Resolved! Policy
Hi All, Can we configure a single policy , giving user-id's and few different IP address as source.Will both mentioned user id's and IP address are able reach the destinations which was allowed.
Hi All, Can we configure a single policy , giving user-id's and few different IP address as source.Will both mentioned user id's and IP address are able reach the destinations which was allowed.
Hello Community! We currently use Exchange logs for user-id to map users to IP address's so we can use AD groups for policies, etc. How do you do it when exchange is not on prem and you're using office 365? We used to use domain controllers, however the exchange was quicker at the resolution and any changes to IP's etc since outlook constantly a...
Hello, Does anyone knows, how can you get PCNSC Statue? I passed the PCNSC exam in January and since that time I did not received it yet. I seen pictures on Instagram and on Linkedin that people received it after one month. What do I have to do to get it. I would like to know what is my number :). Please help if someone knows what is the next st...
Hello all, is there any guide how to read disk-partition on firewall? i see that the logs on the firewall is panlogs, but i still don't know what the other partition function. and why the panraid/ldl is high than the other partition
I have forward ssl decrypt running and I want to change the cert I use. Can only have one forward trust cert at a time. If I deselect forward trust box I get commit error because my ssl decrypt policies don't have a forward trust cert. I can't select forward trust on the new cert until the old cert has forward trust deselected. So now what do I ...
Palo Alto Session count vs Session per second vs Connections per Second Hello good afternoon community, I hope everyone is well. Can someone help me regarding some values that I need to clarify and confirm that they are the following For Palo Alto they are or as a deference the measure of: "Session Count", "Session per second ( SPS )", "...
Hi All, We are facing GlobalProtect issue when we migrate from PA-3020 to PA-460. All the Configuration has been replicated. Users are able to connect to the Global Protect without any issues. Also users are able to connect to the local network without any issues. But when they connect to other sites which involves routing they are facing issues...
HI, We currently have DNS round robin configured for our on-demand GP connections across 2 separate locations which host different PA5020 firewalls. We have a public A record pointing to both public firewall IPs and the clients then connect to either gateway location dependent on which IP they resolve at that time. this works fine for the on-dem...
Greetings, We are researching Certificate management and all the certificate management the Firewall can do. It came across as a question - is there a way to have the PA function as a secondary / sub-ca? Our team members our discussing instead of standing of a new CA since everyone should have the root FW cert. My question is at what scale ...
Dear all, I am in search of how to create an aggregate interface per cli. I am using eve-ng and the option to create the ae via the GUI is not available. much appreciated.
Hello,A bit off topic but still security related, just curious who out there uses honeypots. I know google is a good resource but want to get actual user feedback. What works, what doesnt, top level info is good. Thanks in advance!
Prisma SD-WAN vs PAN-OS SDWAN ... Focused on SASE Hi good afternoon, as always, thanks for the time to answer and the good vibes. Today there is some confusion regarding these different variables, whether to use Prisma SD-WAN i.e. CloudGenix ION, to put together a sd-wan based network and/or to use PAN-OS SD-WAN. Thinking about an environment ...
Hi All,I need to send DHCP option 119 to my clients that are using the Palo Alto as their DHCP server.Please can you confirm whether this is possible or not? Thanks,Jaggie
Hello All, My current management IP is set to a private IP and is up and pingable from the PALO ALTO command line. How ever I cannot log onto the management IP via WEB GUI... Does the management interface correlate to the physical management port on the palo or is there someway to connect to the management IP from a different network? Or c...
Replacing 2 Cisco M400 firebox with PA-450, mirrored the NAT and security polices from the M400 onto the PA-450. When we switch over the firewalls we get internet traffic both ways as expected but after 15 minutes all in and outbound internet traffic stops. Switch back the Cisco routers and traffic flows normally again, swap back the the PA-450 ...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

