Url blocking
Hi guys, surely a stupid question, but cannot find out.PA (a 5060 couple), as seen in the screenshot, allows the connection but blocks the corrispective URL.How can I allow the URL too? Thanks
Hi guys, surely a stupid question, but cannot find out.PA (a 5060 couple), as seen in the screenshot, allows the connection but blocks the corrispective URL.How can I allow the URL too? Thanks
1> debug software restart processauthd authentication processconfigd configd processlogd logd processmanagement-server Management server processmdb Mongo DBntp Restart and re-synchronize NTP servicereportd reportd processsnmpd snmp processuser-id User-ID processvld-0-0 VLD process for LD1vld-1-0 VLD process for LD2vld-10-0 VLD process for LD1...
Hello All, I am trying to configure my android phone to connect to palo alto vpn. I use IPSEC Xauth PSK as Type and the IPSEC identifier do i need to put the Group Name and Group password from X-auth support. Can someone confirm me this.
Hi, When we start a teams meeting we have no sound or video, one to one call works! We use minemeld with palo alto to get list of allowed microsoft IP's.But we see requests to the following microsoft IP's that are not in this list: 51.144.76.36 51.144.127.181 213.119.108.243 146.20.192.75 146.20.192.80 146.2...
Hey all, i have started to work with the API and Postman lately in order help with making the setup process of new boxes a little easier & faster. While I have been able to get most of the basics done (Management IP, DNS, NTP, etc.) I am now struggling with creating new objects in the configuration through the API, starting with the zones th...
We currently have a Cisco switch and router with in our environment. The router does inter-VLAN routing for traffic coming from VLAN's (about 6) on switch; typically as in a ROAS setup. So the switch is L2 and router is L3. Looking for a away to place the Palo Firewall transparently in between with two interfaces (eth 1/1 and eth 1/2); in vwire ...
Greetings! Just to be upfront, I have my configuration working for the most part but I'm interested to hear if there's not a better/safer/quicker way of bending GlobalProtect to my needs. Please feel free to chime in with ideas, opinions or suggestions! Only as much detail as you feel is necessary but I'm happy to hear what you're thinking Scena...
Hi all, do you know Name resolution takes too long, diskable name for Risky Users in system log ? This log appears every day at 2:05 am. Thanks.
Hello, I would like to add a domain security group superuser access to Panorama and devices. So any users in the below groups access to both panorama and firewall’s. Superusers - CN=PA Superusers,OU=Global Groups,OU=Ad Australia,DC=ad,DC=com,DC=auSuperusers (Read Only) - CN=PA Superusers RO,OU=Global Groups,OU=Ad Australia,DC=ad,DC=com,DC=au ...
I have this scenario: My PA-200 have 2 interfaces: one connected to the Internet Zone, another to the LAN Zone. The LAN interface has 192.168.1.1/24 as its IP address. I have another LAN connected through a router with 192.168.1.254 IP address. In the PA-200, in the default-router I added the route for 192.168.2.0/24 with gateway 192.168...
I am told to upgrade PA to 8.0.14 if we are using the ssl decryption.Curious to know what feature is inside the PAN OS 8.0.14 that supports TLS1.3?
Hi all, I just ran into an issue while creating an External Dynamic List in Panorama 8.0. The source is a HTTPS address that requries a certificate profile for validation, so far so good. The problem is that I can't select any certificate profile, the list is empty. There's a certificate profile created under Device > Certificate Management ...
After installing the rpm (latest version as of today: 4.1.7, running on Fedora 28) the cli client cannot communicate with the service (although it is started): $ systemctl status gpd● gpd.service - GlobalProtect VPN client daemonLoaded: loaded (/usr/lib/systemd/system/gpd.service; enabled; vendor preset: disabled)Active: active (running) since T...
I am trying to install ssl cert on Minemeld but each time when we install and restart the service URL stop working. Please help me, how I can install cert using local CA
My firewall is using the following Interfaces/Zones: E1/1(5.5.5.170/29) and E1/1.1(5.5.5.174/29) are in the outside zone. E1/2(192.168.254.252/24) is in the inside zone. E1/8(192.168.1.1) is in DMZ zone. E1/1 and E1/2 are connected to the mainvr virtual router. E1/1.1 and E1/8 are connected to the DMZrouter virtual router. I have a web serv...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

