HA issues
I have 5060 pair (pan1 and pan2) with 7.1.2 in HA. Whenever pan2 interfaces are up, not shutdown, sooner or later we experience issues. It doesn’t matter if pan2 is active or passive. Could it be h/w ? Config is in sync
I have 5060 pair (pan1 and pan2) with 7.1.2 in HA. Whenever pan2 interfaces are up, not shutdown, sooner or later we experience issues. It doesn’t matter if pan2 is active or passive. Could it be h/w ? Config is in sync
Hi all Please help me to sort out the situation below. We have one PA 200 is working fine in the main office. The main office have the static WAN IP and it is acting as the SSL VPN gateway. Now, we need to connect a small brach office to main office through site to site VPN. The banch office doesn not have the static WAN IP. what are the chea...
Hi, We have a customer pc using GProtect to our office, we use this VPN to access using RDP to his computer. The problem is that GProtect timeout is 24hours, so we need customer help in order to log again in GProtect VPN. If there any way to delete this 24hours time out only for this VPN connection? without changin for all the vpns customers?? T...
Hello Guys,I'm going to do some service availability test in the near future. We can't get any information of the attack pattern. The only information we know is that the tester will conduct these attack.HTTP CC(cache-control) attackSlowloris attackHttp post attackHttp Hash dos attackI'm afraid that those attack patterns seem to be normal for th...
Hello, at first, thank you for that great tool, especially for the gui. I will change the password for admin. How can I do this? With htpasswd? And, is it possible to add users with different privilegs? Thank you for your efforts.
I'm looking to output feeds to a format that I can ingest in some log analysis tools, and need to output fields that I have defined in miners. Is there any information on how to access that data and output it?
Hi,there are various settings in the decryption profile and also under Device -> Sessions -> Decryption Certificate Revocation Settings to controll how the firewall should deal with expired or self-signed certificates etc. I am currently testing these things in a Lab and I am having difficulties to see any differences in the firewall's beh...
I am trying to segregate my client computers and I don't have the ability to work with VLANs. All of our clients are in a single VLAN and I want to set them up in different subnets and zones. All of the clients connect to the Palo Alto through a single interface (also can't be changed). I tried to do this with untagged sub-interfaces but I don't...
Hello, On a Panorama 7.0.2, using the update from "staticupdates.paloaltonetworks.com". Some versions are strangely not showing .For PA200 image, we can't see the updates for 7.0.1 and 7.0.2.I can't test with the URL updates.paloaltonetworks.com for technical reasons. If I do a request system software download version, i can see the version re...
Hello,The node configured with a source interface and source adress can't be matched : the qos node Qid should be 1 and not 0.. PAN OS : 5.0.6/////////////////////////////// admin@Bellan-PA-3020-1(active)> show qos interface ethernet1/1 match-ruleQoS match rule for interface ethernet1/1:Qid node node-id src-i/f src-addr-----------------------...
We want to export a list of the PA rules into an easily readable document in order to do a comprehensive audit of the rules
Hello, does use anybody the logs from a plaoalto-fw in minemeld? And what was the reason for to do this on this way? Thanx for your answers. 🙂
Hello, I was told to allow "multiple outgoing connections" from an inbound server to a public server.I see SSL outgoing packets but no response. I do not know how to allow multiple outgoing connections. Roman
I am seeing huge size data for application " Panorama" to the port 3978.The size is in Gbs( 30gb) etc.On thing could observe is start time and end time is big=Start Time 2016/05/30 11:01:00Receive Time 2016/06/14 04:12:34=The source IP is firewall management Ip and destination is Panorama IP. I know some keep alives will be going on between fi...
Hello, I am looking for documentation on how to setup VM-300 as vwire/transparent mode on ESXi. What is necessary to be done on the ESXi host regarding networking and how that interfaces to the firewall? Thanks in advance.FM.
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

