HA/sync bug in 7.1.16
Has anyone heard about about a bug in the code of the os 7.1.16 which causes HA and sync to fail?
Has anyone heard about about a bug in the code of the os 7.1.16 which causes HA and sync to fail?
Dear All, My company device is PA-500, I'll be End-of-Sale Date at 31-Octorber-2018. But it's license will be Expires at April ,2019.So how I can do to renewal the license? Do I buy the license after End-Of-Sale ? OR Can we renew the license befor the End-of-Sale?Please help me clear this issue.Thanks and Regards,Tho.
We have two PA820 boxes PA#1 & #2, both are connected via IPSec and the traffic flows without any problemWe have a TMG server to which PA#2 is connected via IPSec and traffic flows without any problemNow we want PA#1 to be talking to TMG server via PA#2ON PA#1 we can see that the traffic is going through the tunnel, but it is not being detec...
Hi, Need to know how can i change the password to passcode in the response page for GP and CP? RegardsMike
Hi, I have configured GP external gateway with no split tunnel.I have configured the DHCP pool. My PC gets ip assigned but no default gateway ip address is this by design? All the traffic is configured to flow via tunnel. How does routing work without PC getting default gateway? RegardsMike
Hi, I have configured GP external gateway and all is well.But i see my ssl tunnel connection from my public ip to GP public ip this traffic is decrypted. I have no decryption policies configured for this. this traffic is from external to external zone. need to understand how this traffic is beging decrypted? Mike
I have setup an HA pair of 5220s and have them added in Panorama all running on 8.1.2. I have setup the Templates and can push out changes to the HA pair. I tried to push an IP change to a subinterface on the pair and though both Panorama and the HA Pair claim to have accepted and commited the changes, the HA Pair still has the old IPs and Pan...
Hello, I am new to Palo Altos. We just took over a company with a Palo Alto and we are taking a look at all of the settings in the device to get a handle on how everything is set up. I wanted to see if someone could clarify something for me. When I looked at what appears to be the internet facing interface, all I see is an IP assigned to the int...
I was testing an app today, and much to my surprise it had a definition already created. When I added it to my trust-untrust allowed applications rule, it still didn't hit it. The firewall identified it as SSL over 5494, not the app. The app just lists TCP/5494, and probably needs to be further identified. Opening a case with support is the obvi...
Hi there, I am working overseas in China mainland and our GP recently has a really poor connection and hardly can connect to GP sever: globalprotect.soton.ac.uk . It has happend to whole team here. Just want to ask if there are some updates about this issue, Chinese Goverment start to interfere VPN in mainland or .. CHeers
I'm working on configuring a branch office firewall with two ISPs and Site-to-Site VPN to our data center. The data center side has only 1 ISP connection I'm reviewing this article again, as I've used it in the past.https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Configure-a-Palo-Alto-Networks-Firewall-with-Dual-ISPs/ta-p/597...
Hi, We have configured a DoS policy in order to limit the connections to several internal services.So when we launch a test in order to check that the connections are being limit we dont see any logs or event reporting it.But looking in policy statistics we see that its being applied.how can we verify that the policy DoS is working???? should we...
My company has not transitioned to GPCS yet and currently still uses Cisco AnyConnect. We have 10K+ remote users and 5weeks ago about 100+ users started getting random disconnects and they are all Comcast users with XB3 type modem. I wanted to ask the forum if anyone has seen this type of issue with GPCS as well ? I understand that there is a lo...
Hello, We found some BGP routes with same AS we are using at our PA3020.PA3020 AS 65400 BGP route (from Cisco Router) * 172.27.0.0/20 193.242.39.6 0 65394 65390 8035 21302 65400 65316 64540 4755 4755 i Usually with Cisco routers we use the command neighbor X.X.X.X allow-as in What is the command in Palo Alto Fw ? ...
Hello all, I want to block all video treaming with palo alto. do do following this: 1, go to Objects--> URL fitering--> add new URL fitering with name block_video. 2, in categories, I check in streaming-media and choose block. 3, I create the policy with full internet, and in action tab --> URL fitering --> Block_video. But ...
| Subject | Likes |
|---|---|
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like | |
| 1 Like |

