General Topics

Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 360 Views
  • 0 replies
  • 0 Likes

Email Security

Is there a way for the PA firewalls to monitor scam email? For example, email that looks legitimate but has manipulated links (again that look legitimate) taking you to a redirected website that is malicious in nature? Is there a way the PA can monit

...

Resolved! PA-500 Virtual Wire implementation (HA)

I am planning a deployment of two PA-500's for just Threat Prevention and URL monitoring.  I am working through the best way to do it for physical cabling and figuring out where everything should go.  I would also like to use the Active Directory int

...

Application Group for DC to DC communication

I have 2 domain controllers across 2 dmz's and i need them to talk. I have a list of ports I want to open but I want to keep it neat and create a application group. I dont see an easy way to search applications by ports.

Does anyone have a list of PA

...

jhickey by L3 Networker
  • 3343 Views
  • 3 replies
  • 0 Likes

Resolved! Why do "incomplete" sessions show as "allowed"

Hi.

I've got some pretty specific firewall rules for machine in our DMZ, and I noticed some intriguing log entries while checking into an (unrelated) issue today.

I get a log entry which reads like this

02/27 11:42:30      end     outside     DMZ     <s

...

darren_g by L4 Transporter
  • 34224 Views
  • 14 replies
  • 1 Likes

Blocking via file extension (Text only)

Am I able to block via file extension, the text file extension ony, without any inspection and/or identification by the Palo Alto unit?

I want to block jar files but the PA keeps telling me they are zip files and then allows them. I would like to bloc

...

choff123 by L3 Networker
  • 5192 Views
  • 5 replies
  • 0 Likes

Polycom Real Presence issue

Hi (it's my day for asking questions, it seems).

We have a client who desires that we connect to a Polycom video conferencing system using some software called "PolyCom Real Presence".

The trouble is - it doesn't work, or works intermittently - sometim

...

darren_g by L4 Transporter
  • 4282 Views
  • 6 replies
  • 0 Likes

Resolved! Help: how to use dynamic block list

Hi all.

I want use " Dynamic Block List" to block some IP.

I creat a IP list on a local web servers

But I can't import list in to Palo Alto?

Something wrong?

Pls help me.

Thanks

dat.tran by L2 Linker
  • 4967 Views
  • 4 replies
  • 0 Likes

PBR on 5.0 with redundant internet connections questions

Hello All,

New to Palo Alto.  I think PBR is working right.  But functionality is not what I wanted to happen.

I have Cisco DMVPN from all my remote sites to my corporate site.  This tunnel is created inside of the firewall.

my desired affect is to have

...

JColby by Not applicable
  • 2093 Views
  • 1 replies
  • 0 Likes

Resolved! Cant select app to clone

This might be a dumb question but I am having trouble cloning the Oracle application in the GUI. I have admin rights, there are no pending changes, and I've tried this from 2 different browsers. I find the application and there is a clone button belo

...

jickfoo by Not applicable
  • 6991 Views
  • 7 replies
  • 0 Likes

Resolved! PBF Interface Choices

I want to set up a policy-based forwarding rule to send all traffic from a particular Source IP out through port ethernet1/8.  I can't figure out how to get "1/8" in my list of interface choices.  All I have to choose from is vlan, loopback and tunne

...

wildfire and security policy - problem

I have enabled wilfdire protection on polisy for NAT (also antyvirus/antyspyware/Volnerability).

From time totime I get email with information that someone from my network downloaded some files infected ie. by malware.

Until now I think that this file

...

_slv_ by L4 Transporter
  • 6961 Views
  • 5 replies
  • 0 Likes

Blocking a site hosted malware

A new "parked domain" company and come to surface, and they seem to own a LOT of domain names, none of which brightcloud has correctly classified as "parked domain".  The server in question is hosting a piece of malware called seedabutor.b.  Our AV i

...

cenders by L3 Networker
  • 2563 Views
  • 2 replies
  • 0 Likes
  • 24057 Posts
  • 115 Subscriptions
Top Solution Authors
Top Liked Authors
Labels