zone protection
How do we block synfin port scan.
How do we block synfin port scan.
Hi all,I use Panorama VM to management Palo Alto Firewall.I met a problem. I can't add virtual disk if disk's space is over 200G.If i add 200G, it's okBut if i ad 300G, VMware show error mesagePls help know where i was wrong.Thanks
I have configuring log-collector with Panorama.I want to check disk pair enabled on log-collector.I already know how to check Log Storage wih Panorama.But I can access to Panorama, I have not permission.So, I commanded "show log-collector detail" on Log-collector, but appeared following this message.is it trouble?I think it may have some proble...
Hello,We're having a few issues with predict sessions begin created erroneously and unnecessarily. The SIP ALG can be disabled, but when I tried the same process for other applications (ftp, skype, rtmpe, etc), there was no ALG option. How can these ALGs be disabled?Thanks,Ross
Hello Everyone,I'm new on Palo Alto Configuration,I would like to know if it's possible to configure 2 zones for the same physical network.Use case:Ethernet 1: Zone Servers: ip: 192.168.80.254/24Ethernet 2: Zone internet 1 : 193.1.1.254/24Ethernet 3: Zone internet 1 : 193.2.1.254/24I would like to have another network 192.168.90.0/24 so that I c...
Hello.I'm doing a firewall migration where i encountered a following situation:- customer has site-to-site VPNs terminated on public IP address, let's say 1.1.1.1- customer is using PPTP VPN solution which is also terminated on same IP address 1.1.1.1 and DNAT-ed to PPTP server, let's say on address 10.10.10.10- on current fw they have a DNAT ru...
I need to add a lot of addresses (around 10,000) to my firewalls. I have them in a list and have created a script to add them one at a time. The problem is that this takes a long time. I then tried to add them all, but my URI was too long. So now I can add about 50 at a time. It still takes a while.I also know that with the import command I...
Can someone else please test this? Run a continuous ping to a PA200, log into the PA200's management UI, did the pings response times increase? Or drop?We are noticing this on about 5 different remote PA200's. They are all on 6.0.6. Some are on DSL and some on cable. Response times jump from 20-40ms to 900-1000ms, and some time out.
We currently use PA-500 routers at all of our locations. Is there a quick way to either visualize or get a report on traffic usage? Ideally, we'd like to be able to at a glance see what IP is maxing out our bandwidth when we start running low on internet or VPN bandwidth.We did try experimenting with Pan(w)achrome, but we didn't have any luck g...
Here's the scenario:1) 1 week ago, a session from 10.1.1.1 and 10.2.2.2 is established. Normally, data transfer is very low.2) Within that session, 100GB of data is suddenly transferred one day between 6pm and 7pm, pegging the site's Internet bandwidth.3) The data transfer becomes very low again after the burst. The session doesn't terminate...
Hello,I'm having some performance issues with a particular site. I opened a case, but I thought I would pick people's brains here.I'm working my way backwards from the client out to the edge of our network to see if there's any obvious issues on my end. Is there any diagnostics or fact finding to determine if my PA3020 is showing any performan...
How can I test the speed of a GP split tunnel VPN back to my office (not to the internet)?
Ok I'm pretty sure this has been covered elsewhere however I cannot find anything on it. Let me give you some background on the config: Currently using software version 6.0.5SSL decryption in operationTrust to Untrust traffic flow directionOk so I have a rule called "Trust Web Traffic". This rule allows any trust user to any untrust destinati...
Hi guys,I'm doing a POC for S2S VPN but i cannot get it to work, I'm sure this is a simple thing i have overlooked, a ping from PC2 to PC1, the ping is encapsulated and encrypted ESP on the way over to PC1, but the return traffic is not..... i have the following topology;Now i have set up a site to site VPN from the PA to R2 with the following a...
Hello,I've noticed a boatload of application-pcaps - between 5-15k, on days where they are captured. There are captures from most days, but not every day.As far as I know, I don't have any traffic captures enabled. All of the following show that captures are disabled:1. debug dataplane packet-diag show setting (capture and logs disabled on all...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

