Panorama High availability
Are there any issues with running 2 Panorama servers in an HA configuration across a WAN? Recommendations for configuring hold timers and various interval settings?Judy
Are there any issues with running 2 Panorama servers in an HA configuration across a WAN? Recommendations for configuring hold timers and various interval settings?Judy
Any ideas how to fix the following error: Failed to establish SSL connection to Panorama Server: Port:3978? We are unable to view the logs on Panorama or push the firewall policy from there as a result so it's causing a few issues to say the least. Any help would be appreciated. Thanks! Nothing has changed on the firewalls or Panorama. Panorama ...
We have to implement a Globalprotect VPN Deployment using 3050 in HA Pair in which we have to use a single Portal and define Multiple External Gateways somewhat we call in Cisco Anyconnect as multiple profiles. Is it possible to define Multiple External Gateways using the same Interface catering to different OS types and using a single Portal co...
Hello, We are using a proxy server to control Internet access from internal resources, including the PA firewall. This proxy can only be used to reach external destination.Also, we had to configure the proxy server on the PA device (Setup -> Services -> Global) in order for the PA to perform updates. Now we would like to use External Dynam...
I am trying to migrate from RouterOS BGP setup. I have filter rule likechain=BGPINFilter-common prefix=10.32.0.0/14 prefix-length=14-32 invert-match=no action=discard set-bgp-prepend-path="" basically it drops all prefixs for 10.32.0.0/14 down to /32's how can I do this on the pa.I have something like thisset template ybopa config network virtu...
We have a client that requires GlobalProtect for connecting to their network. Their site provides the installers which is version 3.1.1.27. We have an internal team that insists on receiving a license description or EULA for using the client binaries. They cannot believe that there is such a thing as a software client that doesnt show or store a...
Hi, One of my accounts on Panorama standby doesn't let me login. I get "Password expired" message. I tired to change password for active unit and that still did not fix issue. I tired to delete and recreate account from active unit that still did not fix issue. How can I clear this flag on standby unit without making it active and changing passw...
Does the Palo Alto support the xForward for IP in relation to content delivery networks? We have the content delivery network fronting traffic and in some cases we see requests coming back showing the CDN IP, we are more curious about the details around the originating IP address than the CDN IP.
Hi Community, Yesterday we had an issue with our air-conditioner which caused the Palo Alto Firewall to restart due to high temperature. After the device booted up, I noticed some logs saying that disk is not detected/degraded. I tried restarting it one more time and the firewall still reports those logs. How can I fix this? Your advice/support ...
I have added a new firewall to Panorama. The new appliance shows a onnected state. This is a replacement of a firewall that had failed,Now i want to delete the other firewall (with fails) that has several vsys,no matter what i do, i cannot to change nothing.Is the firsr time that i am trying to do this.i had read in a KB that i can to use a cli ...
Hi. I'm having trouble with using a static ip adresses while connecting using PPPoE.Using none on IP adress works. Logs says "'PPPoE session failed to connect for user:[email protected] on interface:ethernet1/1. Reason: No network protocols running, LCP down'" Any ideas?
Has anyone else noticed a high level of effort required to support SSL Decryption on the PA's? We have this feature activated on a few clusters and this seems to be one of the most time intensive efforts to support with weekly (if not daily) SSL Decryption bypasses for various websites.
Hi, We try to access to several web blocled by URL. The response web is not being showed. I think this cause is that we dont have ssl-decrypt. Thats right? Anyway we have another web that the web response is whowe using https. WE dont have any ssl-decrypt. I would like to have a strong explanation. Thanks a lot.
Where snmp agent logs located in terms of when I perform less no-log which file?
Hi Wondering if any one has been able to add certificates via the command line. Support doesn't seem to be able to A
| Subject | Likes |
|---|---|
| 5 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes | |
| 2 Likes |
| User | Likes Count |
|---|---|
| 8 | |
| 6 | |
| 6 | |
| 4 | |
| 2 |

