Resolved! Recommended PAN-OS releases by TAC
Hello guys, Anyone know which PAN-OS releases currently are recommended by TAC? We are currently running 6.0.6 Thank you, Mykhaylo
Hello guys, Anyone know which PAN-OS releases currently are recommended by TAC? We are currently running 6.0.6 Thank you, Mykhaylo
Hi there, I am trying to setup VPN between 2 Palo Alto Firewalls. On one side I have public address but on the other side I am using a private ip address as this Palo Alto is behind a router. The VPN is not coming up. I also tried to do port forward from the router to the Palo Alto but still no success. What am I doing wrong here guys or will it...
In the Active/Active HA setup, there is an option to "Enable Config Sync". In the past I have used this because I didn't have Panorama. Now I have a new set of PA5050s that are running in Active/Active mode and we purchased Panorama to go with it. My question is should I enable the config sync? Or should I disable it since Panorama pushes to...
I have a question. How does application block page work? I have it enabled but it doesnt seem to work. User gets app denied by certain policy, it shows Monitor/Traffic that he is indeed denied but instead of getting app block response page he gets a blank page. Does application block page work only with http and not https traffic?
I'm looking for feedback from customers who have deployed LSVPN on PAN-OS firewalls. I'm getting ready to rebuild a highly manual, semi-fullmesh VPN infrastructure of abotu 10 sites. Yes, I have a mess on my hands. I am planning on a dual-hub and spoke model. The dual-hubs are two datacenters that are connected via IPSEC between them. Each of th...
Hi, we have a cluster Active/passive PA3050 in PanOS 7.0.9. Yesterday we realised that one of our firewalls was having a strange behaviour (event HA), and this morning this FW was in maintenance mode, i had to reinstall the image 7.0.9 and cluster is OK now, but i dont know if this will solve the problem o the problem will happen again. Can you ...
I have recently setup/enabled some zone protection on one of my interfaces. I have set the values high since I have no way of knowing how much data is actually passing the interface and what threshold would trigger the dropping. Now that its running I know I can run the following command "show zone-protection zone untrust" to see the current cou...
HI just ran into a very weird issue today. A PA running version 7.1 The PA has IP 192.168.1.254 and it is the default gateway for the network. There is another network 192.168.2.0/24 reachable through 192.168.1.200. There is a route in the PA that says to reach 192.168.2.0/24 go to 192.168.1.200. This is same-zone routing. I have also disabled ...
Hi guys, I have a big problem.My PA failed in refresh fqdn task and now the PA can't resolve Fqdn object.My dns Setting are good and there is no drops between PA and DNS server. Any advices? Thank you!
Hi guys, I have a big problem.My PA failed in refresh fqdn task and now the PA can't resolve Fqdn object.My dns Setting are good and there is no drops between PA and DNS server. Any advices? Thank you!
We're running a regular User-ID agent against our DCs. 99% of the time things are fine but we're getting calls from random people that every so often they're suddenly getting prompted to authentiate by the captive portal on the PAN and we cannot understand why as they are connected to the network, typically wired, and are using domain resources ...
Hi, is there a way to troubleshoot the NAT sessions in real time? i know i can use , for example: show session all filter nat-rule NATRULE to see if i am hitting the NAT rule, but i have to keep issuing the command to do that. Is there a similar thing to see it in real-time (i.e. the "follow" using the show system resources command). thanks
I want to connect PA200 to a netcomm wireless modem. I haveseen config where dls modem and wireless router are separate. Need help with connecting PA200 to netcomm box.
One problem I'm running into with the Palo cli is the ability to search the configuration for configuration matching on multiple criteria. For instance, I'd like to display output showing all disabled security policies that include a description.I can search for disabled policies (show | match "disabled yes") OR I can search for policies with d...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

