General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! Query on clientless VPN

We are told that the clientless apps only works with HTTP/HTTPS based apps, and therefore we cannot use it to allow MS remote desktop.

 

This is the problem I am trying to solve. Our users currently use their own computers at  home. They connect to the

...

NEED TO CREATE NEW VYSYS ON FIREWALL MANAGED BY PANORAMA

Hi Team,

 

I am planning to create new vysys on firewall which already managed by panorama.

 

In this case if i enable it from panorama and push the configurations to local firewall will create automatic device group and templet will be crated are do i n

...

saifulla by L0 Member
  • 1679 Views
  • 1 replies
  • 0 Likes

Resolved! Dynamic user group using HIP log tagging

Hi Team,

 

I am trying to create a Dynamic user group using Log settings for HIP logs by the following procedure,


1- created one Tag
2- Configured log settings for HIP log for build in action tagging the source user with the tag created before
3- created

...

NAT question

Hello all,

we have configuration with dual ISP.

From the 1st provider we get public IP directly on the PA

2nd provider is with nat, i mean on PA we have private IP.

 

When the route goes through the 1st one everything works fine. 

When we switch to the 2nd

...

stef by L2 Linker
  • 3126 Views
  • 5 replies
  • 0 Likes

GlobalProtect VPN Client Mac OSX Secure Input

I've got a user that uses keyboard maestro (an application) to run macros for software development. The issue is that keyboard maestro requires secure input (Mac OSX feature) to be disabled to be able to run. GlobalProtect since it starts as a servic

...

Query on health check of new PA

We recently got shipped 2 new PAN-PA-3220 and both of them were DOA.

 

ing PAN Software: 2021-03-10 21:02:39.170 -0800 Error: sysd_construct_sync_importer(sysd_sync.c:358): sysd_sync_register() failed: (111) Unknown error code
2021-03-10 21:02:40.170 -0

...

Tech Support File Contents

Hello,

 

I tried to search online a lot but I could not find what exactly are the contents of tech support file are that we occassionaly download and send to tech support for support.

 

Could someone please throw some light on what exact information is d

...

psharma by L1 Bithead
  • 8320 Views
  • 8 replies
  • 0 Likes

Resolved! Monitoring internet connectivity

Is there an way to monitor if\when internet connectivity is lost on an interface on Palo 5220?  We are trying to determine if our internet connection is going down occasionally (for just minute or less), but not finding anything on the Palo to indica

...

Jsytsma by L0 Member
  • 5604 Views
  • 2 replies
  • 0 Likes

Resolved! HAFNIUM targeting Exchange Servers with 0-day exploits

Hi all,

Anyone have update relate to "HAFNIUM targeting Exchange Servers with 0-day exploits", I don't search any information relate to this nofication:

https://www.microsoft.com/security/blog/2021/03/02/hafnium-targeting-exchange-servers/

Our customer

...

ThomasX by L1 Bithead
  • 6067 Views
  • 4 replies
  • 0 Likes

GlobalProtect Agent blocks DNS requests

I have case open with Palo but was wondering if anyone can verify and get same result as I.

 

I have 0.0.0.0/0 route towards tunnel.

I have Primary and Secondary DNS servers configured in GP Gateway (Network Services tab).

 

When I perform nslookup from W

...

Resolved! Custom App ID

Hi Experts,

We've created a new custom app ID (custom-sql) for the SQL server with the ports TCP/10001- TCP/10004 with the Parent app as 'mssql-db-base'. Below are the firewall rules we've in place and noticed the application is correctly classified a

...

  • 24195 Posts
  • 100 Subscriptions
Top Liked Authors
Labels