Upgrade PA stuck
Hi All, We try to upgrade PA5220 and it has been stuck quite long time. We tried to upgrade to 10.1.5h2 from 10.1.0. Any possible reason might cause of it?
Hi All, We try to upgrade PA5220 and it has been stuck quite long time. We tried to upgrade to 10.1.5h2 from 10.1.0. Any possible reason might cause of it?
I've run into a strange issue with the following website https://dvir-prod.aws.drivecam.net. When Users attempt to access it they are getting a 403 Forbidden. I'm not seeing an drops in the logs, and the packet captures don't point to anything either. I have to two 5520's in an HA pair and I forced the Active to Standby in the hops that it migh...
My client's site, a Canadian site that prepares school supply kits, edupac.ca was hacked badly a few months ago. But we manually removed all malware files. We abandoned the original infected file base, restoring from backups, and now the code base is a clean version from before the hacks. EduPac is an established company for over 20 years. I am ...
I'm having trouble seeing one route in my RIB and FIB. My BGP peer shows it is advertising the route to the Palo Alto, however I see the following when showing the peer at the PAN:sstadmin@200-PFW-01> show routing protocol bgp peer peer-name DMVPN-RouterPrefix counter for: bgpAfiIpv4 / unicastIncoming Prefix: Accepted 49, Rejected 0, Policy R...
Hello! I am having quite a few strange behaviors from the Palo Alto firewalls. I have a rule for an entire subnet (10.209.82.0/24) to be allowed from inside to outside zones via any port to any IP address yet there is still somehow traffic being denied. Obviously, this isn't the greatest from a security perspective, but I arrived there out of fr...
Currently, I'm using a local administrator account on the firewall (no Panorama), but I want to configure authentication between it and active directory. I went through Palo's guide for setting up Kerberos (I read that this is preferred over LDAP due to its increased security, but please chime in if you disagree), but I'm worried about the chanc...
Hi everyone!Every 15 minutes i get an email notification: opaque: Retrieving Content 'WildFire' info failed with error 'An active Wildfire license is required for this feature' but the license is valid till October 2022. Could someone help me with this issue ?My device is PA 850 Thanks in advance
Hi Guys!My Check Point firewall rule for Palo Alto fw update its contents, so im not confortable with the destination part (all_internet)PA fw (x.x.x.x) to all internet on service https (tcp.443) accept...! So instead of put ALL INTERNET on destination, i think PA should have documentation on it, about the destination for updates and also about ...
Hi everyone,we have installed minemeld in our facility and it's great, but we are having trouble implementing a solution that takes lists internally, our current goal is to update the list manually based on the ipv4 / url we get from our security team. Is there any guide that explains how this can be done? Thanks , Angelo.
Hi, new to Expedition and have just installed (Ubunto 20.4 and latest Expedition packages) . Imported a running config from a Cisco ASA 5525X without issue but when I move away from the dashboard to look at the 400+ address objects I see no objects and then returning to the dashboard they are gone as are a lot of other objects. Appreciate and gu...
PAN-DB URL Filtering still showing to expire on 19-05-2022 and Advanced URL Filtering license is not showing on the firewall.
I cannot get traffic to go out my outside interface - it will only go out the Management interfaceI have a PA-410 with several Inside interfaces / Outside (connected to an ASA) / Management (connected to my Inside network)Note: I changed the Outside IP's first 3 octets from the real to 3.3.3. in this post to protect the future public IP for this...
Hi everyone! I was quite new to Palo Alto Networks and one that caught my attention is setting up user-id.However, there are quite many videos which do not mention about the windows-based agent.What are the advantages if I decided to use windows-based than the integrated PANOS agent? And vice versa. Thanks!
Hi, suddenly we are getting a "connection failed" message from the GlobalProtect Client while using the sectigo wildcard certificate in the TLS Profile of the NGFW. The traffic logs show a 'decrypt-error'.There is no decryption policy being used. We are on PanOS 9.0.7. It's a bit strange because everything worked just fine until now and there we...
I have Filezilla FTP server running on 192.168.126.176 on private network.We are accessing it through VPN with ftp client.When reading directories we get error cannot open data connection for file transfer. FTP access with local network is ok without issues,
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

