address on an interface to one of your choosing?

SDorsey by L4 Transporter
  • 1971 Views
  • 2 replies
  • 0 Likes

Voip external server

I'm experiencing an issue with a connection to an external voip server.

Directly attached to a PA-500 ethernet port there is a patton (fxo voip appliance).

Now, I'm allowing any traffic to outside, any application.

When I surf from that interface I can

...

Global Protect - Split Tunnel

Is it possible with global protect and split tunnel setup to have policies applied for url filtering to the local client so that sites can be blocked in split tunnel mode?

markk96 by L3 Networker
  • 3838 Views
  • 9 replies
  • 0 Likes

show vpn flow: Should "tunnel mtu" be renamed to "suggested tunel mtu"?

Hello,

Can you answer these questions regarding the tunel mtu that appears in the output below?

cstankevitz@PA-500-Local> show vpn flow tunnel-id 27

tunnel  Sterling

        id:                     27

        type:                   IPSec

        gateway i

...

cstech by L2 Linker
  • 3890 Views
  • 3 replies
  • 1 Likes
  • 24342 Posts
  • 101 Subscriptions
This widget could not be displayed.
Top Solution Authors
Top Liked Authors
Labels