General Topics
cancel
Showing results for 
Search instead for 
Did you mean: 
General Topics

Discussions

Join Us for a Tech Deep Dive Miniseries!

 

Stop Zero-Day Threats in Zero Time with Nebula PAN-OS 10.2.

 

Join us live for an in-depth look at the latest advancements in cybersecurity, best practices, tips and tricks, demos and
more to protect your business and defend against threats in real

...

nebula-on-demand-tech-deep-dive-miniseries-live-community-banner-2600x600.jpg
jforsythe by Community Team Member
  • 465 Views
  • 3 replies
  • 1 Likes

Adding a Proxy ID member to IPSec Tunnel

I added a single host to an existing tunnel. Does the phase 1 portion of the tunnel need to be restarted to take effect? After I added the new proxy-id 39 - if I run show vpn flow - I see that portion of the tunnel is in "init" phase while all others

...

palomed by L3 Networker
  • 828 Views
  • 2 replies
  • 0 Likes

Resolved! Differentiate GP portal login(not client login) vs MGMT login

Has anyone run across issues where Radius server is having difficulty in identifying if it's a management login vs GP portal login. 

We are having a hard time to identify the difference, when we use Clear pass as our radius server. 

 

Little Background:

...

SuryaR by L3 Networker
  • 1810 Views
  • 6 replies
  • 0 Likes

Resolved! Unable to downgrade PA 5220 to 7.1.x series

Dear All, 

 

When I tried to downgrade the firmware version to 7.1.x in 5220 with 5000 series os, It throws an error and from the software upgrade column, I don't see 7.1.x populated in the list. 

 

Could you please let me know whether PA 5220 supports 7

...

Meruva by L0 Member
  • 1091 Views
  • 4 replies
  • 0 Likes

Upgrade secondary PA

i have done this in the past to save time but I was interesting in hearing what the community has to say about and if anyone else has done this

I usually upgrade my secondary PA the afternoon before I do the primary ithe next morning and they are in a

...

jdprovine by L4 Transporter
  • 1430 Views
  • 10 replies
  • 0 Likes

Resolved! High DataPlane CPU at PanOS 7.1.9

Hi everybody

 

I have upgraded a Pa-3050 from 7.1.8 to 7.1.9, all seems to be OK but the DataPlane CPU is above 90%

 

Management CPU 16%
Data Plane CPU 95%
Session Count 37023 / 524286

 

I noticied if the session count is lower, the CPU also decrease , but t

...

SOC_CSG by L4 Transporter
  • 4258 Views
  • 8 replies
  • 0 Likes

DNS Sinkhole and Honeypot to Record URLs accessed

We've set up DNS sinkhole and it works as expected. We're able to find out which IP addresses tried to access malious sites. However, we won't be able to see the URLs these IPs were trying to access. We're thinking of building a honeypot (or maybe so

...

Resolved! 8.x UserID Agent - Two installers

Why does the 8.x user agent install have two different installers. Can somebody explain the purpose of the two?

 

In the case of the latest version I see:

 

UaCredInstall64-8.0.2-20.msi
UaInstall-8.0.2-20.msi

 

Thanks!

 

 

bbilut by L3 Networker
  • 3101 Views
  • 1 replies
  • 1 Likes

PA-200 and PANOS Version 8

Hello everyone, 

 

A few days ago I was testing version 8 with a few PA-200s that we have in our lab, tested new features mostly with user credential Submission.  I found that the performance of the devices were impacted (Data Plane CPU was around 70%-

...

Resolved! DUO MFA Issues

I am trying to test the DUO MFA and have followed the instructions in the youtube video, and in the admin guide. I can reach the https site under normal circumstances and I can see traffic in the traffic logs. As soon as I enable the authentication p

...

PF by L1 Bithead
  • 1091 Views
  • 1 replies
  • 0 Likes

Resolved! HA pair App and Threat sync to peer question.

Hi All,

 

Apps and threats on the currently active box are set to download and install, on the passive to download only.  Active box received and installed new updates. Will that automatically be synced to the passive? If we have a revert scenario wher

...

Sophos Install & Updates From DMZ

Anyone create a policy allowing a Sophos AV install and then Updates form a DMZ? I have created such a policy but still seems to be an issue.

 

The security policy has all the source and destination zones and the destination host are any.

 

I am then all

...

Top Liked Authors