Suspicious DNS Query (generic:contador.hotelarena.top)
Boa tarde pessoal, estou com comportamento estranho em meu Firewall.notamos muitas requisições do meu servidor de dns interno para o dns externo com " type spyware " Verifiquem o anexo.
Boa tarde pessoal, estou com comportamento estranho em meu Firewall.notamos muitas requisições do meu servidor de dns interno para o dns externo com " type spyware " Verifiquem o anexo.
Hi, I am using Palo Alto (PA) firewalls hosting Software Version: 8.1.17 in AWS and need to configure Geo-Blocking so that only GB (United Kingdom) requests are permitted and all other requests denied. The infrastructure setup is as follows:FQDN => Internet Load Balancer => Palo Alto => Internal Load Balancer => EC2 instance I have ...
Hi Experts, I’m testing with Splunk but, I got a problem about deduplicate. I’ve been input different 1000 indicators of IPv4 after deduplicate, there is 750 indicators of IPv4. below one IP address has a different value but, after deduplicate, I can see only one indicator. My expectation is that don’t deduplicate or there is multi value for t...
Hi all, I'll preface this as I'm the sole networking guy at my job and I'm still green. Apologies for any dumb questions, I've tried to read the manual for relevant info and used my google-fu to no avail. I'm using a PA-3020 on firmware 8.0.6. I've been asked to integrate a new Cisco ASA for a financial system that allows a tunnel between my sit...
Hello, After upgrading to 8.1.X > 9.0.X > 9.1.x. we found that some ldap users do not check per user policies, only for ip politicies. The firewall has no user-id configured, only tree server ldap. we check that the firewall recognizes the Ldap tree. Is there any issue of incompatibility with the version? Thanks.
I want to create a PBF Policy in order to route traffic from one zone/interface destined for the Internet to a transparent intercepting squid proxy in another zone/behind another interface. Using a destination nat policy seems to work, but some other problem occurs and I was advised to try a PBF. The PBF is defined as follows:Source:Type: Interf...
Hello,On Device>Certificate Management>Certificates - I have a IntermediateCert, under the RootCert, that is expiring. I can easily renew it, (It's self signed), but I'm trying to understand what its being used for. I haven't found any information that easily explains it, (just basically how to install, renew, etc).How can I find out what ...
Hi,I am planning to deploy Panorama server to manage 4 FW on main site and DR site with Panorama server installed on the main site in panorama mode. I wanted to know if we can access and configure the FWs in the event of a communication failure or virtualisation environment failure or maintenance. It is not clear in the documentation. Can anyone...
The 20G link for HA2 between the two PA-5220 firewalls (Active-Passive cluster) does not work correctly. It is a direct link using single-mode fiber and 10G-LR optics with a length of approximately 550 meters.After restarting any of the two firewalls, the HA2 link does not raise (in the Down state). We only managed to lift it after disconnecting...
I am trying to setup one prototype where it's condition will accept indicators with share levels of both green AND amber. I don't want to create a seperate prototype for every share level combination of color and confidence.. I would like to just say "if the confidence is >75 AND share level is either green or amber, then accept the indicat...
Anyone else experiencing issues with Outlook 2016 being unable to open while on GlobalProtect? We have sporadic windows 10 pc's with this problem and all windows 7 pc's have this issue. When we disable GlobalProtect and start Pulse Secure (our legacy VPN agent), Outlook opens right up and connects. We have a ticket open, but I'm guessing TAC ...
I'm trying to complete a cisco ASA to Palo Alto migration but Expedition seems to hang during the generation of the xml output. I've restarted jobs and task manger multiple times as well as updating Expedition and rebooting the vm itself. Below is the output from the "cat /tmp/error" command via cli.expedition@Expedition:~$ cat /tmp/errorNotice:...
I have an issue that seems to only be affecting one user. They seemingly randomly get the block page when doing a google search. Looking at logs most searches are allowed but then I will see the occasional block-url. I think I have narrowed it down to when chrome is opened the first search fails. Searching after that works ok. If I open a new ch...
Hi Everyone, We are experiencing an issue with some of our Windows 10 laptops where if the user connects before the pre-logon tunnel establishes at the Windows logon screen, then they are presented with a Global Protect error saying 'VPN Connection could not be established' once the desktop loads. I have checked the system logs during this proce...
Hi all, We are facing issue with global protect client 4.1.12-3After windows 10 update 1909 patch. Not able to connect to any gateway.It not getting any error. After entering credentials in global protect page page is disappearing. Please help. Anyone
| User | Likes Count |
|---|---|
| 6 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

