Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Resolved! Palo Alto GlocalProtect VPN

Hi All,

Currently, we have Palo Alto global protect VPN client ver 5.x. Can we upgrade to VPN client 6.2 directly from version 5.x?

 

Also, does VPN client 6.2 supports PAN-OS 9.1.16? (This is the machine we are running GlobalProtect Portal and Globa

...

Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?

Hi all,

 

Can I check with you the following Fortinet Pre-authentication Heap-based Buffer Overflow Vulnerability (CVE-2023-27997) is covered in Palo Alto NIPS Signature ?

If yes, May I know which released signature version and threat id is covered f

...

http-req-user-agent-header

Hello,

 

SSO is requesting to me to add a rule on policy to alert http request without user-agent (empty) on header.

i know I can use vulnerability by adding a condition when « http-req-user-agent-header » is equal to a regex. 
i tried to use the rege

...

Using XFF for Logs Only

Hello,

 

I have an application behind a WAF, without XFF the source IPs are always my WAF and for auditing reasons I need to get and log the real client IP addresses.

 

Traffic flow is like this:

 

Client -> WAN -> NAT -> DMZ - App Server

My security

...

Tenant ID change on NGFW

Hi all,

We have a set of NGFWs that somehow are pointed to an old tenant ID and therefor not dropping the logs into the CDL. We have put in a TAC case but haven't gotten any resolution as of yet. 

 

Is there a way in the CLI to change the tenant ID?

...

  • 913 Posts
  • 36 Subscriptions
Top Solution Authors
Top Liked Authors