Resolved! Logs Retention on MineMeld
Hello, I want to change the log retention on MineMeld. It looks that the default configuration is 7 days. I was not able to find where to change this parameter. Can you please help?
Hello, I want to change the log retention on MineMeld. It looks that the default configuration is 7 days. I was not able to find where to change this parameter. Can you please help?
Hi, So im having difficult with a source nat to Internet.. My goal is to route traffic between two vlans in my cisco 2960x switch and let palo handle the rest.. The problem is that the source net arrives to the palo on the wrong interface (well its expected..)i have zone already configuerd in the palo fw with zones, interface. Ive created a acce...
Hi, I have a site to site ipsec vpn between 2 PA devices. Lets call them Site A and Site B and at Site A I have a Cisco router acting as a dhcp server. I'm trying to have all the client at Site B get their dhcp address and scope options from the cisco router at Site A. I have the sites connected to each other and I setup a dhcp relay agent on Si...
Tearing my hair out here so any help appreciated.This is a VM firewall, VM-300 ver 8.0.3-h4. I have created new subinterfaces for three VLANs, one of which is a guest VLAN (111) which has its own vSwitch, port group, sub-interface and zone. However, all traffic seems to be steering to the same interface (eth1/2.15). Since eth1/2 was the original...
Hi alli would just like to know what region logging service is available for ?is APAC included? and Do we have a plan for PANORAMA service on cloud. so customers dont have to have panorama on premise, instead, just pay by month for this service? thanks a lot Danny
Do you apply security profile ( AV,anti-spy, etc) to the ipsec policies as well. This traffic is encrypted.
Hi, We have detected a atrange behaviour with SMB session. We have created a rule for blocking wannacry (SMB) sessions We can see sessions being blocked: So all sessions from trust to untrust should be blocked but we have done a tcpdump in our ISP router an we see 2017-11-21 20:01:46: 8x.x.x.x => 213.187.106.86:4452017-11-21 20:01:46: 8x.x...
Dear Team, we have a SFTP server behind our firewall and its nated to one of the interfaces of the firewal , we need to restrict the bandwidth to the SFTP server . when clients connects to the server for downloading files they will be restricted to use 5 mbps only or something like that. they wont be able to use full bandwidth how to implement ...
Good day! How are you doing? I'm looking for a way to select authentication methods of DUO while I'm using Globalprotect(NOT USING Captive Portal. There are so much problems shown when user tried to authenticate) I've done test about 2 factor authentication without authentication server(but I should have a proxy server, of course) 1st authentica...
Has anyone else had the issue with the firewall blocking URLs when the cloud db is not working? I have had two issues where the firewall will not allow sites that are common and catorgorized correctly in the local db because the cloud connection is not established. Todays correction was a simple DNS fix but my question is more of function. Is i...
Hi everybody, Is there any CLI command or log that show the time of the tunel VPN (phase 1, phase 2 or both of them) is up? The commands:show vpn ike-sa gateway <gateway name>show vpn ipsec-sa tunnel <tunnel name> It shows the lifetime since the last key was negotiated, but it doesn't show the total lifetime of activity of VPN tunnel...
I am trying to make a policy on my new PA-220 and i want to block all traffic coming in from every country except the united states..I can't figure out how to do that except by blocking every country one country at a time.. Can anyone tell me if there is a block all except feature?
I just got a spyware infected host report that says something like Destination address | Destination Host Name | CountX.X.X.X hostname.domain.com 2.94k X.X.X.X hostname2.domain.com 1.44k X.X.X.X hostname3.domain.c...
A couple of questions 1. Is the IPSec crypto for global protect completely separate for the IPSec crypto option that you find lower down in the list on the firewall?2. Is the Globalprotect IPSec crypto still used when x-auth is turned on?
My customer uses GP Internal Gateway with a non-Tunnel mode.It means it uses just only user authentication and enforces user-based rules. I am facing an issue .A user was connected to GP Internal GW in office 1F and successed authentication.The FW was updated A user has 192.168.1.1 from GP.The user moves to 2F and changed IP from 192.168.1.1 to...
| Subject | Likes |
|---|---|
| 8 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 1 Like |
| User | Likes Count |
|---|---|
| 8 | |
| 2 | |
| 2 | |
| 2 | |
| 2 |

