PA 5000 series users
Is anyone else running this new hardware platform besides my company? We are running into a huge amount of issues and I would like to know if it's just us or not.
Is anyone else running this new hardware platform besides my company? We are running into a huge amount of issues and I would like to know if it's just us or not.
Hello,This question might sound very stupid, but never mind: I have a PA-500 configured which does a specific job which does layer 3 and that requires creating a lot of zones in-order to differentiate the traffic ( as per my understanding, zones are defined for differentiating between traffic. If my thinking is wrong, please correct me). Sinc...
Hi,Anyone had any luck with getting the SSL URL Over-ride page to display without a certificate error?If I have 'transparent' mode enabled for this function I get a certificate error (it appears to replace my URL with the IP address, port 6083, which doesn;t relate to the cert used).If I try redirect (to a Layer 3 interface on the PA as describe...
We have a less critical PA firewall system connected to an HSRP pair on the internal interface and an HSRP pair on the external interface.What is the best way to configure these systems to ensure the most availability of the routes so traffic can continue to flow through the Palo Alto if one of the HSRPs fail over?My thought is to use a second v...
Hello,I'd like to differenciate blogspot.com websites that contain adult content from others blogspot.com sites.I noticed that blogspot.com adult content sites redirect the requested url to a page for content acceptance.Is possible to block this behavior with a custom application ?
Hi there.I have a question relevant to Active-Active HA.This is example for a question. I must configure Active-Active HA With PA-5050 of 2.And external interface must aggregate with two or more interfaces to support 2G traffic. (Customer average traffic volume is a 1.2G.)At this time, I must aggregate with two or more interface for HA3 interfac...
Hi - does anyone know if it's possible to issue a command via the CLI to force a PA to query LDAP servers for group member updates?Cheers
This might be something silly I am overlooking, but of the 3 computers I have Global Protect installed none of them can close Global Proect when done with it. Even going in and trying to end the process just makes it open a new instance. Has anyone else found this to be the case?
We are waiting on some changes with our carrier and are using PA2050 set up as a virtual wire. I am trying to enable url filtering and when I enable the rule, it blocks all HTTP traffic.When i set policy to deny, it denies all traffic. Thoughts?
I've setup bgp with this guide(for active/passive configuration):https://live.paloaltonetworks.com/docs/DOC-1572I needed to prioritize one ISP so I changed configuration with this guide:https://live.paloaltonetworks.com/docs/DOC-1573andhttps://live.paloaltonetworks.com/docs/DOC-1574The problem now is, I don't see any RIB-out prefixes and my ISP ...
I was told that I could change the interface that the PA uses to check for updates. I am running 4.0.9 any ideas?
Hello,I have panos 3.1.10 and I have rule to block skype and skype-probe application.I'm using skype client 5.6.59.110 and the behavior is the following:- skype client authenticate and goes online- contact became green (online status)- Calls doesn't work (no ringing tone)- chat seams work but whit a lot of delay (i.e when you send a message the...
Hi All,I have been struck with some bizzare issues for my customer which is leading me no-where. The issues are as follows:- The customer was using SSL-VPN NetConnect when on version 4.0.5.- There were issues regarding ARP Cache limits as the PA-500 has only ARP cache limit of 500.- We were told that PAN would be increasing the ARP cache limi...
Hello guys,I was just wondering if it was possible to have instant messaging as Read-Only mode. For example, gtalk, can receive incoming messages, but the user cannot respond back to them. Is there any way to configure or achieve this?Cheers....
I am trying to figure out this APP ID and the dependenciesIn order for symantec updates app to work, the FTP app must be allowed. I discovered that to get to the doc's on palo alto network you need the app clearspace which is dependent on http-proxy.As I allow the FTP and http-proxy apps how can that be restricted so just not anybody can then g...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

