General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Resolved! How to generate SNMP Trap from CLI/GUI?

Hello

 

I'm on 7.1.7 PANOS and I need to generate traps for testing purposes. I didn't find in manual such CLI command.

 

please advice me how to generate from CLI or if it's not possible how to make a workaround (ie. using trap on virus condition or so)

...

_slv_ by L4 Transporter
  • 6431 Views
  • 2 replies
  • 0 Likes

Resolved! Exfiltration detection?

Has anyone set up a PAN alert for egress bandwidth utilization? For example: If any internal host transfers more than (x) GB in (y) Minutes to the Internet - throw an alert. 

Resolved! HTTP-Proxy allow or deny app

Hi Everyone,

I have a inbound rule in place fro my forward facing web-server and am tightning the policy down to only allow a few apps and a few default ports ssl and web-browsing

 

When i was looking at what traffic was hitting the rule, Isaw the follo

...

Unused rules

I know it is possible to get unused rules since last reboot, but it is obvious the data is in Panorama.  Is there no way to get a list of rules not used since a specified date?

 

https://live.paloaltonetworks.com/t5/Learning-Articles/How-to-Identify-Un

...

SSaady by L0 Member
  • 2709 Views
  • 4 replies
  • 1 Likes

MISP Integration with Autofocus

The idea will be to Pull an event from MISP DB and Convert them to Autofocus Queries and enrich the results back to MISP (sending indicators to MISP)

 

Found Some python scripts explaining this in the PAN github page , but lost my way to integrate it t

...

Resolved! Cannot ping connected adsl modem.

Hi all,

 

i've connected a adsl modem to our 3020 to redirect some clients to,  configured the interface as dhcp client, the port successfully gets an ip address from the modem but i can not ping the modem interface from firewall's cli. I might be miss

...

pa2.png
pa1.png
pa5.png
pa6.png
Oseberg by L1 Bithead
  • 6990 Views
  • 8 replies
  • 0 Likes

Resolved! Line Messenger APP

Hi All,

 

Do we have an application for Line Messenger:

 

https://line.me/en/

 

Cannot see it in Palo database.

 

Thx,

Myky

How to block TCP22 connections

Hi everybody

 

I like to know if there is a way to block incoming connections attemps to port TCP 22.

 

I have an end-customer which has lots of connections to his public ip range 0.0.0.0/24 to port TCP22 but not hit the vulnerability 40015 (SSH User Aut

...

SOC_CSG by L4 Transporter
  • 2450 Views
  • 4 replies
  • 0 Likes

Resolved! How to submit a CSR to Microsoft CA?

Hello folks!

 

I have seen a few articles and documentation for generating CSR and submitting to Microsoft CA for subordinates.  What about just a root stand alone enterprise Microsoft CA?

 

I am preparing to configure a Global Protect portal, generated/

...

microsoftCA_1.jpg
OMatlock by L4 Transporter
  • 1560 Views
  • 1 replies
  • 0 Likes

real time apps -qos

Hi,

 

What is the best for assigning  qos for  realtime applications like webex and skype .

Even if  I give realtime , the audio was breaking 

Any advise

Thanks

sib2017 by L4 Transporter
  • 1439 Views
  • 0 replies
  • 0 Likes

Research paper shows vulnerabilities with SSL interception

On Feb 2017, some universities, Mozilla, Cloudflare, and Google released this paper on corporate and desktop HTTPS interception.

 

First they figured out how to identify when someone connects to a web server through an SSL interception appliance. Then

...

Maxstr by L3 Networker
  • 3126 Views
  • 5 replies
  • 0 Likes
  • 24274 Posts
  • 99 Subscriptions
Top Solution Authors
Top Liked Authors
Labels