Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

BI-DIRECTIONAL STATIC NAT NOT WORKING

Hi,

 

I have the following situation I want to do a bi-directional NAT for a complete subnet range.

I want to translate 192.168.96.0/24  -->  10.196.96.0/24 :   

   192.196.96.1  --> 10.196.96.1

    192.168.96.2 --> 10.196.96.2

... 

And this in both

...

zGomez_0-1698767701056.png
zGomez_1-1698767778179.png
zGomez by L3 Networker
  • 2377 Views
  • 1 replies
  • 0 Likes

Resolved! DDOS / DOS Protection

Is there any benefit of placing an additional firewall on the OUTSIDE of the customer's internet/external router? There is already a perimeter firewall on the inside of this router.

(Proposed additional firewall running virtual wire) <---> External R

...

Resolved! Decommission IPSec site to site VPN

Hi All,

 

I have been looking at the best way to decommission VPN tunnels on Palo Alto firewall, and I could only find disabling the IKE phase1 and the IPSec tunnels. is there a recommended way to decom IPSec VPN tunnels on Palo Alto firewalls?

 

Tha

...

PALO ALTO 200 takes time to fail over

 

Hi All,

 

We have a OLD Palo Alto 200 on one of our sites in OKI. We performed an annual fail over test last week.

 

Here is what happened which is weird on panorama Secondary Firewall is showing as a Primary and it was on color red while the prima

...

weezy by L3 Networker
  • 1133 Views
  • 0 replies
  • 0 Likes

BGP route map

Hello

 

Here is a simple use case.

 

I have 3 palo, on 3 DC, and for each DC i have a router from on ISP with one single /28 public IP network.

 

One computer can move from one DC to one DC. For exposed server, behind a NAT, i am trying to advertise

...

XFF

Hi

I am hosting a website behind ngfw.

The traffic comes from google load balancer, and i would like to LOG ONLY the x-forward IP (the original).

I have used this kb: https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-admin/policy/identify-users-co

...

chens by L3 Networker
  • 1158 Views
  • 1 replies
  • 0 Likes
  • 1691 Posts
  • 55 Subscriptions
Top Solution Authors