Update routing table based on PING results
Does anyone know if the PA supports dynamically updating the routing table on a PA FW based on PING results? Some vendors refer to this as IP SLA.thanksDaniel
Does anyone know if the PA supports dynamically updating the routing table on a PA FW based on PING results? Some vendors refer to this as IP SLA.thanksDaniel
For this scenario, assume a simple setup. Two firewalls in HA and two switches in a stack. Also assume the firewalls are in active/passive. Consider the below setup, each firewall has one physical link to separate switch members of the stack.In this configuration, if switch member 1 fails and firewall 1 is the active firewall, does it automatica...
Does the PAN allow you to clone or mask the MAC address on an interface to one of your choosing?
I'm experiencing an issue with a connection to an external voip server.Directly attached to a PA-500 ethernet port there is a patton (fxo voip appliance).Now, I'm allowing any traffic to outside, any application.When I surf from that interface I can access external sites, but the issue seems to be NAT.Voip uses port 5060 udp.I can see the packet...
Is it possible with global protect and split tunnel setup to have policies applied for url filtering to the local client so that sites can be blocked in split tunnel mode?
Hello,Can you answer these questions regarding the tunel mtu that appears in the output below?cstankevitz@PA-500-Local> show vpn flow tunnel-id 27tunnel Sterling id: 27 type: IPSec gateway id: 1 local ip: 164.67.80.124 peer ip: 5...
why we are getting CISCOVPN traffic flow on VPN. please suggest.
We have upgraded 5 of our BranchOffice firewalls from 6.02 to 6.03 yesterday. All updates went fine except one: We are going to get an issue as soon as we want to connect via Global Protect to the Gateway. The window "Client Certificate Error" pops up:The error log shows: (T1636) 07/28/14 11:56:52:382 Error(8377): pan_obj_get_value() failed wit...
SNMP can be used to get packets per second and bytes per second information for individual interfaces but not for an aggregate interface. Statistics from the individual ports need to be added manually in order to get the throughput of all the interfaces.
Hello,What difference are between 'user eq' and 'user in' in filter of traffic logs?I want to see output which is filtered by partial user-ID not full user-ID.For example, There are as below user-IDs.SA10001SA10002UQ20001UQ20002.......I want to filter for all started 'SA' users in traffic logs.KC Lee
Hi Support Team.I have problem with PPPoE on Palo Alto PA 3050I config with true User and Password.my ISP reset MAC already.But PPPoE still failure.Pls help me.Thanks
How do I cable up a pair of PALO 5050's for HA?
I have a number of reports we use to generate usage information, such as the top 100 applications used over 24 hours sorted by bytes.If I run this report manually with RUN NOW, it generates perfectly and everything is sorted like it should be.If we schedule this report to run automatically and email the results out to a subset of people, the sor...
Hello,1. I have three zones: Public, DMZ, PrivatePublic interface: bound to 164.67.80.124/26Private interface: bound to 192.168.1.1/24DMZ interface: bound to 192.168.2.1/242. I use bi-directional NAT to expose a few of the DMZ machines via their own public IP addresses:164.67.80.77 <-> 192.168.2.77164.67.80.78 <-> 192.168.2.78164.67....
HelloIs Global Protect Client 1.x.x ended? Since may 2014 when we got 1.2.10 there isn't any new update when 2.0.x got two new versions.Is a time to move to 2.0.x version?With regardsSLawek
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

