Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Palo Alto Cluster Upgrade

Hi All,

 

Our current setup is We have Active/Passive on main dc and standalone fw on DR site. Configured as Cluster.

 

It is identified that the DR site is affected by a certain CVE, and it is recommended for upgrade. But we also wish to upgrade the

...

SSL Forward Proxy Problems

Hello.

I'm seeking some guidance from those who have configured this, and have it working.

I'm trying to configure the SSL forward proxy feature, to decrypt web traffic.

I can get this working no problems using a self signed certificate, but this is

...

JDavis36 by L0 Member
  • 1287 Views
  • 1 replies
  • 0 Likes

Cant reset PA820 NGFW

Hi All

 

I don t have the correct credentials to log into my PA 820 and resorted to resetting the device . However upon restarting the firewall , I m not being presented with the option to enter maintenance mode ( Enter "maint" to boot to main partit

...

Network

Hi Team,

 

Yesterday evening, Our device was gone down in between 4:00PM to 5:50 Pm.
If we check its STS light is showing orange. We rebooted the device once but not getting any output . But after few minutes STS light shown green. confirm the RCA of
...

BI-DIRECTIONAL STATIC NAT NOT WORKING

Hi,

 

I have the following situation I want to do a bi-directional NAT for a complete subnet range.

I want to translate 192.168.96.0/24  -->  10.196.96.0/24 :   

   192.196.96.1  --> 10.196.96.1

    192.168.96.2 --> 10.196.96.2

... 

And this in both

...

zGomez_0-1698767701056.png
zGomez_1-1698767778179.png
zGomez by L3 Networker
  • 1686 Views
  • 1 replies
  • 0 Likes

Resolved! DDOS / DOS Protection

Is there any benefit of placing an additional firewall on the OUTSIDE of the customer's internet/external router? There is already a perimeter firewall on the inside of this router.

(Proposed additional firewall running virtual wire) <---> External R

...

Resolved! Decommission IPSec site to site VPN

Hi All,

 

I have been looking at the best way to decommission VPN tunnels on Palo Alto firewall, and I could only find disabling the IKE phase1 and the IPSec tunnels. is there a recommended way to decom IPSec VPN tunnels on Palo Alto firewalls?

 

Tha

...

  • 1401 Posts
  • 48 Subscriptions