how to change the FW administration default SSH port number ?
Hello,I want to change the default SSH port number for the firewall administration?any ideas ?
Hello,I want to change the default SSH port number for the firewall administration?any ideas ?
OK a little background first I'm running 4.1 on a 5050 pair in A/P. I have a server that is trying to do 80 and 443 out to a specific address and we have some logging wierdness going on. If we don't have a rule in place allowing the traffic it will not show up with a log entry. If I do a packet capture I see it in the receive stage but not an...
Question: What service route does the PA take for his OCSP requests?Since we can not choose anything under the service routes, I suppose it will use the management as default...Is there any way to change this to some other interface?Linus
Did anyone encounter such issue?We noticed that whenever the firewall triggered a failover (FW1 to FW2).external services seem to be disrupted. eg1 :Gomes monitoring informed of connection/performance issues (though we test from some countries to be ok) eg 2: FTP services from various country reported connection problem (China, Taiwan) But when...
Name:SSH2 Login AttemptID:31914Severity:Description:This alert indicates a login attempt against the target SSH server. If there are too many login attempts, then it may means an attack is try to brute-force user name and password.I don't know who wrote this description, but please add it to the corrections list.Thank you//rr
In Active Directory, we have a policy that requires all users to change their password every 90 days.. we have it configured to prompt within the last 15 days of expiring.. this is not happening for Global Protect users..the user gets stuck in a loop where his/her account is expired and must call the service desk to get back up and running.
Hi,An internal application is used for databese.It's default port is 5520when we saw this behaviour we wrote an application override rule for that tcp port and named a new application.after that we saw issue behaviour not changed(user is disconnectet from application sometimes, not everytime) but from logs we saw 2 applications match this traffi...
In this document is described how the NAT function at the Palo Alto.https://live.paloaltonetworks.com/docs/DOC-1517Has anything changed in the 5, in contrast to 4.1er?So far, the destination NAT zone was generally on the incoming interface as the source and destination zone.In the document is on page 20 (case3) and page 28 (Destination NAT) is t...
Hi,I have upgraded my Panorama residing on VMware using the web interface to 5.1.0 but it is not able boot now.It is on VMware and it is continuously asking for a login with different names and after a while it reboots.Any ideas?
Does anyone have any idea how to assign a specific IP address to a SSL VPN user from the configured pool?
Hi,when we revert to 5.0.5 from 5.1.0 using maintenance mode (Panorama) will we lost all logs ? and config ?Thanks.
Looking through my logs today and I noticed that connections initiated by clients using GlobalProtect are being logged as sourcing from the PA management interface. Is this expected/intended behavior? Shouldn't the log show the clients IP address?
As far as I can see, a WMI-user has to have "Server Operators"-rights.Is this the minimum rights?BR. Soren
HI allI tried to created a data pattern with a regex like in the pan 205 training course.(Classified)|(CLASSIFIED) and this seams to be not working.and the workaround that I found is to create in the data pattern 2 pattern first : Classified second : CLASSIFIED and this work have you experiencing other issue with regex in panos ?
Hi,Any information about , this funtion will be supported in future releases ?
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 3 |

