General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

GlobalProtect - How Are you Using?

We have had our Palo 3020 along with GlobalProtect for about a year now, and we continue to struggle with all sorts of GP issues. I'm curious to know how are you all using GlobalProtect?

 

One Issue - Our strategy was to use GlobalProtect as an Always-

...

Resolved! new panorama vesion 8 legacy adding disk

Hi,

 

newly deployed ESXi vm panorama 8.0.2

By default free space is 11gb this is ok.

Then trying to add a new disk for exmpla 150gb.

This is working with version 7.1 new panorama.

 

Can we also make this work with new deployed 8.0.x panorama (legacy mode)

 

...

PanIst by L3 Networker
  • 8301 Views
  • 8 replies
  • 0 Likes

Safe Search Issue

Transparent safe search is not enforced for networks which are using the PA box for DNS proxy.

 

I have enabled Safe Search tick in URL filtering. Still no go.

 

We have enforced with local DNS servers and that is working. However the interfaces using PA

...

Proxy.jpg

PA-850 - how to protect

Hi

 

If I wanted to protect a PA850 from unknown devices connecting.

 

so 1 port to the local ISP.

6 ports for laptops to directly connect.

How / what is the best way to make sure only pre defined laptops can connect.

Mac filtering ??? Think that is easily

...

Resolved! IS it possible to delete the crashinfo file

 

 

when i run command 

 

show system files

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 


/var/cores/:
total 4.0K
drwxr-xr-x 2 root root 4.0K Jan 10 00:15 crashinfo

/var/cores/crashinfo:
total 0

/opt/var.dp2/cores/:
total 4.0K
drwxrwxrwx 2 root root 4.0K Jan 10 00:15 crashinfo

/opt/v

...

MP18 by Cyber Elite
  • 3701 Views
  • 4 replies
  • 0 Likes

Resolved! Blocking punycode URLs

We have PA-820's and I have been looking for a way to leverage them to block punycode attacks.  In fact, we'd be pretty OK with blocking punycode URLs altogether.  I just haven't been able to puzzle out a way to do it.  If I add xn--* to the URL filt

...

PA850 10gb sfp+

Hi

After connecting sfp+ 10gb  - we are seeing high latency and high Packet Descriptors (almost 100)

any ideas?

We are using brand new Dell certified  DAC cables:

DLCAB-SFP+10Gb

 

chens by L2 Linker
  • 1912 Views
  • 1 replies
  • 0 Likes

User Activity report not showing full activity

Hi Team, 

 

User Activity report only shows detailed web browsing activity for few days (3-4) when report is generated for longer time frame e.g 7 days or 30 days or custom time frame. root partition is at 87% and /opt/panlogs at 71%.

 

Any suggestions h

...

Active / Active NAT question

Hi

 

To all the A/A users. How have you / Or can you setup SNAT so that all traffic is SNAT'ed to 1 ip .

 

very basic example

 

Eth1 - connect to 1.2.3.0/24 - interface address is 1.2.3.2/24 & 1.2.3.3/24 (A/A)  1.2.3.1 arp load balanced

eth2 - connecs to 10

...

  • 24253 Posts
  • 99 Subscriptions
Top Liked Authors
Labels