- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
I wonder if anyone can give suggestion whether we can change hard disk 1 to 2TB since logs all forwarded to hard disk 1?
I have both PA-3220 HA1-A and HA1-B links connected back to back to each other with a previously verified cable but only HA1 is coming up greeen while HA1 Backup is showing down. The HA1-B interface LEDs on both PA-3220 show green. Any feedback or suggestion is greatly appreciated. PassiveHA Setup BHA Setup AActive
when i'm trying to set up the rule, where the next hop is the IP of the proxy - i get an error that this IP "does not match subnets defined on the PBF interface" - which is correct, it's on different subnet. What are my options? Do i have to have the proxy on the same subnet as the interface?
My understanding is that QoS only really applies to egress. The issue I faced this week was with Apple updates killing the ingress and impacting sip trunks. Egress didn't appear to be an issue. Now with that said, would applying QoS within our Palos help in any way when it comes to the sip trunks if the issue is with ingress being saturated? ...
I have a customer who is using PAN appliances and we have a valid IPSec tunnel to a cloud provider. Traffic is fine for SSH and ICMP traffic in both directions. However, when we send HTTPS traffic across the tunnel the firewall logs suggest no bytes received and nothing past the SYN going out (we see no ACK etc.). From the client perspective it ...
Hi Guys, We are trying to push configuration from Panorama HW to AWS Firewall but getting below error upon following the devsrv we see below: I am wondering what is "Unable to execute eproxy script. Error (512) " and how to go on resolving as it is not throwing any specific error msg to relate to an issue. Many Thanks, @BPry @kiwi
I am trying to configure SSL inbound inspection for one of the application in our environment. I am not sure if the certificates that are being provided are correct and need some guidance for the same. Steps done: > Server team generated CSR in pkcs12 format and sent the same to our companies internal CA for signing. > Certs provided ...
Is this possible, One Global Protect Portal and Two Global Protect Gateways in One Firewall? For the second gateway, I'm planning to use a loopback interface with private IP that have a NAT public IP. The first gateway is the production VPN configured with on-demand, and MFA authentication The second gateway will be used to test the always on. W...
Hello, I have a PA-3250 with version 9.1.11-h3. I have generated the August monthly reports on 9/13 and 9/16. I noticed the report generated on 9/13 has less traffic than 9/16. Could someone tell me the theory or reason why did this happend ? Thanks.
Hi, Can we disable physical USB port on the Firewall? I didn't find how to disable this usb interface on the firewall. or is there any documentation how to disable this? Thanks, Denny
https://security.paloaltonetworks.com/PAN-SA-2023-0004 This bulletin states that there is no fix for the GP Client. Does anyone know if they are working on one? The idea of locking down completely the local LAN could prove difficult and after a discussion with GoDaddy (our cert provider) they state they will not issue a cert with an IP addre...
Hi everyoneI have a problem whith user ID agnet on Windows 2012 Server.I have a errorError - Failed to add mapping (x.x.x.x) - () - in x.x.x.x mains adress IP.Appears many times. Do you have any idea what is the reason this error ?? Regards Przemek
Hi, Anyone ever configured BGP + BFD + Graceful restart, trying to do this setup but not sure if there is any timers to ensure below. Can't find anywhere on any knowledge base. 1. when ISP link go down - BFD ensure seconds failover, ISP gateways are on same subnets attached through switches to Palo 2. when firewall failover - the BGP sessions s...
| User | Likes Count |
|---|---|
| 8 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

