Auto TAG - XFF IP
Is there a way to auto TAG - XFF ip's in log forwarding profile
Is there a way to auto TAG - XFF ip's in log forwarding profile
Hello, I am facing an issue with my firewall. it is very slow in the GUI as well as CLI. if i click any tab in the firewall it is taking too much time to refresh and loading the page. firewall model - PA-500PAN-OS version - 8.1.15 below i check from my side:- pa500> show system disk-spaceFilesystem Size Used Avail Use% Mounted on/dev/sda3 3.8...
As observed, when primary panorama was active, I have created an Test address object and committed and pushed from panorama. Configuration committed and pushed within 2 to 3 minutes.After making secondary panorama as an active, configuration was committed after longer time period around 12 to 15 minutes.As observed on both primary and secondary ...
Hi guys, What is the reason? A brand new firewall from the factory, we give it a management ip-address and panorama server address, we import the firewall config to Panorama and commit to Panorama. We then change the network and device templates so that we the ethernet1/1 and 1/2 become layer 3. When we try to push this config to the firewall it...
Hi Community, I am trying to parse the threat log from Palo alto. I can see the 'number-of-severity' in the custom Syslog log format. I am looking for an official document to map these numbers to the severity level.I can see the below,4- indicate high level,3 - indicate medium.Anybody has any official documents on this. Thanks in advance!.
Hello, we are looking for test version of a Palo Alto firewall. Is this available?30 days would be sufficient.Appreciate any helpful answer. best regards,Roland
Two aws Pano's in Panorama mode. Primary(active) Panorama doesn't see the collector that is the Secondary/Passive Panorama as being available to add to the collector group. Drop down is blank. Walk through the same steps on the Secondary/Passive node and it sees its local disk as available to add. Which of course you cant because its the passiv...
I'm finding we can use the api to register IPs to Tags on panorama no problem. I can view that they are registered on Panorama. However, Panorama is not pushing these mappings to the managed firewalls. I'm matching on name and I'm using the dynamic group in a policy on that firewall. What actually kicks panorama to push a registered IP...
Hi Team, Just need to check if anybody faced the below issue in PanOS 10.0.xI am trying to create a dynamic user group with HIP log by following settings,1- created one Tag2- Configured log settings for HIP log for build in action tagging the source user with the tag created before3- created a dynamic group with the above tag as match criteria. ...
I'm wondering if the validation process is checking the change against the running config and not taking into account the Interface IP change in the candidate config while doing the validation. I am trying to make a change to both the IP address of the outside interface and the associated default static routeWhen a validate commit I get the foll...
So I guess I'm just curious what the overall opinion of multiple people is regarding decryption and how well they take into account local laws, etc.I get decrypting traffic can be a major step up in security and basically unlocks a lot of potential in a shiny expensive new firewall. however there's always of course some debate.so baseline:I live...
On the device group panorama setting added wrong template. Now, while changing the device group name the commit is failing. Need to know how to resolve this issue. Because of this wrongly configured after committing the configuration unit 1 configuration is pushing to unit 2 and unit 1 configuration pushing to unit 2., both firewalls are ind...
Hi all, Can we block upload or download files based on the size.? with regards, Ram.
As per VAPT done at our firewall found below vulnerability :Please suggest any solution =====================================================================================Local Checks Not Enabled (info)Local checks were not enabled.Scanner did not enable local checks on the remote host. This does not necessarily indicate a problem with the...
Hi All, Good day!I'm trying to block malicious attack on our server but no luck. Please see below attack i encountered on server. I've already create a policy for that attacked. I already set security profile for that specific servers.Also i already install the latest dynamics updates. I hope you can help me on my problem. Thanks in advance. Tha...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

