How to output cli hierarchical structure
Is there a way to do a dump of the cli hierarchical structure to say a flat file?
Is there a way to do a dump of the cli hierarchical structure to say a flat file?
Error message when role based admin user is trying to log into UI:User does not have access to any device groups. Device groups are needed to access the 'Policies' and 'Objects' tab. Please ask your administrator to give you access to one.---The goal is to only assign a vsys to this role based administrator and not a device. Please let me know i...
hi : In regard to the settings for Port Scans and Host Sweeps:What counts as an event toward reaching the threshold? Is it a SYN packet or are other types of packets counted?Thanks
I'm tring to connect GP from iPhone5 and iPad4.3.3 with Client Cert Auth.I can't see the establishment of IPSec VPN, however, I could establish VPN from Windows with same client cert.I want to see the working sample cofiguration.Could anyone share the information?My testbed:-PA-5020 v4.1.1-GP v1.1.1-Windows 2003R2 as Client Cert CABTW, I know th...
On many of our Mac clients that are using SSL-VPN, if they are connected to the VPN and they close their Mac's (putting it to sleep), when the mac's are awoken, they can't route any traffic. The only cure seems to be:sudo route -n flushIs there any way to have normal function (meaning the normal non-vpn session) resume properly upon waking the ...
Is there a way to block a specific file name, not just a file extension? Is it possible to accomplish this using a custom data pattern?
Good morning,we run PanOs 4.1.0 on a couple of new sites, but we are not able to make GRE tunnel works. The sceario is IPsec Tunnel between 2 firewalls (PA-2020 to PA-5050), GRE tunnels built inside the IPsec on Cisco routers.IPsec is ok and ping is working between the routers loopback, but GRE tunnel is down even if we permit all applications a...
Good morningI have a Virtual Wire configured on a PAN-2050 with Pan OS 3.1.8 and I connect in one Interface of it a Microsoft ISA Server 2004 and in the other interface a Catalyst Cisco Switch.This Microsoft ISA SERVER 2004 has a Microsoft Load Balancing Service (NLB) configured on it with another Microsoft ISA SERVER 2004 that is connected in o...
I noticed that Sophos anti-virus is classifed under business-systems/management, while McAfee, Symantec, Panada are all classifed under business-systems/software-update.Seems to me Sophos is misclassified under the wrong sub-cateogry.
Hello,OWA (Exchange 2007) needs SAN (Subject Alternative Name) certificates (http://www.digicert.com/ssl-support/exchange-2007-san-names.htm). This type of certificate is supported by the Palo Alto for SSL inspection? What type of certificate are supported by Palo Alto (standard, extended validation, wildcard, SAN)?RegardsPatrick
Hi, I need some help about a PAN update trouble, since december of last year can't update all the signatures of threats, APP's, url filtering and antivirus.On the dynamic update section, when checking for new version, shows an error:Failed to check content upgrade info due to generic communication error. Please try again later.When I'm testing t...
Hello,Is there a way to easily find out where a specific object is used in the policies ?I know that I can use the filter filed in the policy tab (by using "drag and drop" or filter drop-down menu). However, when using group objects for multiples addresses, users or services, we cannot use this filter feature anymore. Indeed, even when specifing...
Hi,I have upgraded to 4.1 and added a ldap-server profile to the config so the firewall does the query instead of the user-id-agent.When I go to group-mappings settings ( under user-identification ) and select the tab 'Group Include List',I can see the whole AD-tree-structure, but I cannot view the last part: the group itself.Has anybody seen th...
Hi,I've just upgraded my PA-2050 to 4.1.1 and configured LDAP servers and group mapping for building some policies rules based on AD groups.Everything works well except one thing.The primary group of a user is not retrieved.And this is a problem because I had a policy rule based on it.Exemple : if a user "toto" belongs to these groups :- Domain ...
Just curious if anyone else notice performance issues with their palo boxes after upgrading to 4.1.1? I’m getting a lot of commit failures, cannot connect to the device errors or the page just takes 3-5 minutes to load. I’m also noticing that when the commits do take place it can take 5-15 minutes to complete.PA-2050Software version 4.1.1Globa...
| Subject | Likes |
|---|---|
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |

