Resolved! Paloalto firewall bgp local rib
Hi,In plaolto bgp routing table, Local rib is showing the same subnet asprefix flag nexthop172.16.50.0/24 = 172.16.1.9172.16.50.0/24 * 172.16.1.5 what does this "=" means?
Hi,In plaolto bgp routing table, Local rib is showing the same subnet asprefix flag nexthop172.16.50.0/24 = 172.16.1.9172.16.50.0/24 * 172.16.1.5 what does this "=" means?
Hi Team As we could not able to find out the below vulnerability which is found on below model during penetration testing So , Please help us to find out the details for this vulnerability and let us know if any workaround is there or not. CVE-ID-2020-7676 Anyone got the similar vulnerability ? RegardsMohammed Asik
Hi everybody, Does anyone knows if it's required by Paloalto that the identification data fields during ike setup be encoded with utf8string? Or is there an incompatibility in Paloalto if these fields are encoded with printablesting? The other end is not a Paloalto, if we use pre-shared keys it works fine.If I load the certificate from the other...
Hello all,I am looking for firwall hardening rules auding. what should be in consideration and i have only GUI view privilege's.Regards
Hi, I have migrated the Cisco ASA firewall backup to PA NGFW.After importing the backup, the validation error showing the interface is already in use. can anybody, help me how to resolve this issue.
Hello Everyone,We have configured LACP between paloalto and cisco switch and Aggregate Interface is showing up at both end but at peer switch its mac address not showing. However physical port of other interface mac address is showing on that switch. Please suggest what is next plan of action. model: PA-5220sw-version: 9.0.5
Hey All,we have Antivirus policy in place and we are seeing many, what we believe are, false positives. Mostly on PDF files. Since number is rather high, reporting each one seems a bit excessive. What they all have in common is their severity which is MEDIUM.With that said, our approach would be to deny only HIGH and CRITICAL severity event and ...
Hi Team In Palo alto firewall whatever the time based policies is going to expire for that we want to configure the mail alerts or reports for example if any rule is going to expire on date of 24 October we should get report or mail alert of those rules by today (2 days before) , how we can achieve this?Is it possible in palo alto ? RegardsMoham...
The network I inherited has a Cisco ASA and a PAN 3220 operating asa virtual wire in serial. The NATs and most of the ACLs are at the ASAwhile the PAN takes care of other protections such as geo blocking, correlation alerting and so on.{Internet}--[Edge RTR]--[ASA]--[PAN]--[L3 Switch] I was hoping to put in another pair of PANs into our cage. Bu...
Hi Has anyone setup a palo fw on a BT Net no router option (wires only) connecting directly to their network? Thanks
HI, I have IPsec vpn tunnel between Palo alto to cisco asa, tunnel is UP however it disconnect intermittently. Is there any way to check reason behind disconnection in logs? I have applied path monitoring but it show only UP and down logs not exact cause. ThanksDhananjay Bhakte
Notification emails that I normally get from the Live community are failing DMARC checks which is causing them to be quarantined. Their DKIM appears to be invalid and SPF is also failing. This has been happening for probably a week or so. I've been unsuccessful in reaching anyone at Palo Alto to get this resolved. If anyone here is able to a...
This is probably a stupid question, but if I just create another Layer-3 sub-interface off of an existing physically connected interface, and TAG that sub interface, that is all I need to do to bring a tagged trunk in through an existing physical connection right? Excluding, zones, virtual routers, policies, and all that other stuff, but the con...
Hello, Can the values obtained by the command "show system statistics session 'be obtained by SNMP?Mainly I need the total throughput and packet rate.Thanks
Hi all, I have followed on the KB (https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CmqFCAS) but still no luck to fix the issue. service route is using default and certificate Profile is using Root CA as well 2020-10-22 23:12:22.932 +0700 EDLRefresh job started processing. Dequeue time=2020/10/22 23:12:22 2020-10-22 2...
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

