PA-220 advertising BGP routes
Hi everyone, hope you're well. I hope somebody can help with this. I'm looking to introduce a local Internet breakout, by installing a Palo Alto 220 firewall, as the site has been reporting slow Internet recently.
Hi everyone, hope you're well. I hope somebody can help with this. I'm looking to introduce a local Internet breakout, by installing a Palo Alto 220 firewall, as the site has been reporting slow Internet recently.
WildFire looks like this on the Palo: But if I click on it to change it, it has a template setting: I took a look at the Stack and the one at the top has the correct setting, the one at the bottom is set to none. So that should be right, any idea why this is happening? I've refreshed and within Panorama everything says "In Sync".
In Palo Alto v8.19, they added functionality to prune multiple weak key exchange algo in one line: (https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-release-notes/pan-os-8-1-addressed-issues/pan-os-8-1-19-addressed-issues.html) I followed the guide here (https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-cli-quick-start/get-started-with-the-...
Hey All; I had a weird error this morning with Panorama, "Unauthorized Request" Login and Logout and it still does it. This was when editing the LDAP settings on version 5.0.2 on the hardware version. Anyone have the same thing?
Hello all, I have created a custom URL category for a site and have a security policy to allow specific applications to that category but the results are inconsistent and when I review the log, when the traffic was successful the URL Category shows as the custom category and whenever it fails, it shows the URL category as a default PAN category...
Hello to All, I wanted to share what I know with thee comunity. First in many cases for faulty and not supported SFP the option "show system state filter sys.sx.px.phy" is used (for more info https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClaMCAS ). If you don't see the manufacturer information check the article https:...
Hello, The below doc describes there are client OS list what PA can support for global protect. https://www.paloaltonetworks.com/documentation/60/globalprotect/global_protect_6-0/globalprotect-overview/what-client-os-versions-are-supported-with-globalprotect.html But there is no information about windows server list. Can Global Protect sup...
Hello to everyone,I'm a radiologist working in Spain. I use Global Protect to access the hospital network from home, since we are working from home in this period to avoid coronavirus exposition.Since I have Global Protect installed in my laptop, it happens often (around 10 times per day or more) that the processPanGpHip.exe start using a lot of...
Hello all , Having issues with some users where they have mapped drives but after they connect to global protect they don't work. If they unmap and they map again it works .When doesn't work after connecting to globalprotect if they ping the IP of the server that they have the mapped drive it works but SMB it doesn't . We have on-demand globalp...
Hi Community, We went from 9.1 to 10.0 on Panorama and recently did an Expedition merge (latest version) with an ASA.Since then, a few objects which are unreferenced in global-find, are unable to be deleted.When checking panorama running config, I noticed, that a group-name is duplicate in the shared section, with different object ID's:Manually ...
We are trying to get a report of threats and export as PDF. I used “Managed PDF summary reports” but it is allowing only to pull per day. I used custom reports and I can pull reports for 30 days, but it is much like raw data. We need something like below to present to customer. Please help.
There is github POC for openssl CVE-2021-3449.is there any information or security advisory about it? thanks
How do you query the list of configured devices groups using the Panorama REST API?
Hi All, We have four tunnels(tunnel 1, tunnel 2, tunnel 3 and tunnel 4) configured to reach the AWS Network through BGP on an single default virtual router on the firewall and all the tunnels are up. There are three ISP in total connected to the default router and Balanced round robin method is enabled on the firewall to pass the traffic. The Tu...
On a Palo Alto is there a way to take a packet capture on a specified interface and simply see everything as is on the wire? For example on a Check Point I can do a tcp dump on a specified interface and the interface is basically put into promiscuous mode and I see traffic after firewall, after NAT, etc. On my Palo's it seems I have to pick a s...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 3 |

