General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! How to create custom response pages

Hello,

I know that the Device -> Response pages menu allows to modify response page, but how can I add my own response page ?

What I would like to do is displaying an advertisement page when traffic is blocked during working hours (using schedules).

Is

...

ldormond by L3 Networker
  • 4659 Views
  • 6 replies
  • 0 Likes

Inbound NAT with DHCP

Hi,

Is it possible to do a inbound NAT when the outside/untrust interface is a DHCP client?

Here is the NAT rule i`m trying to commit, but thats not working...

/kristian

kristian by L3 Networker
  • 2040 Views
  • 2 replies
  • 0 Likes

Migrate subinterface config to another interface

Hi,

here is a sample of my configuration.

I have trunk link (from a cisco device) to the 1/6 interface, where i configured several subinterfaces.

You can see that we have the 1/6.3 in the Virtual Router vr-recette in the Virtual System Recette.

And after

...

CRF by L1 Bithead
  • 4564 Views
  • 5 replies
  • 0 Likes

Policy Based Forwarding for Application "Ping"

Hello,

i want to make a policy for "Policy Based Forwarding" to route only ping traffic to a different router. Is this possible?

I testet a rule with a service "tcp/udp Port 0" -> Don't work

I tested another rule with an application "icmp" -> Don't work

...

Resolved! When not to use agentless user-id ?

Hi,

For big environments it is advised to use user-id agent.How will we be sure ?

is there a comparison for this.User number, DC number , ??? any number ? etc...

When we should install agent software ?

Thanks.

panos by L6 Presenter
  • 2710 Views
  • 4 replies
  • 0 Likes

Restricting Application Port

I would like to create a custom App for SMTP submission. All I really want to do is restrict the "smtp" App to use 587/tcp only. It's usual "default ports" action is to allow 25/tcp or 587/tcp.

I just tried to create a Custom App based on "smtp," but

...

cosx by L2 Linker
  • 2659 Views
  • 2 replies
  • 0 Likes

Resolved! Split internal and external DNS lookups

I am wanting to split internal and external DNS lookups on my PAN appliance to cut down on some traffic hitting our internal DNS servers.  I think I can use a DNS Proxy to specify where the resolution occurs and what interface.  Does anyone have expe

...

nthen by L3 Networker
  • 3523 Views
  • 3 replies
  • 0 Likes

Resolved! System Alert:Failure to check wildfire content upgrade

In last two days, I started getting system alerts that says "SYSTEM ALERT : high : Failed to check WildFire content upgrade info due to generic communication error" and another that says "SYSTEM ALERT : high : HA Group 1: Anti-Virus version does not

...

awarsame by L1 Bithead
  • 6821 Views
  • 5 replies
  • 0 Likes

Resolved! zabbix

Hi,

anyone has a document configuring an already installed Zabbix snmp for PaloAlto device ?

Thanks.

panos by L6 Presenter
  • 7344 Views
  • 11 replies
  • 0 Likes

Delete Antivirus Dynamic Update

Hello,

I tried threats & antivirus license on a PA 4020.

My license was end, so I deleted it using CLI -> works fine

But how to delete antivirus dynamic update package ?? I can't by using web, I tried with CLI : delete anti-virus update (but the pack is

...

Can PAN device publish client certificates?

I made 5 users into LocalDB, and I configured GlobalProtect Portal & Gateway.

It works fine so far.

Now I want to generate 5 client certificates for each user and use Client Cert Profile and Local DB as two factor auth. when I connect to GP.

My PANOS is

...

emr_1 by L5 Sessionator
  • 2820 Views
  • 4 replies
  • 0 Likes

Best 3rd party VPN Client?

Ive got some power users demanding a different VPN client than GlobalProtect.

Has anyone setup a 3rd party VPN client (preferrably Windows built-in or something GPL'ed)? Did it 'just work' or did you have to tweek it a bit?

I tried windows 7 built in w

...

choff123 by L3 Networker
  • 3603 Views
  • 4 replies
  • 0 Likes

Resolved! Master key

Hi,

should we change Master key after a new installation for security purposes ?

Or not configuring this will cause any security weakness ?

panos by L6 Presenter
  • 2281 Views
  • 1 replies
  • 0 Likes
  • 24337 Posts
  • 101 Subscriptions
This widget could not be displayed.
Top Solution Authors
Labels