Resolved! How do I reset the unit to factory default via mgt and console port?
May I know where is the document that refer to this? Can I even ping the mgt ip via trusted port? Thanks all!!
May I know where is the document that refer to this? Can I even ping the mgt ip via trusted port? Thanks all!!
Hi, I have read a few articles regarding internet redundancy using a primary and backup ISP link on a single Palo but can someone please explain (if it's possible) how one might achieve redundancy using a primary ISP link on 1 Palo with failover to a backup ISP link on another Palo at a remote WAN site connected to the primary site via L3? Chee...
I've had an odd issue crop up.I have two PA-820's in a HA cluster.Everything has been working fine for over a year, no issues at all.Starting Friday afternoon of last week, I began getting alerts from the passive device.The alerts are for being unable to load threat protection updates and being unable to connect to the user ID agent. Nothing at ...
Hello, We are using PA-VM-100. We are planning to upgrade from 8.0.5 to 8.0.13. Will it impact in any aspect if we increase the disk space of a firewall server by reducing the retention period of log files, such as Threat report, traffic report etc.?
Hi We currently have 2 PA 500 which are currently configured for HA. But don't think its currently setup correctly.This is what I can find regarding as to what we want to achieve. Active passive with OSPFhttps://knowledgebase.paloaltonetworks.com/servlet/fileField?entityId=ka10g000000CyRYAA0&field=Attachment_1__Body__s But the above article...
Hi,Why Palo Alto is detecting sometimes the application like SSL and sometimes like incomplete??????if the connection has 134bytes is not detected, but with more than 134b is detected..........
I'm in the initial stages of a support case, but am curious if you all have had issues or success with this scenario: A GP user that is: pre-login / always-on / machine cert auth / no split-tunnel (0.0.0.0/0 include route) with access to their local network Here's the problem: A user is at a hotel / starbucks (a place that has an open wifi conn...
Dear All, I need create Taxii miner with API Key Authentication I don’t know about how enable API Key authentication. I need configure API on my mimer as " VitusTotal". Which should miner I use? How configure it? Thank you
Hello! Our goal is to use AD groups in firewall policy rules that start with ABC_xxx_xxx. So I am wondering how we could achieve this without manually adding new groups to PaloAlto Group Include List. I have already tried Custom Group filter with (CN=ABC_*) but this seem to find only users not groups (Link to KB https://knowledgebase.paloaltonet...
critical18754DemonBot Command and Control Trafficreset-both8.1.0 I noticed the above threat in releas 8096.. Which says minimum PAN-OS 8.1.0... We are on 8.0.x , does that mean the above would not be applicable? Thanks Rob
Hello, Can someone please advise why our session list would have To/From port 0?
Folks,Typically when we build a IPSec tunnel from the AWS VPC to the on-prem Palo Alto box we get an option of 2 tunnel's from the AWS. I have options of configuring both the tunnels as UP/UP when the end point is something like a Juniper ISG-1000/ISG-2000 device. However, when I configured it on the PA-3260 only one of the tunnels is seen as up...
Dear Commuity,I am very new to Palo Alto Firewalls. I saw, that you can check the "Resolve hostname" checkbox when viewing Traffic Logs. Sadly a lot of IPs are not being resolved. I examed a few random samples and notices, the IPs mostly belong to Microsoft. I am now wondering, if there is some kind of way, that I could see this in Traffic Log d...
I am having a weired issue with a PaloAlto and a Telekom Router. I configured a specific client address to always use a second Router (with internet connection) to communicate to the WAN.Everything on the PaloAlto looks good to me but when I plug-in the Telekom Router into the configured interface port of the Paloalto I cannot access the Routers...
Hi All,In my scenario, i have single PA-220 for guest access. In trusted zone i would like to keep the interface lelvel (active/standby) high availablity.Interface type as L2. I couldn't do aggregate interface since it's connected to two seperate switches. How we can achieve this.?? Thanks in Advance..
| User | Likes Count |
|---|---|
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |

