Resolved! Does or when will Palo Alto support IKEv2?
I am just trying to confirm if Palo Alto supports IKEv2 at this time.Thanks
I am just trying to confirm if Palo Alto supports IKEv2 at this time.Thanks
Hi - is it possible to do ECMP (equal cost multi-path routing) using static routes? If not - is it possible to achieve ECMP using OSPF on the PA4050. We have a need to load balance the default route out of a PA4050 over multiple L3 gig interfaces (the customers current solution support ECMP with static routes). Many thanks.
Hi there,we're running the following setup:trusted zone | DC zone | InternetClient/Proxy/some old DNS Server| DNS Server| InternetI see that the PA is blocking malware traffic (app DNS). But the attacker is either the proxy, asking the DNS in the DC zone, or the old DNS server, asking DNS servers in the Internet.Unforunately that way I don't get...
Hi all.Is it support ECMP protocol from PAN??I can’t find whether ecmp protocol support from datasheet and knowledge base. does PA has any other similar protocol if not support ecmp?? Please refer to below URL for ECMP.http://en.wikipedia.org/wiki/Equal-cost_multi-path_routingRegards,Eugene
Is it Possible to achieve ECMP between a cisco router and a PA-2000 series running PAN-OS 4.1.7If Yes Can somebody point me to the right direction.Thank You
I'm trying to consolidate multiple Layer3 interfaces into a single Layer3 interface using subinterfaces and VLAN tagging, but it's not working.I'm hoping someone can point out the error in my configuration.The current working configuration:FIREWALLethernet1/2 - 192.168.102.254, untagged, zone 102ethernet1/3 - 192.168.103.254, untagged, zone 103e...
Hello Friends,We want to configure our Remote VPN (Global Protect ) on two ISP and we should be able to manually switch the gateway at client end and no Lic is required for that?. Please suggest.RegardsSatish
My PA firewall inspects traffic between my users and proxy server. The proxy server provides NTLM authentication. Is there a way of logging the NTLM authenticated username within the http headers?
Hello - Wondering if anyone has come across this issue. We recently had to RMA one of our firewalls and we have a fairly extensive / complicated policy set in Panorama which consists of the following:Shared Pre Rules targeted to specific firewalls Device Group Pre rules targeted to specific firewalls Device Group Post rules targeted to ...
I am configuring GlobalProtect and have a question concerning the Agent software. For security reasons, I configured GlobalProtect in "On Demand" mode for Remote Customers and do not allow the customers to view the Advanced View or save their logon credentials. We do not have the extended GlobalProtect licenses so currently we are not running ...
Is anyone else having the "failed to forward log to mail server: aspmx.l.google.com" causing a "mailclient: error reply: 421 4.7.0 Email Senders Guidelines. l.12 - gsmtp" for google's mail?Possibly started with 6.14 and maybe 6.13. I had my email settings working up until I upgraded to 6.1.3 when it all stopped. I didnt change a thing except fo...
I have a user that is reporting that when they use Skype video conf while connected via Global Protect the VPN connection is being dropped. Looking through the GP logs it seems to indicate there was a connection problem, but the client initiates the disconnect before the traffic logs indicates the session ended. Here are what appears to be the r...
Hey All,Does there exist a way to test the Email Link feature of Wildfire with some sort of test url that always gets sent to Widfire and is always Malware?Like the http://wildfire.paloaltonetworks.com/publicapi/test/pe link to download a Wildfire test file?
Hi all,Is it possible to change the default ports for the management interface?for example i want to enable connection to panorama management on HTTP with TCP 1234 and not TCP 80.
- I can plot data from physical interfaces (from the PA) in MRTG, such as for instancedata from Eth1/1 and Eth1/2. But MRTG's cfgmaker doesn't get any info about tunnelinterfaces. Could this be made possible, for instance by adapting some changes in the firewall. If so, which one(s) ?M.
| Subject | Likes |
|---|---|
| 8 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 8 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

