Resolved! Block Domain on NGFW
Hello, can you anyone let me know how i block access based on domain name, e.g. i want a rule to allow all SMTP inbound except from domain testblock.com, how do i do this? Thanks Ryan
Hello, can you anyone let me know how i block access based on domain name, e.g. i want a rule to allow all SMTP inbound except from domain testblock.com, how do i do this? Thanks Ryan
Under Global potect client logs i see in PAN GPA logs cached credential for the portal does it mean it i using username and pw for only the portal connection? if i do not want portal to use cached credential what config change i need to do?
Hello! Sometimes the "Source User" column is empty. What should I check in the settings? PAN version 8.0.10 Thank you!
Hello, I'm currently running 8.1.3 on a pair of 3020s. Can I upgrade from PANOS 8.1.3 to 8.1.4h2, or do I need to install 8.1.4 first? Many thanks, Roberto
HI Guys, I have deployed radius server for authenticating the third party Ipsec clients. When I connect to global protect from my mobile third party ipsec client it is getting connected via x auth support enable in global protect gateway and authenticate itself using Authentication profile configured(This has both LDAP and radius authentication...
Hi all, first time poster so go easy! We're running into an issue where a rule that is meant to catch ether-ip traffic on port 20033 is slipping through and being caught by a lower rule which allows any application and service. Rules as follows: When running the "show session all filter rule X" command in cli, we can see that sessions are only ...
I've been doing some tinkering with a pair of 3220s and am noticing that in the GUI it's reporting HA1 Backup is down in the HA widget of the dashboard if I use the HA1-B port. HA1-A is up, and if I use the management port for HA1-Backup, it comes up fine. I configured HA1-B the same as HA1-A, only using a different /30 network. I've tried di...
when i try to connect to global protect - internal gateway it shows in yellow still working ? does this mean it is trying to connect to portal or gateway?
Hi, I have a Palo Alto with existing security zones managed via Panorama. I need to add an existing sub-interface to an existing security zone which has been done on Panorama and committed. However, after logging into the firewall node directly the sub-interface does not show it has been assigned to the security zone. Are templates only used to ...
Is there any way i can test and verify the config refresh time in global protect client running 4.1.4?
Hey guys,I got a pair of PA-3020s (8.0.7) and 2 ae's with a lof of subinterfaces. Each subinterface does have a gateway, security zone and vlan tag.Out of permonance issues, I want to create a third ae with two new physical interfaces.Then, I want to move some subinterfaces to that new ae.What would be the smartest way to do that? (Without loosi...
Hello! The local user Administrator is logged in on the desktop and he is not allowed to access the internet. But he can access.When checking in Monitor on PA220, I noticed that another user appears in the Source User column and not the Administrator user.Has anyone ever experienced this? Software version 8.0.10 Thank you!
Hello Community! I´m trying to see the searched words made with different search engines. For this I wanna create custom reports and look for terms on the URL log database with the help of different query builders. I´m following the idea of this doc:https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cm19CAC I´m not able to...
Hi all!When I create an aggregate group, there is the possibility to enable LACP.But when I don't enable LACP, which ethernet standard is enabled then?Does the firewall utilize bandwith over all links as in LACP?Thank you
How do i fix going to objects-->apps doesnt fix it Disabled applications in shared:
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

