<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: how to block access to firewall in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15889#M11597</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI, &lt;/P&gt;&lt;P&gt;As Slawek suggested you can just allow certain IP address in the permitted list for the management interface. But keep in mind this will only allow the access through those IP address.&lt;/P&gt;&lt;P&gt;Similarly you can do the same for the dataplane port as well.&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;BR /&gt;Regards,&lt;BR /&gt;Numan &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 02 Dec 2013 18:26:14 GMT</pubDate>
    <dc:creator>mbutt</dc:creator>
    <dc:date>2013-12-02T18:26:14Z</dc:date>
    <item>
      <title>how to block access to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15886#M11594</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to block access to firewall ?&lt;/P&gt;&lt;P&gt;i have PA on public IP adress, but i want allow access only for 1-3 ip address.&lt;/P&gt;&lt;P&gt;i need to add this addres in DEVICE--&amp;gt; MANAGEMENT --&amp;gt;MANAGEMENT INTERFACE SETTINGS in Permitted IP Adrress&lt;/P&gt;&lt;P&gt;or&lt;/P&gt;&lt;P&gt;create a policy ??&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 28 Nov 2013 21:09:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15886#M11594</guid>
      <dc:creator>paloaltouemf</dc:creator>
      <dc:date>2013-11-28T21:09:30Z</dc:date>
    </item>
    <item>
      <title>Re: how to block access to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15887#M11595</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Management interface is to connect your workstation to PAN device directly.&lt;/P&gt;&lt;P&gt;If you are thinking about management from Untrust (internet) zone I recomendate to use GlobalProtect for it. It is my reliable and powerfull for configure. GP is free for every one who has support for their device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope that this will help You&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With regards&lt;/P&gt;&lt;P&gt;SLawek&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Nov 2013 16:06:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15887#M11595</guid>
      <dc:creator>_slv_</dc:creator>
      <dc:date>2013-11-29T16:06:47Z</dc:date>
    </item>
    <item>
      <title>Re: how to block access to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15888#M11596</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I found easiest way to achieve that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="2013-11-29_170932.png" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/10051_2013-11-29_170932.png" style="width: 620px; height: 169px;" /&gt;&lt;/P&gt;&lt;P&gt;Create on you device profile ping_https and in Permited IP addresses put what You want and attach this profile to you interface like on:&lt;/P&gt;&lt;P&gt;&lt;IMG alt="2013-11-29_171205.png" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/10052_2013-11-29_171205.png" style="width: 620px; height: 80px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Slawek&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Nov 2013 16:12:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15888#M11596</guid>
      <dc:creator>_slv_</dc:creator>
      <dc:date>2013-11-29T16:12:49Z</dc:date>
    </item>
    <item>
      <title>Re: how to block access to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15889#M11597</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI, &lt;/P&gt;&lt;P&gt;As Slawek suggested you can just allow certain IP address in the permitted list for the management interface. But keep in mind this will only allow the access through those IP address.&lt;/P&gt;&lt;P&gt;Similarly you can do the same for the dataplane port as well.&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;BR /&gt;Regards,&lt;BR /&gt;Numan &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Dec 2013 18:26:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-access-to-firewall/m-p/15889#M11597</guid>
      <dc:creator>mbutt</dc:creator>
      <dc:date>2013-12-02T18:26:14Z</dc:date>
    </item>
  </channel>
</rss>

