Resolved! Block vs block ip
Hello all, what is difference between Block and Block ip ? Block for this current packet only ? Block ip for specific ip for certain time is it correct ? so Block IP is better
Hello all, what is difference between Block and Block ip ? Block for this current packet only ? Block ip for specific ip for certain time is it correct ? so Block IP is better
Hey everyone, i got a question from one of our customers, described below:Constellation:PC1 (At home, with internet-access) <--> PA-firewall <--> PC2 (at office, TeamViewer-controllable) Now, to the question. The costumer wants to restrict the access on PC2, so that PC1 can only connect when PC2 explicitely granted access (from a...
I have a problem on a PA500. When it attempts to send traffic to one particular subnet via the management interface, the packets are sent to the wrong place. Instead of going to the default gateway, they go to an ASA. All other subnets route correctly. The PA500 has a very simple config. The management interface is connected directly to a switch...
Runnnig a capture ot troubleshooty file share isuse. From attach capture for DROP I keep seeing ICMP adn Ping so I actully need those as part of rule as well?
Hi Guys, Got a random question regarding the sessions synchronisation when running HA :0 If l understood correctly only the sessions that are not initiated by the Active device will be synchronised to the Passive device. Does it mean that all OSPF, BGP and l believe VPN tunnels will be re-established? So only traversing sessions are synchronise...
Hello all, can you please [provide me with panorma server specification to buy it this week .. what is implementaion method ? we must have esxi ? or windows server or what ? i`m new here
We've used Palo alto as DHCP server for all our wireless infrastructure, we notice that after one hour the IP has to expire and be release, however it keep the expired session on the DHCP and we have to manually clear out this from cli. Once the pool is full no dhcp ip is released. Anyone does know the issue? Secondly can we automate the command...
We are using a Palo Alto Firewall and have facebook blocked on the browser, but the mobile app still works on Android and iPhone. What is the catch all way to block the facebook app?
Greetings On PAN-OS 7.1.8 configuring EDL is giving some unexpected results - I have an application based security policie set for my PA management IP addresses to fetch the updates i.e. "paloalto-updates, widlfire, pan-db-cloud, ssl and web-browsing" with service set to application default. No profile actions set to block. After populating the...
Hello I'm on 7.1.7 PANOS and I need to generate traps for testing purposes. I didn't find in manual such CLI command. please advice me how to generate from CLI or if it's not possible how to make a workaround (ie. using trap on virus condition or so) With regardsSLawek
Has anyone set up a PAN alert for egress bandwidth utilization? For example: If any internal host transfers more than (x) GB in (y) Minutes to the Internet - throw an alert.
Hi All, I have met a problem with access to my Active Pan Device by Web Admin GUI.I can access by SSH Console and I can access to Standby Device in HA System.My device: PAN 3020, OS Version 6.1.4. Have anyone meet the same problem, please share the solutions. Error logs---------------------2017-03-21 11:04:21.009 +0700 Error: pan_authd_user_is_l...
Hi alli have this little issue: I have panorama with a pa 5050 cluster firewall 7.1.5 with wildfire licence. I have a rule to control smtp traffic with a wildfire profile.In the wildfire i have disable benign responce and in the configuration i have selected this: The problem is that i don't see anymore, after a malicous responce, the recipent/s...
I know it is possible to get unused rules since last reboot, but it is obvious the data is in Panorama. Is there no way to get a list of rules not used since a specified date? https://live.paloaltonetworks.com/t5/Learning-Articles/How-to-Identify-Unused-Policies-on-a-Palo-Alto-Networks-Device/ta-p/53202
Hi all, i've connected a adsl modem to our 3020 to redirect some clients to, configured the interface as dhcp client, the port successfully gets an ip address from the modem but i can not ping the modem interface from firewall's cli. I might be missing a simple step but i'm fairly new with PA, any help appreciated, thank you
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 3 |

