CNSE Review Guide
Has anyone have any idea what kind of topic you will be asked? Want to start reviewing for this certification.thanks
Has anyone have any idea what kind of topic you will be asked? Want to start reviewing for this certification.thanks
HelloI have a tmg box at the moment that publishes our web sites, can i still leave that still setup and point the palo at the tmg for the web sites we publish? or how do i do that with the palo in place.Mark
Hi, I was wondering if there are any plans or a method how to detect Office 365 traffic?We have no URL scanning license on the box, so we depend on the App detection method.Because all traffic is a SSL connection, PaloAlto reports the traffic as general SSL Application.Many thanks for any suggestion about my issue.
Hi all,I'm working for a new company building out several new data centers. They got a jump on getting things up and running before hiring their own resource and had a consultant setup a couple of pairs of PA-2050s. They are active/passive. The consultant set up the HA interfaces with no IP addresses. Is this an OK configuration? They seem happy...
I have noticed that whenever I log into my firewall now the commit option is always available. I haven't made changes yet I can click commit. Whats up with that? I would expect it to be grayed out like right after I do the commit.
Our IT department has decided to allow Dropbox, but only the web interface. Installed client traffic should still be blocked.Since the only identified app in Palo Alto is dropbox, we cannot block that app.Is there any suggestion on how can I do this? I've played around with SSL decryption but I get conflicting results.
I have configured a vulnerability protection profile to blacklist the ip addresses of attackers for all brute force login attempts with the signatures provided in the threat database. The profile works very well. However, i would now like to see the list of currently blacklisted ip addresses. I know it only blacklists for up to an hour, but th...
Hi all,Does anybody already succeed to auto send either Threat or Network monitor by email ?Or able to export ? or re-create ?Thanks for your hlepVincent
Hello.I have a little problem with user-ip mapping i have instaled PAN Agent on a server configured it and started from what i can see it reads security logs and from there maps ip to a user. Those logs presents users as shortdomainname\user. The problem is when device have to compare it to a LDAP mapped groups where users are identified as long...
I have OSPF working for subnets to which I'm directly connected. I have a static route to another subnet to which I'm not directly connected. Can I advertise this route via OSPF? If so, how?
Hi allFirst post, better behave I've been fiddling around with the antivirus block page on our PA5050-boxes with panos 4.1.4 but for some reason the page I upload to the boxes won't show. It did change once (uncertain why), but if I now try to either restore the default or upload an updated block page, nothing happens, the box keep displaying t...
All,We've noticed some strange traffic patterns coming from our Agent boxes and am curious why, and if others are seeing something similar... ?Looking in our Monitoring logs I see our two Agents sending data to:14.1.1.1914.2.1.1914.2.1.1Via SMB ports 135,137,139This appears to be something out of AustraliaWe're blocking this communication, and t...
Of course there are no such thing as bugfree soft/hardware (perhaps with the exeption for that kernel which Gernot Heiser at Open Kernel Labs is involved in (http://www.etn.se/images/expert/Gernot_Heiser_OK_Labs.pdf) which is mathematical proven to be bugfree 😉 which then comes down to how the supportorganisation works to handle the customers a...
Why is 'unknown-tcp' an application dependency of Skype, is it possible to remove a dependency from a pre-defined application. Or do we have to setup an application overide?I don't really want to allow unknown-tcp 'apps' just to allow someone to use Skype. And if something is unknown how does the Firewall match on something which is unknown?...
We setup a DHCP relay to a MS 2008R2 DHCP server, server recieves the relay and passes a client address back to PA 2050 running 4.1.3, the address does not get passed through to client, logs show only thr DHCP request going out but nothing back, no blocks in logs, we know the address packet is being returned to the server side PALO NIC.we even o...
| User | Likes Count |
|---|---|
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |

