WildFire Failed to Register
Hi All, I having some issue to register wildfire from firewall. Appreciate in advance. Please refer the attached pictures.
Hi All, I having some issue to register wildfire from firewall. Appreciate in advance. Please refer the attached pictures.
Hi Team please advise if there is any link to refer for IOD for PA 850 , the below link shows information for OID of all the models but not for PA 850 https://live.paloaltonetworks.com/t5/Management-Articles/SNMP-for-Monitoring-Palo-Alto-Networks-Devices/ta-p/61052
Hi All My network topology is like I have HQ with PA-7050 firewall and 3 domain controllers in HQ. I have 22 branches with local domain controller in each branch and firewall is PA-3050. Now I want to deploy user-ID agent, In my scenario what is the best way to deploy user-ID agents. I am thinking below: - Deploy one user-ID agent (with backup) ...
Dear All, We are using the version 7.1 and would like to use HTTPS external dynamic lists.But it doesn't seem to work. Is there any additiontal required config to enable this? I believe it requires a username and password for list access from the version 8 but no idea how it works in the version 7.https://www.paloaltonetworks.com/documentation/8...
Hi I am wondering, firewall does not have the option to make vulnerability protection profiles based on signature categories like vulnerability signatures for dns server and web server and then used them in security policies realted to dns only or web server only. in firewall, I can see I have just only one vulnerability protection profile and u...
i just had a weird behavior. i have several ipsec tunnels for clients using the ncp secure entry client.they all have tunnels configured with certificates and a dynamic peer ip. yesterday i created two new tunnels but forgot to check the nat-t checkbox. and some of the users couldn't get a connection via rdp. my understanding was that it shouldn...
Hi, I would just like to verify the normal behavior of LACP in an Active/Passive HA setting. Currently we have a pair of PA-3060 running 6.1.10 in active/passive. Both devices have LACP bundles towards a Cisco router.On the active firewall the LACP negotiates properly but on the passive firewall the interfaces shows up but doesnt negotiate the L...
We are using ldap authentication and globalprotect.In the above picture, the timeout value continues to be 2592000 and 0 time out 2952000 and 0 , what does that mean? Why does it look like above? Please let me know.
Hi all. I am trying to setup a ADFS environment in our network. The actual ADFS server is located in the internal LAN, and the ADFS Web Application proxy is reside in the DMZ; internal LAN and DMZ is in a different VLAN. The goal is to send user authentications (orginiated from the Internet) to the ADFS web application proxy, and from there i...
Can we group EDLs?Once the url is fetched and content is read by the firewall and later the url is deleted, does firewall keep the cache of contents?can firewall detect redundant entries?
Hi PAN Community, I work for a school and we have issues with student VPN use - specifically x-vpn, hotspot shield etc. We have rules in place that take care of the proxies and standard VPN applications and have SSL decryption and URL blocks in place for stuff we don't want students to access ie, pornography. I found the following reddit post wh...
HiWe have imported a config from a PA500 into a newly installed VM-100 v8.1 (under vmware). After having done some VLAN changes to interfaces, we suddenly started to get the below error message when committing: Can someone point us in the correct direction to look for the culprit..? Thanks a lot 🙂 regards Tor
I have this question and cannot find the answer from the online training: Which type of content update does NOT have to be scheduled for download on the firewall? I think it is PAN-DB updates but I just need to make sure.
Hi all, I thought you'd want to be able to list your certifications and their expiry dates and any relevant announcements, so you could plan your further study, re-certification...Also, employers ask about cert updates.Couldn't find it myself.Other than a notification email saying a cert expiring in 3 months.
I found some best practices documentation on the fuel group site and they recommend drop over deny. So I would be interested to see how people are configuring their fire wall more drops or denies and why?
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

