Feature request: Log Nat Rule in traffic log
I think the subject says it all, if a session is processed via nat, log which nat rule was used.
I think the subject says it all, if a session is processed via nat, log which nat rule was used.
Hi guys, According to this document, at the bottom, it states that SMTP authentication is currently not supported. This was in 2014, so does anyone know if this is still not supported? https://live.paloaltonetworks.com/t5/Learning-Articles/How-to-Send-a-Test-Email-to-Verify-Email-Profile-Settings/ta-p/60956 Cheers Jack
I have set up a GlobalProtect gateway in Panorama (software version 9.0.0.0) and configured it for split tunnel, however the configuration is not applying to the firewall (PA850 - software version 8.1.6)
Hello, expert of everyoneI'm using PA-3220Pan-OS is 8.1239 objects registered in service group AI want to allow service group A in the security policyCan I specify service group A with a one-line policy?I think you can add up to 1000 objects to a policy groupWill I get an error if I create it with a one-line policy?Can you tell meThank you 日本語~...
I currently have a family property that consists of 3 adjoining properties and structures, we retain a private home server network and are looking to protect it utilizing Palo Alto Virtual Appliance, but are being told in order to do so we must be a corporate entity to obtain PA-VM licensing, does anyone have any advice on this matter or an alte...
We have a 3020 firewall with version 8.0.10 and need to allow a new server access to resources in other zones. An existing server, 10.100.100.10 already has this access, so I need to mimic the access of this server. In Objects\Addresses there is an entry for 10.100.100.10 with the name Server1.In Objects\Address Groups there are a couple of grou...
How can I effectively block shortened links on firewall? I can't figure a wildcard url format for them. Please advise.
We have our in house mail server which is behind the Palo Alto, all incoming and outgoing email traffic go through it. Can we analyze the email traffic and get following information? SenderRecipient Attachment File nameAttachment File TypeEmail SubjectEmail body / content
Hi, When I configure HA for data link I use Ethernet when devices are directly connected to each other, but sometimes in the field I see people using IP for transport but the devices are directly connected to each other. Why are they doing this? There is no reason to do it unless it needs to route. Can someone help me understand there logic? Thanks
October 1st is Customer Experience (CX) Day, and Palo Alto Networks is celebrating you, our customer! Join us in this celebration. Tells us: - What great customer experience means to you. OR - About a LIVEcommunity member or Palo Alto Networks employee you think delivers fantastic customer experience! Use the hashtag #CXDAY2019 with your...
Hii have a problem. i have configured vpn ikev2 ipsec. When test vpn with CLI command( test vpn ipsec tunnel [name]) vpn gets up. But when other side try to connect, vpn do not get up.Also when i check system logs this logs appears:'IKE phase-1 negotiation is failed. Couldn\'t find configuration for IKE phase-1 request for peer IP x.x.x.x[500].'
I'm trying to get pxe boot to work through the firewall. Now options 66 and 67 are available in palos dhcp server but I can't get it to work anyway. Besdies normal dhcp options I've setup option 66 with IP and ip-address and option 67 with ASCII and \path\bootfile I have a sec pol with any any to the sccm server. All I can see is tftp traffi...
Hello Team, Kindly inform what is the information contains in md2 partition?Also inform the threshold for each partition. RegardsKarthikeyan
Curious if anyone has Meraki and a PAN setup. We are trying to to link our remote sites to the data center. At the remotes the meraki is the router then in the data center we have the meraki behind the the PA. We can establish a VPN tunnel and ping internal devices, but it is really slow. For example logons to workstations take forever, and ...
I have a Pa220 and its using DHCP for untrust interface. I have followed about 40 documents and knowledgebases and still have no success with connecting my iphone to the palo via global protect. I am using self generated cert. I have collected the logs from the GP client but, I do not know what I am looking for to see what the issue is.
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 3 |

