Resolved! What is the byte size of bps on the datasheet?
Compare to Cisco, it was mention that the bytes size is 1,204 bytes on the datasheet. How about the Palo Alto? is it 1,204 bytes or 512 bytes?
Compare to Cisco, it was mention that the bytes size is 1,204 bytes on the datasheet. How about the Palo Alto? is it 1,204 bytes or 512 bytes?
Hello!I have questions about user-id functions.1. How much user-id be supported by agent-less user-id? I guess that 64K user-id and 640 user-group would be supported on all of PAN model. right?2. When using user-id collector, How much user-id and user-group be supported by agent-less user-id for receiving all of user-id and user-group from other...
We block access to sharefile.com as a whole. But we do have a sharefile.com company site which we allow access to. The problem that I am running into is this, when a user attempts to download a file from our sharefile site a random number will be generated in the following URL "storage-ec2-XXX.sharefile.com" where XXX represents the random num...
I’m planning a test deployment of a globalprotect vpn, so currently going through the guides to see what’s needed. Part of the requirements if not using a trusted CA is to generate a self-signed root CA.What should the FQDN be on this cert? The deployment will have inside, outside and mgmt interfaces. Should it be the ip on the mgmt interface?
When creating an Address Object (as well as other object types) the documentation for Palo Alto 8.1 says this, "The name is case-sensitive, must be unique, and can contain only letters, numbers, spaces, hyphens, and underscores." The popup that appears when an invalid object name is added in the WebUI says this, "A valid object name must start w...
I'm currently migrating from a pair of Cisco ASAs and the zones have me a little confused. Right now I have interfaces on the ASAs of inside, wireless, outside, dmz-private-web, dmz-private-db, dmz-public-web, dmz-public-db, dmz-dev-web, dmz-dev-db. My plan was to group the inside and wireless together as "trusted", outside as "outside, and then...
Recently I have noticed that it is taking longer to commit and sync the changes from my active PA to my passive PA and the management plane ramps up to 38%. any suggestions
Hello, Is there any way to fully deploy minemeld from the source code?
during the bower install I am getting this error. TASK [minemeld : bower install] **********************************************************************************************************************************************************************************************************fatal: [127.0.0.1]: FAILED! => {"changed": true, "cmd": ["bo...
Hello! My first go at using MineMeld and running in to some issues during installation. Installing on 64bit Ubuntu 16.04 LTS. I follow the steps:$ sudo apt-get update $ sudo apt-get upgrade # optional $ sudo apt-get install -y gcc git python-minimal python2.7-dev libffi-dev libssl-dev make $ wget https://bootstrap.pypa.io/get-pip.py $ sudo -H py...
I have seen a few older threads referencing minemeld on CentOS using ansible or docker etc, Does anyone have it running on CentOS natively without the use of other 3rd party tools? or an up to date walkthrough? The Ubuntu 14.04 setup is quick, simple, and just works but since there are no packagse (is this still the case?) I don't want to spend ...
First post to this forum! I have a PA-500 and 3 ISPs. 2 of the 3 VLANs are forwarded using PBF (VLANs 10 & 30 ) and the third uses the default route (VLAN 20). My (simplified) configuration is as follows; VLAN10 - PBF to ISP 1 fail-over to default if the monitor address is unreachable. <- This is working OK VLAN 20 - No PBF, direct to th...
Hello,I have a doubt about how to interpret macs in rx pcap and tx pcap. I thought that:when the traffic enter a layer 3 interface:the mac destination addres in rx file must be the mac of ingress interface?and in tx the source mac, must be the mac of eggres interface?when the traffic enter a layer 2 interface:the source and destination mac don'...
Does anyone know of a repository where people can search for all conditions which would trigger a SNMP-TRAP message from a firewall for a severity level of High or Critical. Thank you, George
Our PA-500 management utlization reaches 100% sometimes...according to PA support, There's a process called 'gdindex.sh' runs every 15 minutes for log indexing.We need to reduce the management plane traffic for better performance. Any suggestions?
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

