<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Maximum number of FW admin sessions in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9818#M7205</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry I connecting on this thread so late, but I have faced with following problem and no other thread has no discussion of this issue. I was tested something in configuration of LDAP auth profiles for admins and make several log in's and out from same client IP to web interface. After 15 or 20 log in's and out's, I have faced with automatic log off from web interface after successful login. Some of them was unsuccessful due to miss-configuration in auth profiles. Is that treated like some kind of BF attack? In CLI everything goes fine and with "show admins" I saw that have about 20 active sessions even if I loged out from web interface....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 12 Sep 2014 10:31:48 GMT</pubDate>
    <dc:creator>Tician</dc:creator>
    <dc:date>2014-09-12T10:31:48Z</dc:date>
    <item>
      <title>Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9813#M7200</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Community&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was teaching a class and was asked a simple question:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there a max number of FW administrators that can be concurrently logged into the FW at the same time?&lt;/P&gt;&lt;P&gt;I have a large customer (a Managed Service Provider) with a large number of FWs, as well as a international team supporting the customers.&lt;/P&gt;&lt;P&gt;It is possible to have many admins logged into the box at the same time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do we have a reasonable number (25, 30, 50?) that reaches the max number, or can I go back and state that 25 or 50 admins could be logged in, but Palo Alto Networks does not recommend it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Aug 2013 12:22:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9813#M7200</guid>
      <dc:creator>scantwell</dc:creator>
      <dc:date>2013-08-20T12:22:38Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9814#M7201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is currently no limit for admins to login concurrently.However, you may experience &lt;SPAN style="font-family: 'Lucida Grande', 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px;"&gt;a performance impact with the more &lt;/SPAN&gt;admins&lt;SPAN style="font-family: 'Lucida Grande', 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px;"&gt; logged in.For e&lt;/SPAN&gt;&lt;SPAN style="font-family: 'Lucida Grande', 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px;"&gt;xample : If the host of admins&amp;nbsp; start generating &lt;/SPAN&gt;&lt;SPAN style="font-family: 'Lucida Grande', 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px; line-height: 1.5em;"&gt;reports,simultaneously , there could be some issues.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: 'Lucida Grande', 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px; line-height: 1.5em;"&gt;But there should not be any issues configuring multiple admins as this is not limited by the Software.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Aug 2013 12:32:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9814#M7201</guid>
      <dc:creator>UhMayYeah</dc:creator>
      <dc:date>2013-08-20T12:32:55Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9815#M7202</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;FYI,&lt;/P&gt;&lt;P&gt;when managing the firewalls via Panorama ( considering the larger scope of admins who are managing all these&amp;nbsp; firewalls ), the admins managing older versions of Panorama ( 5.0 and older ) would experience bottlenecks when more than 5 users were logged in concurrently, and managing the devices. With the Panorama 5.1 and above, we support more than 20+ concurrently logged in admins, and managing the firewalls ( config changes, reports, log queries, context switch all happening at once with no slowdown ), and we have seen good results with 15 concurrently logged in users&lt;/P&gt;&lt;P&gt;)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BR,&lt;/P&gt;&lt;P&gt;Karthik RP &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 20 Aug 2013 15:16:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9815#M7202</guid>
      <dc:creator>kprakash</dc:creator>
      <dc:date>2013-08-20T15:16:17Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9816#M7203</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Technically, no problem for 25 or 50 admins in palo in same time. Just keep in mind:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - All admin have to use a different account else performence will be very low.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; - Does it make sense to have 50 admins for palo ? Generally main part of admin just want to have access to report then should be better to schedule sending custom report.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope clear &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;V.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Aug 2013 08:00:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9816#M7203</guid>
      <dc:creator>VinceM</dc:creator>
      <dc:date>2013-08-21T08:00:05Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9817#M7204</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well you can have 225 VSYS on the PA-5000 series so at least 226 concurrent admins should be possible (one per VSYS + at least one superadmin).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Aug 2013 23:46:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9817#M7204</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2013-08-22T23:46:27Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9818#M7205</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry I connecting on this thread so late, but I have faced with following problem and no other thread has no discussion of this issue. I was tested something in configuration of LDAP auth profiles for admins and make several log in's and out from same client IP to web interface. After 15 or 20 log in's and out's, I have faced with automatic log off from web interface after successful login. Some of them was unsuccessful due to miss-configuration in auth profiles. Is that treated like some kind of BF attack? In CLI everything goes fine and with "show admins" I saw that have about 20 active sessions even if I loged out from web interface....&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Sep 2014 10:31:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9818#M7205</guid>
      <dc:creator>Tician</dc:creator>
      <dc:date>2014-09-12T10:31:48Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9819#M7206</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tician&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would like for you to go back and test the number of users and logins.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your comment about After 15 or 20 log in's and out's, I have faced with automatic log off from web interface after successful login..... I have seen this before (automatic log off when you logged in...) and I see this as a bug in 6.x version of software.&amp;nbsp; I have talked to PAN about this, but I do not think a bug tracker has been identified on this. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Oct 2014 19:25:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/9819#M7206</guid>
      <dc:creator>scantwell</dc:creator>
      <dc:date>2014-10-06T19:25:29Z</dc:date>
    </item>
    <item>
      <title>Re: Maximum number of FW admin sessions</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/586452#M117036</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is there still no way to limit the admin users ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Means, If i have 10 admin accounts and at one time I only want to allows 4 5 admins to access the PA and not anymore ?&lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2024 06:35:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/maximum-number-of-fw-admin-sessions/m-p/586452#M117036</guid>
      <dc:creator>JamshedDayar</dc:creator>
      <dc:date>2024-05-13T06:35:18Z</dc:date>
    </item>
  </channel>
</rss>

