General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Can we configure pbf in shared gateway ?

We have configured two ISP link in Shared gateway (sg)ISP 1 : sg1ISP 2 : sg2 All LAN subnets are different Vsys. For internet access we are using shared gateway for all Vsys.We have configured pbf rule in each Vsys for accessing internet over ISP 2 , but not working. We followed below article , but its for Multi-vsys where lan and WAN using diff...

Deepak_K by L3 Networker
  • 3174 Views
  • 3 replies
  • 0 Likes

Resolved! PA-220 Throughput Explanation

Can someone please tell me the maximum Upload/Download speed in megabits per second for a PA-220 with app-id and all threat prevention/ips features enabled along with an ipsec tunnel? The data sheet is a little confusing and I understand that it bases the specs from 64k packets but I don't know if this had 150 up 150 down or 50 up 50 down. Can s...

Resolved! Concurrent users of Palo Alto 3020 SSL VPN

Hello, I need to know how many concurrent users the Palo Alto PA-3020 device can support. I know what has capacity for 1000 VPN tunnels (Ipsec, SSL, ETC), and I understand that the PA 3220 supports 200 concurrent SSL VPNs, but how many concurrent users can the PA 3020 support? This is my doubt. The information is appreciated.

Lcarocas by L0 Member
  • 4206 Views
  • 1 replies
  • 0 Likes

Changes to GP Gateway IP Pool

Hello,Any idea if following 2 changes to GP Gateway IP Pool will affect the current sessions? 1) Expand the current pool from /24 to /222) Adding new pool entry

jkansal by L0 Member
  • 3199 Views
  • 2 replies
  • 0 Likes

ha_nat_policy_mismatch counter

Hi Everyone, What exactly does the below counter indicate and what would trigger it? ha_nat_policy_mismatchI have added L3 interfaces to an existing A/A HA cluster that uses vwire interfaces in an asymmetrical traffic environment. The traffic on those vwire interfaces are being handled correctly by the A/A. The new L3 interfaces are setup in a s...

ha_nat_policy_mismatch.png
ABurger by L0 Member
  • 3061 Views
  • 1 replies
  • 0 Likes

Bulk update of objects

I have a requirement to update the 100s of /32 address objects which do not have a CIDR. Does anyone know of a script or other means to do a bulk update of the addresses to append CIDR?

Resolved! i2c bootup errors (PA200)

A friend of mine found a PA200 at a thrift store for $5.00 (without a power supply) I plugged it in today to see what state it was in and it looks like it had a rough life... All the guts are still inside and everything is clean and connected however it won't even get to the initial bootup MAINT prompt, anyone seen this before? Sometimes I get ...

IMG_20200310_201325.jpg
hshawn by L4 Transporter
  • 5342 Views
  • 3 replies
  • 0 Likes

Global Protect won't connect to Iphone MAC

Hello All, We have Global Protect License for mobile we upgraded recently to 5.0.8 and i see my iphones will not connect.did any one face this issue ? Works fine with windows and desktops only with iphone i face the similar issue.Any help will be much appreciated.

MilanP by L0 Member
  • 4022 Views
  • 3 replies
  • 0 Likes

Resolved! Zone Protection on GlobalProtect Zone

Dear Team, I have a question do you recommend putting Zone protection on the Zone which I have for GP. I am using loopback External IP for the connection and in the GP Zone I have added the tunnel interface. Just want to understand if best practice to put zone protection on this zone? Thanks

umar00o by L2 Linker
  • 4741 Views
  • 2 replies
  • 0 Likes

Resolved! VM-100 Deployment on ESXi

Hey, so I've been working with PaloAlto technology for a couple of months now. I'm trying to set a lab environment to continue practicing for my PCNSE. However I am having some trouble figuring out the setup (specifically when it comes to the VMWare configuration). I'm working on vSphere using ESXi. I have a virtual Ubuntu Host and a VM-100 depl...

  • 24381 Posts
  • 123 Subscriptions
Top Solution Authors
Top Liked Authors
Labels