- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Hello,I have run a config through the migration tool and I have noticed the following application generate warnings- icmp- I understand I change this to- pingipsec-esp- I have no idea what this should be changed to?gre(generic routing encapsulation)- No idea what this should be changed to? Any help would be appreciated.
I would like to test this hypothetical scenario it is possible :* I have an account with 3 vpn providers (i.e. NordVpn, PIA, Boleh)* I would like to create 3 (or more) vpn tunnels (at least one tunnel with each vpn provider)* I will route different traffics (route by source) to each vpn tunnel Is it possible with Palo Alto?Does anybody have I bl...
PAN-OS is 9.1.10 running on PA-5250. The useridd process is consuming 100% CPU: Tasks: 313 total, 1 running, 309 sleeping, 0 stopped, 3 zombie%Cpu(s): 2.8 us, 1.5 sy, 0.0 ni, 95.7 id, 0.0 wa, 0.0 hi, 0.0 si, 0.0 stKiB Mem : 32640128 total, 197252 free, 5921556 used, 26521320 buff/cacheKiB Swap: 0 total, 0 free, 0 used. 26240004 avail MemPID USER...
Hello All, I have a question related to BGP summarization in a PAN firewall. We currently have summary aggregate advertised to the upstream device. But now we need a leak /32 route to the upstream along with the original summary route. What is the best method to achieve this goal? I have seen an option for 'Advertise filter' in BGP summary. If I...
Hi everyone, Does anyone know if it is possible to execute a script with global protect after the client is connected to and successfully authenticated on an internal Gateway? Regards,Remo
Greetings all, As the title suggests, I'm attempting to get Panorama and our two PAN 5250 on to our new data lake. I've got the Device Certs installed using the OTP from the Support Portal and I installed (but didn't configure beyond the re-verifying using the OTP from data lake) the latest Cloud Services plugin on Panorama. I can see all of th...
Cisco used to have a tool that would show features and setting that are different between version you could select. Does Palo have a utility or easy way see changes/features between 9.1 and 10.1? We would like to know the changes prior to upgrade.
I'm having some issues generating PDF reports in Panorama and after Google didn't help me, I thought it would be worth asking here. We've created some custom reports in the past, had PDF summaries generated, and the reports get sent out on a regular basis with no issues. We followed our usual steps to create the reports described below. Yesterda...
Hello FolksDoes anyone know why I am having problems with DNS Sinkhole when my computers have dynamic DNS, I have spent days testing and I have detected that with fixed DNS I see the log but with dynamic DNS I don't see any logI have applied the Security profile , Decryption rule, But the behaviour is the same. Also I have DNS Security license.T...
Hi all, we have some issues with MS-Teams.Our customers have random disconnections during the cals. In the app they recive error - "bad network quality" and after that they reconnect. Call quality itself is good. In MS console there is no allerts for diconnections or bad quality. Evriting regarding MS products was excluded from inspecion decript...
Hi All,I'm using SSL decryption and if I wanted to have a URL in the exceptions (not decrypted) list, I would add it to a custom url category I created and just add the domain and apply the cutom url to the policy.But I also noticed that in Device>Certificate Management>SSL decryption exclusion - there are many predefined domains that seem...
Hi Team, We are getting below vulnerability in PA NGFW. Please find the error below, IP StatusQIDTitleTypeSeverityPortProtocolFQDNSSLCVE IDVendor ReferenceBugtraq IDCVSS BaseCVSS TemporalCVSS3 BaseCVSS3 TemporalThreatImpactSolutionExploitabilityAssociated MalwareResultsPCI VulnInstanceCategoryResult Errorshost scanned, found vuln34000TCP Sourc...
As in previous years I have gone to look for application-id to block NCAA March Madness access but am not seeing them yet and games start today
Hello,Currently we are using an application hosted in cloud (Azure) which is being accessed by LAN users only through a Site-to-Site IPSec tunnel.Now we want to give access of this Azure application to external users(they don't have LAN access).We want users to go through the firewall. Any suggestions on how can we achieve this.
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

