what is the destination IP or URL to download the image for Palo Alto?
Hi, we need to upgrade the palo, can anyone please advise what is the destination IP or URL for downloading the image for palo alto firewall? thanks in advance.
Hi, we need to upgrade the palo, can anyone please advise what is the destination IP or URL for downloading the image for palo alto firewall? thanks in advance.
Hi Team, I have an issue that, When the Global Protect App is installed on an IPhone / IPad. We are unable to Sign-In / Connect to VPN if the "Connect to On Demand" option is in Enable state. If we disable that option and then tried to Sign In / Connect the VPN we are able to connect. Just want to know the reason behind this why it is connecting...
Let's say I have an objected named "Pizza" with an ip of 10.10.10.10/32 and it is in use on a security rule.I create another object named "Pizza1" with an ip of 0.10.10.10/32 and use it in a different security rule. Could that create a problem with the first rule assuming different let's say destinations or APP-ID/Ports?
Hi All, I am trying to set-up Taxii output in Minemeld with Cisco ESA and I am receiving below error. The Warning message is: THREAT_FEEDS: Unable to fetch the observables from the source: CofenseTaxiiMinemeld after 3 failed attempts. Reason for failure: Taxii Error: [SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed (_ssl.c:590)...
I am trying to configure URL filtering on an internal SSL web host and having problems. I've found multiple videos and articles on both URL filtering and inbound SSL decryption but I cannot get it to work. I've taken a step back and am just trying to verify the SSL decryption is working. I have uploaded the SSL cert (PKCS12 format) no problem...
Hello, I have an active/passive PA220 cluster which unfortunately had a shutdown and now I want to find out what exactly the reason was.At Monitor -> System: HA Group 1: Dataplane is down: dataplane exit failureHA Group 1: Moved from state Active to state Non-Functional HA Group 1: HA heartbeat backup information has been used for HA state ch...
I am trying to integrate Minemeld with our Cicso FMC but no success. I have creaed a new object in FMC to pull IOCs details from Minemeld server but its not getting data. Need hlep here.
I am trying to determine why a PA500 firewall was rebooted...i ran this command: tail mp-log masterd.log and got the below. I couldn't find any references for the restart reasons. How do i know if there was a power outage? Thoughts? 2018-11-28 13:37:13.158 -0500 INFO: l3svc: received user restart2018-11-28 13:37:13.172 -0500 INFO: l3svc: User re...
I am having an Existing setup of cisco where all my ISP are terminated which is a standlalone device ,now migrating to PA 3220 with HA,but over here my ISP will be terminated on switch and from switch one cable to PA 3220 will be going...how do i migrate interfaces of all ISP(Approx 5) to Palo Alto(1).How do i do remap,in this case,will i need t...
Hi, can anyone please advise whether we can use Cisco console cable to connect to Palo firewall console port? Thanks in advance.
I am exporting a Custom Report to a CSV and want to make sure I don't miss any data. Scenario 1: I want to include a full day's logs in one file For October 1, 2020. Would I set the start time to midnight and the end time to 11:59 PM, or would I put the end time to October 2, 2020, at midnight?Scenario 2: I want all the data for the full 8 AM ho...
Running a PA220 with PANOS 10.0.1 Simple NAT/Security policy in place to permit an outside application access on X port. Traffic flows as expected, although randomly traffic goes unmatched and is dropped by the FW. Jiggling the handle by remapping the port from 80 back to 2075 with commits corrects the issue. TAC has reviewed the configuratio...
Does anyone come across issues when we are running Zapp and Global Protect client together on MAC.We have GlobalProtect with split tunnel mode and we are in phase of migrating to Zscaler solution. We deployed Zscaler with ZIA enabled to for set users and people started complaining about performance issues.After couple of tshoots we decided to lo...
Hi, the file t32.exe is considered as wildfire-virus Win32.WPCGeneric.cnp and blocked on the firewall.But when checking this file on Virustotal and eu.wildfire.paloaltonetworks.com/wildfire/ it is considered as benign. https://www.virustotal.com/gui/file/352df104254095ddf925514d99bfb5411c95b5386e90caf06557979f82e16844/detectionThe file is part o...
I cannot find a way to configure the IPSec tunnel encapsulation to use Transport Mode versus Tunnel Mode in either the GUI or CLI ... anyone have insight into this?
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

