Wildfire Action doubt
Hello,We do not have license wildfire in some of our devices.Do you know if wildfire action (Antivirus Profile) would function without this license?Regards,dicu
Hello,We do not have license wildfire in some of our devices.Do you know if wildfire action (Antivirus Profile) would function without this license?Regards,dicu
My instinct when I read my own title is to tell me to block the app-id type http-proxy as I can't see inside it and it shouldn't be on my network.However, I have a requirement, mostly due to legacy infrastructure, where all the traffic passing through my PA firewall will effectively terminate on a proxy server (probably bluecoat) further down th...
We have this scenario that Palo Alto will receive the inbound mail then will be pass to the PMX server(pure message) going to the exchange server. After going to the exchange server, it must be forwarded to the FW but the problem is that the Core Switch doesn't have a default route configured. Is there any way that Palo Alto can receive the mail...
Got an odd issue I was hoping someone may have seen.PA 500 setting up a 4 port LACP bond to juniper switches. Running PanOS 6.1.2Setup the LACP bond on both ends, LACP would not negotiate. Spent many hours wtf’ing, couldn’t find anything odd anywhere, other LACP bonds we’ve setup previously work perfectly.Eventually looking at other config snipp...
Hello,I am currently working on a new PA-3020 deployment. The device has been delivered with old PanOS 5.0.6 release. Also I would like to upgrade it to last PanOS 6.0.x release before going ahead with configuration.The device has currently no access to Internet, also I have to manually upgrade the device. In order to achieve this, I firstly hav...
Hello.I am trying to setup an application policy rule to allow secure LDAP from our hosting company back to our internal domain controller running MS AD. I have the appropriate NAT statement setup.If you look in the log screenshot above, you'll see that the first entry is being denied. For my list of allowed applications in that rule, I have a...
I'm getting the following error showing up in event viewer on our Windows domain controller. We have 4 DC total that have the the user-id agent installed.As you can see, I am getting a lot of these error. The IP in question is one from our BYOD subnet, meaning it could be a end-user personal device. Most of the IPs in the error logs are from ...
Just wanted to let you knowhttps://www.sans.org/reading-room/whitepapers/auditing/palo-alto-firewall-security-configuration-benchmark-35777
Hi all,We have two PA-4060 in active/passive mode with PAN-OS 4.1.12 (I know, old..).Yesterday, after rebooting passive device auto commit failed with:Error: Certificate 'XYZ' failed to load: failed to parse keyand device went to not-ready state.After deleting problematic certificate and with commit force device become functional again.We then t...
We have configured One VR-1 onlyEthernet 1/1 is a WAN interfaceEthernet 1/2 is a WAN interfaceEthernet 1/3 is a WAN interfaceEthernet 1/4 is a LAN interfaceWe’ve created ETH1-ZONE for Ethernet 1/1ETH2-ZONE for Ethernet 1/2ETH3-ZONE for Ethernet 1/3ETH4-ZONE for Ethernet 1/4VP –ZONE for all the tunnels (used for remote connection site with site-1...
A customer is seeing infected word files with macro in their network. The firewall is not able to block this file because the macro keeps changing file hash, even with WildFire enabled.Would Traps be able to detect and kill this file on the host without requiring any manual remediation?
Traceback (most recent call last):vigate, ENTER=Select, ESC=Back File "/usr/local/bin/mrt", line 192, in ? main(sys.argv[1:]) File "/usr/local/bin/mrt", line 187, in main m.main() File "/usr/lib/python2.4/site-packages/mrt/ui.py", line 4330, in main self.ui.run_wrapper(self.run) File "/usr/lib/python2.4/site-packages/urwid/curses_...
Hello,Can PA be possible for content inspection after ssh decryption?I looked the below document.Details on Port Forwarding Inside SSHThis document mentioned the following comment."Content and threat inspection is not done on the SSH tunnel session"I don't know that It means whether only 'ssh-tunnel' application or both 'ssh' & "ssh-tunnel' ...
I have read about tunnel monitoring and DPD however is there any way to receive notifications when a tunnel goes down?
Hello,I am sure that a check-box of Certificate for the Secure Web GUI option show on PANOS-5.1.x But it does not show on PANOS-6.1.0.Where is a check-box of Certificate for the Secure Web GUI option on PANOS-6.1.0 ?Please someone help me.Thanks,KC Lee
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

