General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Global Protect too many outstanding keep alive

Hello guy's

did Someone see this kind off message in global protect agent log on windows device.

message :too many outstanding keep alive

and just after this message a logout is innitiated

the VPN session is mount conntected and after less than 2 min a

...

Gregoux by L4 Transporter
  • 3334 Views
  • 1 replies
  • 0 Likes

Resolved! PAN as an explicit proxy?

Hi all,

I have a simple question, is it possible to make my PA-3020 work like an explicit proxy ?

I configured URL Filtering and I would like to adress web requests to the PA-3020 just like if it was a real explicit proxy...

Many thanks in advance.

Rudy

Alarm on device

Hi,

     We've did a little bit of testing on Palo Alto device and kind of want to know something about Alarm that we still can't produce the issues such as

               - At what temperature or percent that device will generate an Alarm

           

...

Resolved! virtual-wire ARP issue

hi!

i have a topology of 2 cisco routers connected to e1/1 and e1/2 in a virtual-wire deployment. there is only 1 policy on the PA, permitting all traffic, and all VLANs are permitted through the v-wire.

the problem is that when i try to ping from R1 t

...

Resolved! empty user list

Hi,

Device stopped to take user information from agent.Show user ip-user mapping all comes with 0 user.Passive device works fine.it shows all users.

Agent connection is fine for both device.Any idea ?

restarted user-id with debug command but did not sol

...

panos by L6 Presenter
  • 1961 Views
  • 3 replies
  • 0 Likes

Resolved! MS-RDP and t.120 -> application: not-applicable

Hi,

I have a few rules that only permit ms-rdp and t.120. A new rule was implemented last week that permits ms-rdp and t.120, just different source addresses. The other rule can see the ms-rdp application but for the new rule, it shows up as applicati

...

Resolved! Bind multiple VPNs to a single tunnel interface?

greetings all,

I come from a ScreenOS background, and in their world, you can terminate multiple route-based VPNs onto a single logical tunnel interface.

We have 30-40 remote sites with VPN tunnels back to HQ, which will soon be a new PAN firewall.  In

...

Resolved! Best practice: external interface with DHCP?

Hi,

As I understand it I need to use an address object to create inbound NAT polices for the external interface. What is best practice to use a PAN firewall with a ISP with DHCP? I know this is not the most common setup for this high-end device but fo

...

Experience in 5.0 code train

Hello,

How many people are running 5.0 in their production environment?  How are your overall experience so far?

Code stability?

Any Outstanding issues?

Thanks for your feedback in advanced..

Resolved! Qos Layer2

Hi,

is there a way to use qos on Vlan interfaces.We can enable on layer2 but that not gives any result.

any advice ?

Thanks.

panos by L6 Presenter
  • 1774 Views
  • 2 replies
  • 0 Likes

User-ID via NTLM and a BC explicit proxy

All,
I have an unusual install that dances around the borders of existing documentation and I'm hoping somebody can verify (or direct me towards documentation that does) whether this will work.

The user's browser are currently configured to use a BC pr

...

Site to Site VPN from PA 200 to Juniper 5GT

Hi all,

Anyone have a guide on how to set site to site vpn between PA200 and Juniper 5GT?. I tried a luck but its failed  unable  to establish a connection between the two device,.  In Juniper the tunnel i created the status is ready.

A little help ple

...

JunNOC by Not applicable
  • 1880 Views
  • 2 replies
  • 0 Likes
  • 24276 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels