Sanity Check on the Firewall
Hi team i am new to firewall. Please explain what is sanity check and also the packet flow in Palo Alto Firewall.Need Flowchart for Packet flow fo Palo Alto Firewall
Hi team i am new to firewall. Please explain what is sanity check and also the packet flow in Palo Alto Firewall.Need Flowchart for Packet flow fo Palo Alto Firewall
We are having unidirectional problems with our site to site circuits bandwidth. I am not sure if this is a PAN problem or a problem with the providers. It’s interesting that IPERF shows slowness to the remote site on MPLS but on IPSEC the slowness is to the main site (10.10.1). Traceroutes show the traffic is symmetrical on all tests.All connect...
Hi, I have a case where we have to PA FWs and there is 3 connections between them,1- Two Microwave Links (Up to 100mbps)2- One DSP Link (Up to 10mbps) There is a total of 3 IPSec Tunnels and i'm using weighted round robin, however, i don't know how to calculate the weights and what numbers i should put in the ECMP to reflect the real speeds of t...
Hello good morning, someone has tested the vm series firewall, with the latest version of CentOS 7.4.Is there a problem or incompatibility? Thanks
Hi folks, We have several IPSec VPN connections and luckily so far all with unique Proxy IDs.I am trying to prepare when I create a new one and has the same Proxy ID as another.I see this article and talks about creating a NAT both ways.https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-Help-with-IPSec-Proxy-IDs-with-overlapping-IPs/ta-...
When enabling user-id where does it check against to get the information to identify the users? I have it turned on for serveral zones and it only seems to work on the VPN user-id's.
Has anyone in an active/passive HA cluster experienced all urls logs being catergorized as 'not-resolved' after failing over to the passive box? We have had this happen multiple times now, to fix the issue we have re-download the seed database under Device -> Licenses Running 8.0.6 currently, this had also been happening on 8.0.3. I don't be...
We have such a problem with Microsoft Exchange OWA which we have recently published through Palo Alto.We have installed certificates with private keys,created necessary rules for PBF and NAT.Everything is working fine except decryption.We can see in monitoring tab errors like decrypt-error or decrypt-unsupport-paramwe have tried to connect from...
Hello We are planning to implement the SSL Decryption in our Enviornment. We would like to know how the session limit is counted in the firewall. Also is there any session limit for the PAN OS 7.1.3 and if yes what is it. Also if we upgrade to version 8.0 Whether the session limitis increased. RegardsMahesh Damani
HI. We run global protect for a reasonable number of remote users on our PA3050's without much in the way of issues. One thing which pops up, though, is that our Virus management server (McAfee) gets hugely confused about which machines are on which IP address. We've done a little digging, and it apepars to be related to te fact that all machine...
Please give me a best Solution I have one Palo alto firewall and Branch end Cyberoam I need to do MPLS VPN Failover between both device any suggetion it will work or notpalo alto MPLS supported or not ? Thanks regrardsHiroli Mohsin
There is some problem regarding global protect in mac compsnot asked for username and password
hello We have some problem with skype.Inside the company we can use skype application.But when we try to call by skype outside the company call and video dont work onle chat.But inside network we can use all features.When we test the skype without Palo Alto it works fine.What can be the reason? why Palo Alto dont pass the voice outside
Expect this stupid calculation - https://live.paloaltonetworks.com/t5/Management-Articles/Panorama-Sizing-and-Design-Guide/ta-p/72181 Is there any easy to check log capacity depending on daily, weekly, monthly? this is so ridiciluous that doing calculation like this not matching reality, also any possible way to check what days logs have delete...
Hi All. So when Wildfire creates a signate for a piece of malware and assoicated URLs are added to the malware category of URL filtering. Is this added to the brightcloud URL database or only the PAN-DB database? Thanks Chris
| Subject | Likes |
|---|---|
| 7 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 7 | |
| 4 | |
| 2 | |
| 2 | |
| 2 |

