Resolved! Firewall cache for EDLs
Hello Community, I was searching how long can the firewall have cached the EDLs if the firewall lost connectivity to the server where I host the txt file but I dind't find anything. Any clues?Thanks a lot.
Hello Community, I was searching how long can the firewall have cached the EDLs if the firewall lost connectivity to the server where I host the txt file but I dind't find anything. Any clues?Thanks a lot.
Hi All, Can I monitor my Virtual Systems on Solarwinds - SNMP and Ping? They are configured with shared aggregated interfaces and not indivdual physical interfaces. I am monitoring the device itself but would like visibility of the individual virtual systems. I read an older post that only physical interfaces could be monitored but not sure if t...
Here's what I need:Employees using the global protect client, and vendors logging into clientless vpn and getting the apps I assign them.I do not want any vendor to be able to access the vpn client. Here's where I am:I have a GP portal and gateway assigned to the outside interface. Remote access (employees) authenticates to radius server (ACS) a...
below we have setup https://snag.gy/3kRV8C.jpg Where switches and routers are running ospf.PA has static route to the VRRP IP of the switch. 1>>Need to know is this good design to have the VRRP backup router connected to the PA active switch? 2>>Also yesterday when we reboot the router 1 during that time we lost the internet connec...
I have a PA-VM-300 running 8.1.3. On the DEVICE> Management tab, I do not have the "Management Interface Settings" widget. The person who set this up, is no longer here. Is this a widget that is specified somewhere, or is it perhaps missing for some other reason? Thanks!
Under group mappings of LDAP i have so many AD groups. But when i run below command show user group listTotal: 11* : Custom Group IT does not show me any group names from AD?what is the reason for that? Also what is difference between Custom group and AD groups in LDAP?
Customer has authentication policy with web-form as authentication profile and 60 minutes timeout.Captive Portal has both timers at 60 minutes and uses Session Cookies with 60 minutes timeout. However if a user hits refresh for the authenticated (https) session less than 60 minutes after succesful authentication he gets prompted to re-authentica...
Hi All, I have configured Global Protect and I can successfully connect. My Palo Altos are configured to peer and route via BGP which is working without issue. My problem is I cannot reach anything once I am connected. I need at access two address ranges. From the CLI of the Palo I can ping the gateways of the networks I need to reach via the Gl...
The Gateway/Portal of my setup works fine.It's routing I think that's not working. I just want a client over GP to hit local networks off the PANOS. IP Pool and access routes that been defined, work just fine .. I can see client has been bestowed these when it connects.. What's the basic setup from a routing perspective ?- I set up a tunnel.## ...
Hello, We are using PANOS 8.1.7 and GP 4.1.8. We have multi Vsys and one of our VSYS administrator account cannot access GP protect agent split tunnel setup. It is greyed out.Is this an account limit or something wrong?
Hi,How much RAM does a PA-5250 have? And which threshold value should be defined for alarming in SNMP Monitoring?And what other oid make sense to monitor and which hreshold value? e.g. count of Sessions: Data Sheet 8.000.000, but what would be a appropriate threshold value? Thanks a lot Robert
Hey GuysWe have noticed a weird behaviour:When I do a telnet to IP 1.1.1.1 Port 445 on our Terminal Server with the TS Agent installed, the associated Port Range will be used as expected and the source user-id will be mapped.But when we do a net use in the same CMD window, it won't associate it with the expected port range but with a higher, not...
Currently we have Single Management Interface on 2 M500 acting as Management InterfaceLog collectionLC Communication. From Panorama M100 we have single interface doing all the above functions. Need to know what are steps in order to separte the interfaces on M500 for log collection and collector communication
Is ther any way to change the name of all existing security policies from the cli at once?
We're using the GlobalProtect Windows client application to connect to a customer’s VPN. We’d like to automate this process, as right now our only way to connect is to click on the tray icon ‘Connect’ option. Is it posible to automate (e.g. via command line) the process to connect/disconnect into our customer’s GlobalProtect system? TIA
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

