Resolved! maximum number of bgp routes
hi,is there a maximum number of bgp route entries supported for the 5000 series ? does it support a full ipv4 routing table ? i cannot find any docs or data sheets with this kind of limits detailed...thanks
hi,is there a maximum number of bgp route entries supported for the 5000 series ? does it support a full ipv4 routing table ? i cannot find any docs or data sheets with this kind of limits detailed...thanks
Hi, I have a VPN-SSL GP in a FW PA. I have some "Acess routes" in include for LAN ranges (10.0.0.0/8 and 192.168.x.x) and the rest should go through ISP local user. The issue is that I'm seeing traffic destined for the internet that shouldn't be reaching the FW via the VPN. Goiing to agent logs i can see all routes in Linux client as OK. Default...
Hello All! I'm trying to use Expedition to migrate 100+ virtual systems from old Juniper firewalls my team inherited to our Palo Altos. We are using Load Partial commands rather than importing the entire Expedition output based on recommendations from Palo Engineers. Some of my Juniper stuff has large routing tables of static routes, so I wa...
Dear all I have a question about snat address pool and route loop; If I set a snat policy and assign a public address pool(range)to it, like 110.1.1.1 to 110.1.1.11 PS. It's being used for visit internet; I have a default route to internet on my firewall, nexthop is ISP, and this ISP have a route about 110.1.1.1 to 110.1.1.11 next hop is ...
Hey Guys, I have a bunch of access points in Aruba Central, we are currently using UserID as a way to assign username to IP address with Palo Alto. I have found these instructions https://www.arubanetworks.com/techdocs/central/latest/content/aos10x/cfg/services/pan_firewall.htm and preliminary testing seems to be working. Just wondering if any...
I'm using AD groups for some security policies and am expanding to use other domains in our company. While I can add users from another domain into an AD group, the PA only shows me the users in the same domain as the group. For example:Domain 1: DC=first,DC=com User 1: CN=idone,OU=users,DC=first,DC=com Group: CN=cars,OU=groups,DC=first,DC=com ...
I have an issue that's affecting sync between HA peers. I've been trying to upload a support file (70mb) for 2 hours now. I have tried using a different browser and even a different computer. If call the North America TAC line the automated system instructs me to enter a ticket online. If this were a critical issue this would be incredibly stre...
Hello, On my PA-820 I started getting the idle timeout message below: "Your login session has expired and you have been logged out for security reasons. Please log in again if you wish to continue." Normally this was never an issue and I simply logged back in after being idle. Starting about 2 weeks ago I cannot log back into the WEBUI under nor...
I have two PA-400 series devices that failed to renew their device certificates and now I get "TPM public key match failed" when trying to renew their certs. Any way to fix this on my own? I see some posts saying PA support had to fix it, but as of now my 3rd party support provider is being unresponsive 😒
Hola, una pregunta ¿Se puede reactivar los intentos del examen Test Out del curso Cortex XDR, ya que solo tuve un intento?”
Greetings all, I've been looking over some possible improvements to consider as we're moving our firewall deployment closer to production. We've got a lot of Cisco equipment through our core along with a switch VSS that runs various VRFs surrounding the PAN firewall. I noticed the Cisco implementation of OSPFv3 is supporting IPv4 address famil...
Dear Palo Alto Support,We have configured initial settings and an active/passive HA pair on our firewalls. Before proceeding with license activation, we would like to confirm whether this process has any impact on the existing configuration or HA setup. Could you please advise if the configuration and HA state remain intact after license activation
Hello I have two subinterfaces ethernet1/4.10 (192.168.1.0/24) and ethernet 1/4.20 (192.168.20.0/24) in the same security zone. What I need to set up to allow to wake up computers using Wake On Lan function on 192.168.20.0/24 from ie. 192.168.1.100 ? With regardsSlawek
We connect two firewalls (PA-200 and PA-500) with a VPN tunneland want to initiate a WakeOnLan command from one side of the VPN to an pc on the other side.
Hy, In my wifi network captive portal. While mobile phones are connect to the wifi they are bypassing the CP authentication and getting connected the internet without entering their user id and password. Anyone please help. #paloalto450
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

