General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

PA in active-active mode and Cluster ID

Dear all,

we ran into a strange problem tonight.

We are running PA 4.0.8 in active/active because me might encounter asymmetric routing.

We have two A/A clusters in different data centers. Both clusters have the same cluster ID.

The traffic is going only

...

AndreasB by L2 Linker
  • 2071 Views
  • 1 replies
  • 0 Likes

Bulk creation of host objects

We need to create a large number host objects (i.e. IP address objects).  Tech support only pointed us to a KP article "Using the XML API" which is Greek to me.  Does anyone have any suggestions/solutions?  I would think that someone would have neede

...

legeremt by L0 Member
  • 3997 Views
  • 5 replies
  • 0 Likes

Trap SNMP for threat

Hi all,

From the mib file named PAN-TRAPS.mib I can see that there are some information about threat objects.

Is there anybody who knows how to use this.

I have tried to generate some threats but no traps were sent to the manager.

Thanks

Bruno

Need assistance creating a custom application

     I have a warehouse management system, and I need to identify the traffic from the WMS client. 

Here is a section of the tcp stream from a packet capture:

V103^46^^~0~~0~~-1^=^002050^get encryption information

V103^45^45736^0^0^^1^1^s^~name~4

...

bhayes by L1 Bithead
  • 2063 Views
  • 3 replies
  • 0 Likes

Routing between Virutal Systems with a VWIRE

We currently have our Main PA configured in a VWIRE deployment with a TRUST and UNTRUST Zone.  We have many different VLANs on our network and the default route for all internet bound traffic passes through the VWIRE.

We want to configure multiple VSY

...

What is everyone using for anti-spam?

Sorry if this is inappropriate here, but I figure who else better to ask than other Palo Alto Networks customers.

As much as I love our PANs, unlike some other firewalls, they don't really help with spam. So I'm wondering if other users would mind sha

...

bjdraw by Not applicable
  • 3607 Views
  • 2 replies
  • 0 Likes

Resolved! Allowing access to Facebook and Twitter

We have a setup where we restrict users access to personal and social sites like twitter and facebook to lunchtimes and out of hours, which is working fine using a schedule.

We however have a select group of users who require full time access to faceb

...

lhank by L0 Member
  • 5808 Views
  • 5 replies
  • 0 Likes

FQDN and DNS failure

I'm looking to use FQDNs inside Address Objects but have some reservations.  What happens if my DNS goes down, or becomes corrupted for some reason.  In other words, when using FQDNs, what happens if the PA can't resolve the address?  Is all traffic

...

Remove GlobalProtect from OSX menu bar

Just upgraded from NetConnect to GlobalProtect when we upgraded to 4.1.2 and on OSX I don't see a way to remove the GlobalProtect icon from the OSX menu bar. I understand if it needs to be there when using GlobalProtect, but I only use it ocasionaly

...

bjdraw by Not applicable
  • 4830 Views
  • 2 replies
  • 0 Likes
  • 24308 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels