Resolved! Can a systems integrator benefit from taking the PCNSE exam?
I am asking because I'm exploring ways to enhance my career and I'm considering the PCNSE exam as a potential step toward that goal.
I am asking because I'm exploring ways to enhance my career and I'm considering the PCNSE exam as a potential step toward that goal.
Hi Experts, I am quiet new to Expedition, currently i am involved in a mass project where i have to migrate exiting Palo Alto Firewall into new. The existing firewall is managed by panorama which have tons of Network addresses and security policies which also uses shared object and polices from panorama. Now my objective is to import that pa...
Hi, I am writing this to ask if anyone has experience with ES suddenly down? After restart only logs become normal. I need idea on what we can check to know the root cause of ES suddenly down.
While setting up a VPN with a Cisco ASA, I stumbled accross the quite small list of DH Groups implemented in PA firewalls.So I wonder what the rationale was for choosing the implemented groups. As a German engineer working for goverment and other public organizations I'm missing the brainpool curves, which are advised by the BSI. The missing cur...
Hello all, I've found this kb: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CltxCAC I'm trying to install the latest apps on the OSS. I've downloaded "all apps" from csp and when I'm trying to install it, I receive the following error: What is the reason for this and how can I fix it?
Hello everyone! Before we go to the main point let me just give a explanation that happened. So we have a PA-1410 fresh from the box and tried to perform a basic power on test, the device firmware version currently seated on 11.0.3, I tried to check all the transceivers we have bought by using the following command that can be seen in this KB ...
I would like to know on how to add our email distribution list automatically to all our TAC cases subscriber list on CSP.Also, we would like to have customer advisories, content updates, etc; from Palo Alto to be received on the same email. Please let us know how to add this. Note: This is not a single user email account
Hi we have a PA-850. Port 5 has a RJ45 SFP adapter, internet connection. We are upgrading our Internet connection (bandwidth increase only, no IP changes) and the new handoff from the ISP is single mode fiber, so I purchased a PAN-SFP-PLUS-LR to support the connection. I plan on simply removing the old SFP adapter and inserting the new one. My q...
Hi all, Fairly new to PAN OS and have just enabled decryption on my 10.2.3-h4 VM-300 firewall. In my decryption logs, all entries for TLS 1.3 are having a 'General Protocol Error'. When running a v11.0.1 firewall (that I had to downgrade due to dataplane freezing issues - another story) I didn't get these errors. Anything I'm doing wrong or am...
Hi All, I am trying to import the Azure SAML certificate to use it in the Identity Provider Certificate as it is expiring this Thursday. But i am getting the attached error. Does it mean do i need to delete the existing one and then import it? I have the Pem format and Base64 format but error is same when i import. Certificate extention is .cer....
I have a strange issue where I have a configured rule to allow the "rtp" and "rtcp" App-IDs with application-default service from any-to-any. Below that rule I have a generic permit-any rule with application service any. Screenshots below. The behavior I am running into is that positively identified rtp and rtcp sessions are not matching my high...
Hi everyone,I have a situation as described in the title of this post. As you probably know Global Protect installs his own Credential Provider in Windows which has to be chosen by the user. It is also possible to force the Global Protect Credential Provider, but the point is, it has to be used in order to enable single sign on for the user.This...
we are seeing tunnel drop with below error message.IKE phase-1 SA is deleted SA: 1.1.1.1[500]-2.2.2.2[500] cookie:191098e4ef6db35d:eba9ee89ff200b07
Hi All, We are in a scenario where we are running firewalls on trial licenses. We have purchased the licenses. Can you help me with following queries :1. When firewall transition from trial -> purchased license, will firewall drop the network traffic ? 2. Any recommendation on scheduling downtime for it ?
I am blocking some applications coming inbound from the internet to a certain IP. This creates a response page when I have application block response page on. How can I stop response page from being server to outside zone?
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

