Resolved! PAN Microsegmentation of DMZ
I am spinning up a new DMZ and wonder if there was a some means of restricting traffic between hosts on the DMZ using the PAN.
I have a Cisco Nexus switch and the hosts are VMs in Cisco UCS. Thank you.
I am spinning up a new DMZ and wonder if there was a some means of restricting traffic between hosts on the DMZ using the PAN.
I have a Cisco Nexus switch and the hosts are VMs in Cisco UCS. Thank you.
Does anyone know if PanOS v10+ can identify when a UserAgent is being spoofed? I've been looking through the discussion boards and online user documentation and haven't been able to find any results. I'm trying to see if we can catch when a device t
...
As stated in Where Can I Install the GlobalProtect App? (paloaltonetworks.com) the official client for W11 is > 5.2.10
Personally, I've used version ~5.2.7 without issues, the only thing I noticed was that detected host for HIP Profile was Microsoft W
...
We have been using the User-ID Agent and it has been working for over a year. On the 17th, the PAN stopped populating the traffic log with the user-id information. The Agent is working fine (user ids show up in the monitor) and the PAN is connecting
...
I added an existing firewall Active/Active Cluster with multiple Vsys into Panorama
Before the integration, some Device objects like "certificates" or "Local user database" were shared by the firewalls member of the cluster.
Now I need to create the
...
I have an HA pair (active/passive) of PA3250s (no Panorama) and just recently upgraded to PanOS 10.0.6 from 9.1.9. I configured the device telemetry and downloaded the new certificates for both firewalls. Telemetry is working great on my primary fire
...
Beginning sometime last week (possibly on 12/26) our Windows-based User-ID agent stopped being able to query our DCs for user-to-IP mappings. The PA shows 1000s of request for IP mappings msgs with little to no response msgs from the agent. The agent
...
I have a PA-220 at home and want to use it to obviously protect my home, but also to help prevent my children from accessing things I feel inappropriate.
Obviously with encrypted traffic from things like gaming consoles and phones this is harder to
...
Hi !
we have a query in Netflows. we have configured Netflows on PA820 firewall and enabled monitoring on both WAN and LAN ports. The flows are going to the Netflow collector and everything working as expected. when we are analyzing the Netflows we ar
...
Hi,
Recently we upgraded our VM-100 fw from v9 to v10 and apart from the yellow login wallpaper there was not much visual changes after the transition. Everything is running as smoothly as before, except an issue with SNMP traffic statistics.
We extr
...
Hi Folks,
We are recently receiving multiple cases where the devices behind the PA firewall is not able to access certain websites.
In an recent case we had seen for two devices (Device A and Device B in different VLAN's ) located behind Palo Alto fi
...
Hi,
This is a boarding school situation. By mutual agreement we close internet access to the dorms from midnight to 6AM. Several years ago we tried to control the DormsNetZone rules by a schedule. However as this didn't kill the active sessions it
...
Hi U-turn nat is configured for trust user to ping server located at DMZ. After the user ping the server from trust zone to dmz zone, the security policy count increases, but nat policy count does not increase. Is this normal? if not, why it happen?
...
Hello,
I have a PA-220 firewall. There is a normal switch connected on ethernet 1/4. The switch is connected to the equipments of 2 network segments, 10.1.240. * and 192.168.5. * .
These equipments need to communication now. But I can't change their I
...User | Count |
---|---|
6 | |
4 | |
3 | |
3 | |
2 |
Subject | Likes |
---|---|
3 Likes | |
3 Likes | |
2 Likes | |
2 Likes | |
2 Likes |
User | Likes Count |
---|---|
12 | |
9 | |
7 | |
6 | |
6 |