<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Management of the Palo in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/management-of-the-palo/m-p/31357#M22946</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would recommend you to use the physical mgmt-interface (on the box) as your primary way of management.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In Device -&amp;gt; Setup -&amp;gt; Services you can click on Service Route Configuration in case you need to "reroute" which interface is used for updates as example (updates goes through mgmt-interface by default but you can "reroute" this to use a dataplane interface instead without having to expose your management for the whole world).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then if you need a secondary mgmt-interface you can create such in Network -&amp;gt; Network Profiles -&amp;gt; Interface Mgmt by setting up a Interface Management Profile, dont forget to define Permitted IP Addresses while you setup this dataplane mgmt interface.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 31 May 2012 20:15:23 GMT</pubDate>
    <dc:creator>mikand</dc:creator>
    <dc:date>2012-05-31T20:15:23Z</dc:date>
    <item>
      <title>Management of the Palo</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/management-of-the-palo/m-p/31356#M22945</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have my Palo on a different IP range to my local network and wish to be able to connect to the palo to manage it from my local lan ip range. is this possible&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;my palo is on a 213.x.x.x which is the isp range&lt;/P&gt;&lt;P&gt;my lan is on a 10.x.x.x.x range.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2012 13:39:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/management-of-the-palo/m-p/31356#M22945</guid>
      <dc:creator>notleyhigh</dc:creator>
      <dc:date>2012-05-31T13:39:05Z</dc:date>
    </item>
    <item>
      <title>Re: Management of the Palo</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/management-of-the-palo/m-p/31357#M22946</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would recommend you to use the physical mgmt-interface (on the box) as your primary way of management.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In Device -&amp;gt; Setup -&amp;gt; Services you can click on Service Route Configuration in case you need to "reroute" which interface is used for updates as example (updates goes through mgmt-interface by default but you can "reroute" this to use a dataplane interface instead without having to expose your management for the whole world).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then if you need a secondary mgmt-interface you can create such in Network -&amp;gt; Network Profiles -&amp;gt; Interface Mgmt by setting up a Interface Management Profile, dont forget to define Permitted IP Addresses while you setup this dataplane mgmt interface.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2012 20:15:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/management-of-the-palo/m-p/31357#M22946</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2012-05-31T20:15:23Z</dc:date>
    </item>
  </channel>
</rss>

