when I connect to globalprotect, it show VPN certificate is not within its validity period
after show this error, can't connect to any internet or intranet, and the system date auto changed to 2013how to fix this issue? Many thanks.
after show this error, can't connect to any internet or intranet, and the system date auto changed to 2013how to fix this issue? Many thanks.
Hello team, I need to know How to configure VPN and Certificates to cut VPN access when the Certificate is revoked. I have revoked a certificate into the Firewall but I can connect anyway from VPN.... I am using on my GlobalProtect connection and the connections are working fine, I need to cut this connection when the certificate is revoked,...
Hi everybody. When I got the report from palo alto the following problem occurs ( b' ' ). This report is in PDF format and cannot be edited. There was an extract of the report before, but there was no such problem. b'Risk' b'Application' b'App Category' b'App Sub Category' b'App Technology' b'Sessions' b'Bytesb'windows-...
Hi all, I am running a VM-series on aws and it has a issue with session, it's cannot break 1025. I'm new to Palo Alto so there are many term i really don't understand. Some body please tell me what is Active Session? Is it Session count on UI? Why can't it break 1025?
Is there a way to setup TWO IPsec tunnels using different paths (for instance, two different ISP's) and have them share the traffic load between the two vs having a primary and backup? I'm aware we can setup two tunnels and use path monitoring to fail over from one tunnel to the other but is there a way to have two or more tunnels and have the...
We have planned the configuration of the Cortex XDR Cloud Identity Engine for our on-premises service. Could you please tell me whether the Cloud Identity Engine agent should be installed on the AD server or on a separate (NEW) server? What is the best method?
Hi,We have recently installed a PA-2020 at our college and am very happy with the device. The only issue we are having is that students are still able to use iMessage on their iPads. I can't find an existing app-id for that and am wondering if anyone has already created a custom id for such. I am going to follow the tech note on creating a custo...
I have created a LDAP profile, group mapping and user mapping from Panorama, and it seems to be working. Im able to do "test authentication username [email protected] authentication-profile xxxxxx-LDAP password and this works fine. My problem is that panorama doesnt seem to be able to "manage" Palo Alto Networks User ID Agent Setup ta...
Hello, Our backend website "backend.knokcare.com"was flagged as "phishing" by PaloAlto. May you change this categorization, please? We've already requested this change thorough https://urlfiltering.paloaltonetworks.com/ to "Health-and-Medicine". "knokcare.com" is in this category. We have customers using paloalto protection that are being bloc...
Team, Any aware if Palo Alto provides any API's which can help with End of Life dates? e.g. check for a device by serial number, by model number, check for the PAN OS version etc. Regards, Nikson.
Hi, Does DNS Security checks DNS records other than A and how it works ? I think CNAME are checked as they are similar to A in meaning of request content. How about other records like PTR and TXT as they can be used more frequently for C2 traffic?
Dear Team, I have a suggestion. Where can I find more information about OIDS of HA peers. I need some claryfication about, can this OIDS be different on HA Active Passive. I have two PA 5220, A\P. Pan-OS version is 10.1.10-h1. Need some advice. #OID #5220 #HA pair
We have done the creation of a tunnel (VPN) as hub and spoke, currently we will connect 203 devices to this tunnel, we have been researching but we have not found information on how many peers this tunnel can support with this hub and spoke configuration? Does anyone know the limit of devices that can be linked to the same tunnel? If there is ...
Hi Login Banner and System Log are created and commited in Panorama. and then click on Push button on top right corner. I got the below window. Why the Bush is grayed out? Is there something needed to completed before the Push? Thank you
We are having some performance issues, with cortex xdr eating up cpu during VDI bootup. We installed agent on a non-persistant VDI, and followed recommended config settings and also followed appvolume recommendation. I checked task manager and found that during boot up, it seems cortex xdr is competing with Defender in cpu consumption, defender...
| Subject | Likes |
|---|---|
| 1 Like | |
| 1 Like | |
| 1 Like | |
| 1 Like | |
| 1 Like |
| User | Likes Count |
|---|---|
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |

