user activity ACC -CLI
Dears I want to know the IP of this user "None",as per to a below image, through CLI ...Can I do? Please feedback with the command or the way to know who it is ? thanks
Dears I want to know the IP of this user "None",as per to a below image, through CLI ...Can I do? Please feedback with the command or the way to know who it is ? thanks
Here is another interesting commit status dependency warning "Rule 14 application dependency warning: Application ms-update requires ssl be allowed but ssl is denied in rule 15. " Why is an application in the rule above getting on a rule below it?
I'm working with our AD admin, and we are trying to replace our DCAdmin account with a service account on our firewall. With AD2016, the MSA/gMSA accounts require that you link the account to a computer object. I've seen in a couple documents that it eludes to the fact that MSA's can be used, but it doesn't give any information how. What we are ...
Hi, As described in following links we've configured multiple untagged sub interfaces all assigned to different vsys (different virtual routers and different zones) but with different IPs from the same network and the same VLAN: https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Configure-L3-Untagged-Subinterfaces-to-Communicate-...
Can someone tell me how to know/what would be the Source IP address for an SSL Tunnel Proxied from the PAN NGFW while running in Virtual Wire Mode ? My topology is very simple: User (Virtual Wire) ----> PAN ----> Internet Does the Firewall initiate the Proxied SSL Tunnel using the management interface IP address with the Untrust Zone ?
Hi. I have PA200 (PAN 7.0) device with snmpv2 enable but failed to discover in SNMP server.When we did snmpwalk from server its giving message "No Such Object available on this agent at this OID".Appreciate if some one can provide the exact cause of this error.
First thing,I know there are postings about this out on the web and community about this. The problem I'm having is everything out there is on old ASA code. I'm trying to understand the configuration on the PA. I have my tunnel interface configured, IKE Crypto, IPSec Crypto, IKE Gateway, and IPSec Tunnel. I can't get the Phase 1 to come up. I've...
Hello, We have a VM-100 Palo Alto at version 7.1.12 and we are looking to use the Palo Alto pre-defined Block lists. The current Threat Protection license is using version 8001-4627 (04/06/18) however the 2 pre-defined lists are not displaying in the “External Dynamic Lists” section. I have found lots of information regarding the Dynamic lists...
Hi, What is the benefit of having DMZ setup with two firewalls. If we have dmz setup with two firewalls ( I don't know this design is valid and adopted design, I found it in the net ) If this is a valid design ,From local lan how the traffic flow to outside (10.0.10.0/24 to internet ) and outside the local lan 10.0.10.0/24 Thanks
I have a rule that has webex enabled but dones not have ssl enabled and i keep getting a warning on that rule when i commit that says "Applicaiton 'webex-desktop-sharing requires ssl be allowed? But I don't want to allow ssl, so how can I get rid of these warnings so i can tell when i have a legitimate commit warning?
I want to see traffic over GP. In my understanding GP Portal configuration Enforce Connection for Network Access is Force networt traffic via Portal IP. But it connected and not traffic registered under PA.
I want to replace a IKE1 VPN serviced by a ASA 5510 with a IKE2 VPN serviced by the palo alto what i the best approach?
Hello.Has anyone tried connecting Cisco SFP+ Twinax Copper Cables (sfp-h10gb-cu1m) to PA-5050 device? I've tried to find some info about it on PA KB but wasn't successful. Is there any document issued by PA listing all the supported 3rd party devices?Best regards, Simon
Looking to properly setup Dynamic Routing over a hub and spoke IPsec VPN network. The hub will have 40-50 spokes. The Hub is running a PA-820. Spokes will be PA-220. Voice and data traffic. There will be minimal traffic between spokes. My questions are; Is the PA-820 robust enough to handle 40-50 spokes?Is there any real advantage to using ...
Hello allwe have PA in production.The problem is VPN users dont pass by certain authentication profile.The issue is that when we point user it is ok but when we point some group it fails to authenticatewe test through CLI and that is result test authentication authentication-profile VPN_LDAP username eradmin passwordEnter password : Allow list c...
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 7 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

