Change keyboard language in Palo Alto CLI
Hello there! How can I change the keyboard language in the Palo Alto CLI?Is it possible to access linux mode within the Palo Alto CLI? Thanks!
Hello there! How can I change the keyboard language in the Palo Alto CLI?Is it possible to access linux mode within the Palo Alto CLI? Thanks!
Hi I was just checking out my VMWare vm setup for my Panorama VM. and it has 2 interfaces on it. how does that match up to the setup interfaces page so 1 is management and 1 is eth1 ? how can i tell and why have 2 ?
As the title my question in my mind is relatively straight forward.. when a globalprotect client sucesffuly makes a vpn connection... is there any local profile settings saved to a file on the pc / mac? If so, where are these logs saved / folder path? On Macos...On Windows...
Need to know why CLI and GUI show this behaviour?
Hi All, I have configured some security policies and service objects on my lab environment which consists of VM-100 Firewall for ESXi running PAN OS 8.1.0. Can I export my settings to production environment which consists of 8 ESXi hosts, Panorama and VM-500 for NSX per host. Would I be able to export securuty policies from VM-100 for ESXi to Pa...
Hi All, I configured the implicit deny (Universal Policy) policy at the bottom of security policies but after that, I could see that some of the Intrazone access got denied by the implicitly deny policy. How we can achieve the Implicit deny policy without affecting the intrazone connections ?? Thanks in Advance...
We have server reachable via Public IP say on port 13001 and 13002 We have Security rule Source any Zone outside Destination 173.82.x.x IP of server Zone inside port 13001 Here i have not included the port 13002. I have correct NAT policy for this. When i see traffic logs i see Source any destination server public ip address port 13002 a...
Hello, We need to migrate multiple firewall clusters to Panorama. I read the guides but there are still some questions about objects and IP addresses, certificates, etc... Once I have migrated one cluster, what about the other ones if they have some objects with the same IP addresses (local networks, DMZ, etc..). Will they be imported ? Do I nee...
Hi There, I will be greatful if anyone can please help me to understand the below which is taken from https://docs.paloaltonetworks.com/pan-os/7-1/pan-os-admin/high-availability/session-owner.html "You configure the session owner of sessions to be either the firewall that receives the First Packet of a new session from the end host or the fire...
We have a requirement to configure OSPF & multicast in a sub-interface of Palo Alto for one of our customers. I would like to understand how it would impact the CPU, memory and throughput and the guidelines and best practices to be followed while configuring OSPF. A comparison against having static routes vs processing OSPF routes. Please su...
I have a pair of 5220s configured with HA1, HA1 Backup, HA2, and HA2 Backup links in use. All HA links show to be up and running. I have left all of the other knobs for tuning link and path monitoring off, taking all of the defaults. No preemption, etc. I am running in an Active/Passive configuration. When I disconnect HA1 and HA1 Backup, at n...
Hey all,I've just updated the global protect version to 4.1.8In the docs, it says that the client supports linux.I've followed that doc:https://docs.paloaltonetworks.com/globalprotect/4-1/globalprotect-app-user-guide/globalprotect-app-for-linux/download-and-install-the-globalprotect-app-for-linux#It says I should download the package "PanGPLinux...
I am currently looking to upgrade my HA pair of 3050s from 7.1.10 to 8.1.6 and per Palo Alto's best practices guide, it is recommended to upgrade to the latest maintenance release prior going to the next major one. As it stands per that best practice guide, I would be to going to 7.1.22, 8.0, 8.0.16, 8.1, 8.1.6 and I am wondering if anyone has d...
Hi there! Has anybody had the chance to play with PAN OS 8.1.5 yet in Production? Are there any noticable issues? I've been locked into this killchain of bugs ever since we made the leap to 8.1.0, and I'm just wondering if this build will be the "stable" release.
Hello, I'm trying to configure double NAT rule (SNAT + DNAT) using Panorama 8.1.4 managing PA 5220 devices running PanOS 8.0.14. I can valid / commit configuration on Panorama, but when pushing config to devices I get following error message : vsys -> vsys4 -> rulebase -> nat -> rules -> Exchange-vers-SMTP -> dynamic-destinatio...
| Subject | Likes |
|---|---|
| 4 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like | |
| 1 Like |
| User | Likes Count |
|---|---|
| 4 | |
| 3 | |
| 2 | |
| 2 | |
| 2 |

