NAT - link local IP addressing
Greetings, During NAT, can the PA act as a proxy using link local IP addressing (IPv4). I know we cannot with IPv6. Cheers
Greetings, During NAT, can the PA act as a proxy using link local IP addressing (IPv4). I know we cannot with IPv6. Cheers
Hello, I have a question about this advisory. I would like to know the meaning about "prior" in releases affected. that "prior" means affected release is the inmediatly prior or all series of version (5.0.X, 6.0.X, 6.1.X, 7.0.X) ? Products Affected PAN-OS releases 5.0.17, 6.0.12, 6.1.9, 7.0.5 and prior Available Updates PAN-OS releases 5.0.1...
Does anyone know the default Priority level of Class 4 when a Class 4 is not specifically defined in the QoS policy?
Hi All, I have a query regarding Log monitoring. The logs for one user shows the entire subnet, where as for another user it shows that particular IP. May I know the reason behind it. Is there any setting that need to be changed or is it due to permissions.
Take the 3020 for example which can have a max of 10 virtual routers. Is that 10 VR's per vsys or 10 shared between any/all vsys's you have on the box?
I know this was kind of asked here, and I was wondering if the best option would be to create a rule like the one mentioned in this post.. https://live.paloaltonetworks.com/t5/General-Topics/SMTP-long-MAIL-anomaly-Vulnerability-30392/m-p/2327#M1718 Since I am getting these almost everyday, and they seem to be always from one user account, an...
Does anyone know if it is possible to NAT over an IPSEC VPN without assigning an IP address on the tunnel interface itself? I tried but it doesn't seem possible. Help! Thanks, Duane
I cannot download Software or Dynamic Updates on PA-200 w/7.01-b19 Cleared all logs and also reviewed tech note "How and When to Clear Disk Space on the Palo Alto Networks Device" Reviewed LiveCommunity and deleted files in the pcap directory and also the debug-log mp-log files. Anymore thoughts? --------------------------------- a082496...
Hi All, We have several site to site VPN tunnels built for different clients. We have PA500 in HA mode. When we do a failover, general traffic does succesfully failover to secondary, but the VPN tunnels does not failover and all the tunnels shows down. Any suggestions on how to resolve this.
Hi. I'm trying to configure pre-authentication on my Global Protect portal. I've followed this document until I'm blue in the face, but every single time I attempt to logon to my test environment, I get GlobalProtect portal user authentication failed. Login from: AAA.BBB.CCC.DDD, User name: , Reason: client cert invalid, Auth type: pro...
PAN OS: 4.0.10> less webserver-log sslvpn-error.logdefault:1 main Error: Can't access DocumentRoot directory default:1 main Error: Ignoring bad directive "DocumentRoot" at line 181 in /etc/appweb/sslvpn.conf default:1 pool.1 Error: 404 "Not Found" for "/admin/Y-ivrrecording.php", file "/var/appweb/sslvpndocs/admin/Y-ivrrecording.php": ...
Hello When we check disable login page, it returns 404 page not found on portal page. Is this expected behaviour ? is it possible to completeley disable the page. Regards
We've been having some issues with websites like DropBox, Hightail etc since configuring SSL Decryption. I believe this relates to a security technique called "Certificate Pinning". I've resolved the issue by adding the "Online Storage & Backup" URL category into a no-decrypt policy but it concerns me that opening up the entire category is a...
In system logs we got this message: keyackuire, cannot find selector gw We have PA500 version 6.1.3
I was wondering if it's possible to share physical interfaces between two virtual systems , each virtual vsys will also need to be able to use sub iterfaces for vlans .
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 3 |

