Resolved! What is the decryption key?
Hello!I attempted to configuration load.What is the meaning of the Decryption Key?What is it used for?
Hello!I attempted to configuration load.What is the meaning of the Decryption Key?What is it used for?
Hi all,I monitor traffic on management interface of 3020, I have seen so many packet from management IP to an broadcast IP Aug 23 14:49:24 192.168.1.15:35889 203.77.255.255:137 UDPAug 23 14:49:24 192.168.1.15:52601 203.77.255.255:137 UDPI try to stop all service on management interface but it is not affect.Please help me to stop th...
HiI have few reports that I get every day/week on my email. But I'm looking for traffic report per ingress/egress interface- something like is posssible to generate by hands from Monitor>Reports>Traffic report>Ingress Interface but scheduled and sended on email.I tryed to create custom report and load "Ingress interface" as a template -...
I am currently attempting to cut over our office's internal gateway from a BSD firewall to our PA-2050 (running PAN-OS 4.1.9). When attempting the cutover, I can get all services to work properly with the exception of our two VoIP servers (running Trixbox, which is Asterisk-based). I can get the servers to make a call, but once connected there...
Thank you for your time. I have a lab setup with a PA-500 and a Windows 2008 server with Active Directory. I have a single user in the trust zone on the Palo and I am trying to get Captive portal working for User-ID mappings of unknown users. I have my LDAP server profile and I have my user/group mappings working just fine with that, however, wh...
Hi,Does anybody know in which log file I can see that the CRL revoke list is updated?And also if its possible to see that a client is rejected because of revoked certificate not just client cert invalid?/kristian
Hi There,We have a user that is trying to use Gotoassist support with one of our supplier companies. I have created a specific rule that allows for Citrix, web-browsing to the specific websites it needs and gotoassist application itself. However, when it gets to the last step in the connection proccess where it comes up and says "Connecte to GoT...
How can you check to see what PAN OS is installed on your PA 3020?
Is there a way in the GUI interface to reset the PA 3020 to factorty defaults?
I have configured DNS Proxy on a PA200 with PANOS 4.1.9, with two interfaces enabled for DNS proxy service and two default public DNS as primary and secondary.But on system monitor, on DNS Proxy object, I find: "Failed to resolve domain name: <domain-name > after trying all attempts to name server(s): 8.8.4.4 8.8.8.8 .Which is the source ...
Greetings all! I am trying to allow split-tunneling for a client so they can access their home network while connected via VPN. I see in split-tunneling box, the option to add specific network ranges but hope there is a better way since I could not hope to know all of their home network ranges. I am sure I am missing something.Thanks in advance!
Correct me if I am wrong but I should be able to filter traffic in a rule based on applications, correct? I am trying to create a PBF that will route traffic for one specific IP address using google-docs-base but I can't get this application to show up in the drop down list. It looks like it has a few of the more common applications but not the ...
Forgive the newbie question, but I've been searching the documentation and I don't see where I can configure the Paloalto FW for vpn passthrough, specifically ESP (Protocol 50) and even ICMP. I have some routers that I need to provide NAT for their external address, but I also want to limit the services available on the Internet to just PING re...
Hi,since we've upgraded our PAs (200, 2000), we notice more and more decryption problems with HTTPS websites. The problem appears suddenly, almost all HTTPS doesn't work and a restart of the PA is required to solve the problem...And then, after one or more days it appears again...We decided to downgrade our PAs back to 5.0.6...Did someone also n...
hiis there any good alternatives out there for connecting linux and android clients to global connect\PA native IPsec vpn ??And I DO NOT mean that native cisco is OK, the encryption used here has been broken for several years,and are not designed for either linux or android, and in many cases it does not function well
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

