Resolved! What is flow_host_pkt_xmt Counter?
Hello All,I'm seeing this counter hit and would like to understand what it is.What is the flow_host_pkt_xmt counter?If it matters, this is under 3.1.10.Thanks,MJ
Hello All,I'm seeing this counter hit and would like to understand what it is.What is the flow_host_pkt_xmt counter?If it matters, this is under 3.1.10.Thanks,MJ
we are on 4.1.4, noticed some very odd traffic data from ACC.1, some internal traffic happened at 9am - 930am, PA ACC showed it happened at 3pm afternoon.2. about 35G data from one machine out to the facebook within one hour, but our connection is only 40M, shared with 300 people, I dont think it could send that kind amount data out?wondering if...
Hi,I have a quick question regarding the insertion of an SFP Module into a Palo Alto Networks 5050. I have a Finisar FTLX8571D3BCL SFP module that works fine in Ether Port 1/13 (i.e I get link state). From reading the vendor documentation for this module, I am fairly certain that the module is an SFP+ module.The output of the following command...
I configured Netflow on OS 4.1.0,for testing reasing i started with 2 interfaces...but in ManageEngine NetFlow Analyzer I get 3 interfaces!?!?I tried to identify the interfaces but when I look on the traffic showing up then I'm pretty confused...the traffic showing up is not from a interface I configured for netflow.Is that possible?
We have installed PAN-2050 in my customer site.It has been deployed with two L2 interface as vmwire.And we made one L3 vlan interface for secondary IP.There are 2 IP subnets. (192.168.10.0/24, 192.168.1.0/24)One(192.168.10.0/24) is for user.The other(192.168.1.0/24) is for DMZ server.Both IP subnet set gateway as PAN L3 vlan interface.And one VR...
I was writing a rule to allow ciscovpn to only certain addresses, so I added a destination and the application I chose was ciscovpn. I added it to the policy and then did a commit. it came back with messages saying that ciscovpn needed ike to function and it was denied in the default deny. so I added ike and did a commit, and got a message ...
Did the AntiSpyware Response page option go away in version 4.1.4? Seems like I tested with it and saw an option for an AntiSpyware page in eariler versions of 4.x, but I'm not seeing it listed as an option on the firewalls or in Panorama in 4.1.4.
Hi,I am a new Palo Alto firewall user, however I have been working with firewalls for some time. I have a couple of quick questions;1) Does the Palo Alto PAN-OS firewall have equivalent of the "shut" or "no shut" command to turn an interface on or off?2) I have an 802.1q trunk link coming into my firewall; this trunk link has multiple VLANs ta...
Hi..Customer would like to use SSL VPN with Active-Directory.So, I have configured SSL VPN with LDAP Authentication.There was no problem to connect SSL VPN with LDAP Authentication. after verify SSL VPN connection, I was going to add some specific group to LDAP authentication in Authentication profile.But I cannot browse Active-Directory group...
Hi,Have you a documentation or a procedure describing how to setup a VPN Client to Site connexion in IPSEC (I am using a P200).RegardsBoris
Is there information on Security and NAT "add rule" configuration limitations for the PA-4000 series?
I am interested in adding all of the IPs from a range like x.y.z.40/28 to the external interface of the PAN.The verbiage on the GUI makes it sound as if I need to add each IP individually.Can I add a range as listed above by entering it as x.y.z.40/28 and if so, can I then NAT inbound by individual IPs in the range by referencing the individual...
We are trying to log all URLs without having a URL Filtering licenseFor that we created a custom URL category containing*.**.*.*Seemed to work but when we compared the amount of log entries to the proxy logs we discovered that we only see less than half of the proxy URL logs in the PA URL log.Looking around we noticed that the option "Log Contai...
I'm trying to use the CLI to get a list of SSLVPN logins, but keep getting either "sytnax error at end of input" or "syntax error at AND" errors. what i've attempted so far is variation on:show log system subtype equal sslvpn object equal "Test SSL-VPN"I suspect it's something to do with the object name which has a space it in. I've tried single...
Hi All,I have configured the PaloAlto to email me threatn logs for medium , high and critical alerts, but it seems to email me only medium threat alerts, how do i fix this 😞Please find attached my log forwarding profile.My email profile is configured fine, as i can receive system alert emails etc, but only with threat alerts, all i get is medi...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 2 |

