General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 357 Views
  • 0 replies
  • 0 Likes

Dynamic Block Lists and Spamhaus

Does anyone know if the Spamhaus format drop lists (that use ";" delimiters to denote descriptive text) are accepted as PA Dynamic Block lists?

http://www.spamhaus.org/drop/drop.txt

Rgds

apackard by L4 Transporter
  • 8338 Views
  • 5 replies
  • 0 Likes

user agent refresh

hi!

i was wondering what is the time frame for the user agent to "discover" newly added users or security groups, in an LDAP environment?

if such a timer exists - is it configurable?

can the agent be forced to update its database?

thnx!

Resolved! Dynamic Block List format clarification

I need some clarification on this great head start on Dynamic Block List format:

Working with External Block List (EBL) Formats and Limitations

I note that a few lists seem ready to use without re-formatting like:

http://rules.emergingthreats.net/fwrule

...

MCmgt by L2 Linker
  • 3642 Views
  • 1 replies
  • 0 Likes

Failover latency

Hello,

I have one question and I hope somebody will help me.

Does PaloAlto has a recommendation for failover link latency. For example I have firewall cluster and this cluster is done across wide area.  What max latency should be used for properly func

...

aaputis by L0 Member
  • 2575 Views
  • 2 replies
  • 0 Likes

Brightcloud Revision 4272 and *.googleapis.com

Just a heads up that revision 4272 of Brightcloud which installed on my PAN-500 overnight marks *.googleapis.com as spyware, so certain Google services will not load if you are blocking adware/spyware categories.  I reverted back to 4271 before I fig

...

AD integration and exclude one user

Hi

Today I faced with a problem, I had to add second gorup to my "Athentication Profile" and I can't do that...

Every time when I try to past a  "CN=VPN_users,OU=U,OU=Work Groups,OU=Security,OU=Groups,DC=contoso,DC=local" I got it as a user not a group

...

_slv_ by L4 Transporter
  • 2723 Views
  • 3 replies
  • 0 Likes

PA 6.0.1

Hi,

I am looking to find out if there has been any issues with 6.0.1.  We are new to PA and we are thinking about upgrading to 6.0.1 from 5.0.11, but we would like to see if anyone had any issues with either the upgrade itself or the version.

Any help

...

Urgent: Enable to connect voip data in Virtual mode

Hi all,

  I am on site now with client and i had some problem in deploying the PA-500, please i need your help:

I have configured PA-500 in Virtual-wire mode in a lan2lan liason between the two client sites and set the rule to allow any any. but when w

...

Lahcen by Not applicable
  • 3228 Views
  • 5 replies
  • 0 Likes

Palo alto can detect SPAM

Hi i have a doubt about Palo Alto. Yesterday we realised that there was a massive spam sending from our email servers. This is the second incident of its kind in recent days. The question is whether the Paloalto can do some kind of test to detect thi

...

VPN strange behaviour

Hi,

I have  configured a VPN between JUNIPER SSG550 and PA-3020 (5.0.5) but this VPN is not going up. Yesterday I was configuring this VPN almost 4 hours until finally vpn went up but i checked this morning the vpn state and its down again and nobody

...

SOC_CSG by L4 Transporter
  • 5510 Views
  • 8 replies
  • 0 Likes

gmail-base without smtp, pop3, imap applications

Hello,

I don't really get the application dependency. I had a case at my customer. They asked me to allow gmail-base application, so I made security policy. But when I committed the settings a popup appeared that told me that additional applications s

...

HIP Check?

I have a client that fails HIP Profile check but he should not. Where can I find the reason for the failure?

Is there a log that can shows the HIP check.

The HIP Match Log in the Monitor only shows clients that Matched the HIP Profile.

Thanks,

tomm by L0 Member
  • 2281 Views
  • 1 replies
  • 0 Likes

Problem with system logs

Hello

I realized that something wrong is with system log. On dashboard I have "No data available." in "System Log" sections.

In Monitor > system log I have a lot of

I did :

debug software restart device-server

debug software restart management-server

Thi

...

_slv_ by L4 Transporter
  • 7303 Views
  • 12 replies
  • 0 Likes
  • 24057 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels