ACL in PaloAlto PA-5220 Firewall
What is the CLI command to view ACLs in PaloAlto PA-5220 Firewall?
What is the CLI command to view ACLs in PaloAlto PA-5220 Firewall?
Hi All, I setup PN VM 7.1.0, my vmworkstation is pro 12.5.2. I bVMnet11 bridge my wire network card.I set 192.168.200.98 for the management interface of the PA VMNext I set IP, zone and default gateway for ethernet 1/1 Afther that, I am having problems. The default gateway can ping the IP of ethernet 1/1 of the PA VM ping 10.12.172.230Type escap...
I couldn't determine the correct place to discuss this topic, so please forgive me if I have improperly located it. I need to know if there is a way to import the XML config file into a MS-SQL database. One of the challengs of auditing a firewall is not only to know which rules have been used or not, but also to know what objects within a rule...
Currently running PAN-OS-8.1.0. I am unable to access a site even after removing the filtering and all i see the logs is an incompelete application. Kindly provide your suggestions
How are you guys managing the "runas" command alongside user-id. In our test environment, I'm finding with the user-id windows agent, you get the last login event from the domain controller, with the new "runas" user. Once that times out- no more internet access to the original user, unless you generate an authentication event to the domain co...
Is it possible for each vsys to use a different HA port?
With a pair of 5220s, how does one set up HA2 on a port that is not HSCI, for an Active-Passive HA environment? When I go to configure HA2, either with the GUI or CLI, the only interface I can choose is the HSCI port. But I do not have the quad transceivers, nor do I yet require the use of the HSCI bandwidth capabilities. Here is what the CLI...
Hello, We setup a inbound NAT to direct port 443 to a server on-site on 10.x.x.x and it all worked fine and fast - then it turned out we needed to adjust it to port 4443 as the customer was using port 443 for inbound client VPN connections of course. Anyway, after I adjusted the NAT inbound for this one rule (a simple change of 443 to 4443) - th...
Hello, everybody! I have a problem with a URL that is being blocked despite being explicitly allowed in the white list. I have seen the traffic logs and for that destination IP address (i.e. a website on the internet) I see that Application is "incomplete" and the Flag 0x400019. What does this flag mean? I only know the usual flags as listed in ...
Afternoon Firstly I want to say I really like this product, it has endless possibilities in improving internal security in our environment. I have a few questions I hope you can help me clarify so I understand how to use the product better. I am using a syslog miner to send syslog TRAFFIC and THREAT data to Mine Meld from my Paloalto firewal...
Hi all,Since upgrading Panorama to V8 I can no longer seem to find how to preview changes which will be pushed to managed devices.I can preview changes to Panorama and 'validate' pushed configs, but that's not the same thing.Any ideas?Thanks very much.
I have 4 subnets in trust which i would like to restrict bandwidth usage to 50mb.PA3020 Panos- 8.0.12.
We are looking at internal only with no tunnel for global protect for user-id. Is there a way to autopopulate the portal address so a user would only have to enter credentials and not enter portal address manually? Looking to push this out, and thinking users may not be aware/know of that portal address.
We've configured HA Active\Passive on a pair of 5250's running PAN-OS 8.1.5 and it works a treat and pre-emption also works as expected. I've configured Link monitoring so if we get an HA failure if the trusted links fail which works and it fails over to the passive as expected but when the links come back it doesn't fail back again to the activ...
Hallo,I successfully configured an WLAN-Accesspoint to send users via the xml api.I can see the users in the log entries but I cannot select the users in particular policies. Looks like the users are not known to the firewall.Do I need to create local users with the same username? Or how can one use these submitted users in policies?Thank you.Re...
| User | Likes Count |
|---|---|
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |

