Does NetConnect Support Mac OS 10.7 "Lion"?
Just wanted to see if NetConnect works on the new Apple Lion 10.7 OS that was officially released today. Should I upgrade yet?Thanks.
Just wanted to see if NetConnect works on the new Apple Lion 10.7 OS that was officially released today. Should I upgrade yet?Thanks.
Hi all, I have a problem with iTunes/AppStore on my PaloAlto firewall. We have a default rule for surfing with URL filtering applied (including online-music category). Every time I try to connect with a iOS device to AppStore the traffic is denied because it is categorized as online-music (i can see this in session browser).If I configure anothe...
I'm trying to allow downloads of .exe and PE files for updates but continue to block users from downloading those file types from other sources. Not sure what the best way to do this is.If I build a file filter with 3 rules like:1. allow application ms-update2. block .exe3. allow anyAre these rules evaluated in sequential order? Or will the bl...
I have 2 PA-500 inline for web filtering only. We are having an idle timeout problem with none url traffic and have determined the issue is with the PA's. I have seen posts on this issue that relate to firewall functionality that I am not using. Does anyone know where/how to address this issue on the PA's? Thanks
All,I have the SSL VPN setup and working. All my remote users have access to the internal resources they need. The time has now come to add a vendor to access their specific internal server. So, I will create an user on the PA in the Local DB and configure the VPN to allow them to connect. My question is, once they connect and authenticate, ...
Is it possible to forward URL fliter logs to Panorama?Panorama version 4.0.5PAN firewall version 4.0.5We are seeing the URL categories in the ACC but no logs.
Hi,I was wondering if anyone can tell me if there is a limit to the number of 'Clear Text Traffic - to QOS Profile' mappings you can create under the advanced options within a new QOS Interface? PANOS 4.0.2.I want to setup a couple of QOS profiles, then tie these both to an egress interface depending on Source Subnet. I have about 400 subnets th...
Hi,I´m testing the HA configuration of our firewalls and experience unexpected behavior.If both HA members experience link down errors, we want the appliance with the most active links to be active.In the "PAN-OS HA - Understanding PAN-OS HA states, timers and loops" document I found this:"If both the active and passive devices experience multip...
Does anyone know if it's possible to search for an application by port number instead of name, to see if you can find a match?I have some connections using an application that shows a known - and recognised - PORT number when I run a packet capture, vis-a-vis12:49:53.009216 IP (tos 0x0, ttl 128, id 47750, offset 0, flags [none], proto: UDP (17),...
Hello,I need to block FTP communication - however, I do not want to block downloads that come through a browser - which can utilizes FTP over HTTP. Would this configuration theoretically work? Curious if anyone has made that work - before I get into testing mode.Rule1 - any/any - FTP Application - HTTP Service/Port80 - ALLOWRule2 - any/any - FT...
I'm having some troubles coming up with a clean report that will tell my employer the highest number of concurrent users on the PAN each day... Anybody write one? Trying to filter out the nonsense seems to be the problem. I just need to see "at X PM xx users were connected and surfing".
Hi All; I have a pretty big problem with a PA500.1) Commit times are 4-5 minutes. Though other PA500s we have commit in roughly 30 seconds to a minute. Could this be a hardware problem? It's only running demo traffic.2) When trying to roll back from version 4.0.5 to 3.1.10 it has an autocomit job that fails, restarts and fails in an infinite lo...
Hi All,Could I use the Captive Portal, as a way of displaying an Acceptable Use Policy ( AUP ) that users must accept, before gaininginternet access?To make this as seemless as possible, is it also possible to not have to require the entering of username/password combination, as the user would have already been authenticated by User-ID?
I see there's a document for extracting the SSL VPN MSI installer for 3.1 and earlier code: https://live.paloaltonetworks.com/docs/DOC-1398Is the procedure the same for 4.0?
I tried searching through the discussions but didn't see anything regarding this. Is it possible to see what the actual threats are matching on? Essentially what their signature is so I can make a more accurate analysis of the validity. For example, Scripts/Win32.Rsrc.o is classified as a Medium severity virus threat. The description is simply "...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 3 | |
| 2 | |
| 2 | |
| 2 |

