Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Phase 1 compromise impact to Phase 2

Hi,

I would like to know if IKEv2 phase ia compromise because of weak encryption in proposal, malicious user can access to all data sent across the VPN connection, which may include passwords and sensitive file ?

 

Or

Malicious user only know phase 1

...

crypto by L2 Linker
  • 699 Views
  • 0 replies
  • 0 Likes

Resolved! Not able to delete Vsys1

Hello,

 

We have a problem when trying to delete vsys1 from the FW. Customer enabled multi-vsys and they had two vsys configured. Right now, due to topology changes, vsys1 is no longer required so customer would like to delete that vsys. 

 

The thing

...

JMBerzal by L1 Bithead
  • 2206 Views
  • 3 replies
  • 0 Likes

All OSPF neighbors suddenly down

Hello all,

 

Customer has a problem were their PaloAlto suddenly declares all neighbors adjacencies down, after that the PaloAlto will do a grateful restart and the OSPF neighbors will change to init, and then go full again, this OSPF flapping lasts

...

JMBerzal by L1 Bithead
  • 1002 Views
  • 0 replies
  • 0 Likes

App-ID Override Policy Matching

Is there a way to identify what traffic is hitting a specific App-ID Override policy?

 

We have several poorly configured App-ID override policies I'm trying to clean up and consolidate but they override to the same custom application, and it is not

...

  • 910 Posts
  • 36 Subscriptions
Top Solution Authors
Top Liked Authors