Resolved! New forum location
I have to hop through several pages just to find all the post I dislike this alot
I have to hop through several pages just to find all the post I dislike this alot
We just bought a pair of 3050's to replace our 2050's. The old 2050's are running 5.0.8. (I know that's old, but it was stable and we just left it alone) I'm looking for advice on the best path to upgrade to the new 3050's. I've looked at the migration tool, and it looks promising but I'm not familiar with it yet. I've also considered downgradin...
Since midday yesterday (Monday Jan 26th) we've seen an explosion in sinkhole detections.Previous moths sees one ot two a day in average, latest 24 hrs we've had more than 16.000 detections. This started after the antivirusupdate on Monday.When checking a few of the domains via on-line URL-checking tools, no suspicious content is detected.Latest ...
Hi, We have configured GlobalProtect with a self-sign certificate working properly, but when we try to connect through global protect we always receive this advise about "this certificate is not valid...." and we have to accept it to continue. This message is quite annoying. Is there any way to use a self-signed certificate without seeing thi...
Hi, I'm looking for a best practice when deploying Panorama accross multiple sites that do not really have any interconnections (and have quite a few overlapping subnets). From what I understand, the firewalls themselves initiate the connection towards the Panorama instance (VM appliance in this case). The VM instance has one ethernet link. ...
I am currently researching a way to be able to intercept traffic from an unsupported IE browser and then be able to feed that information about the host, mainly FQDN hostname or IP address of the host into the PAN dynamically based on the user-agent: IE8 - Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.0; Trident/4.0) IE9 - Mozilla/5.0 (compa...
Hi all -- I curently have one PA200 with all four eth ports taken (internal/trust network, internet/untrust, dmz, voip vlan), as well as the mgmt port connected to the internal network. I'm looking to get a disaster recovery plan in place, but, as far as I understand (from about here to here |--| ), I would need one of the eth interfaces to c...
I've got a 5060 A/P pair that was running 6.1.4. We are/were doing : SSL forward Intercept SSL Mirror 7 AD Group Mappings Transparent Captive Portal 4 UIA Pre-upgrade our MGMT CPU was around 20%. Post upgrade to 7.0.4 we're 70%. There have been no reports of issues by users and I haven't noticed any impacts from response in the UI. My ...
Hi all, I am experiencing this issue with Global Protect : "Failed to find PANPG virtual adapter interface". The version of GP is the latest released 2.3.3. Version of client is Windows 8.1. I have already tried: - Uninstalled Anti-Virus - Disabled Windows Firewall - There no other VPN Remote Access client on PC - Installed and executed the ...
I support 10+ 4060's (Ver 5.0.15) and for several years had to deal with Panorama commits pushes to boxes increasingly taking longer and longer to complete (like 1-2 hrs). Workaround had been to script a daily login and running of the "debug software restart management-server" command on each FW. This seemed to basically work.I've noticed though...
Not sure this is the right venue or forum to post this, but I’m looking to set up an automated failover to a backup ISP line per the attached network diagram of my environment. I’m new to PAN and the PAN way of doing things so thought I’d reach out for some advice before making changes. It’s quite hard, compared to Cisco, for example, to find ...
I can find agents for 6.0.x, 7.0.x... but not for 6.1.x I guess the newest TS in 6.0.x series will work also for PAN-os 6.1.x? Anyone has experience with this? Thanx.
Hi Everyone, Is it possible to setup a passive/active HA setup when the core switch pair are using GLBP to load balance end-user traffic ? Essentially, I will have two cores in A/A and the PANs in P/A. I am using PA-500s.
Hi everybody, When I configured my new firewalls to register with my panorama, they didn't appear.I checked the following points:- Connectivity between my firewalls and my Panorama : OK => I do some packet captures on both side- TCP bidirectional traffic on port 3978 : OK => I do some packet captures on both side- Re-generate SSL certifi...
We're running a really old version of CP 71.40 running VSX with multiple virtual firewalls. This document describes where to get a config file from, but this does't account for a virtualized enviornment and the file nor directory exists for these virtual CheckPoint Firewall. https://live.paloaltonetworks.com/t5/Migration-Tool-Articles/Chec...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 3 | |
| 2 | |
| 2 | |
| 2 |

