Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.
About Next-Generation Firewall Discussions
Palo Alto Networks Next-Generation Firewalls provide true, complete visibility everywhere, along with precise policy control. Ask your questions or provide insightful answers in the discussion forum specific to NGFW.

Discussions

Resolved! Selecting Appropriate Security Profile

I am planning to make a group profile of security profiles which include, Vulnerability protection , antivirus , anti spyware and wildfire analysis profile. I am planning to provide same group for every policy in firewall. I have few questions on thi

...

Aaida by L1 Bithead
  • 1716 Views
  • 2 replies
  • 0 Likes

Resolved! Client ikemgr phase 1 failure

Dear All,

 

Below is summary of issue and resolution.

 

1. We added a new firewall to HA set-up.

2. HA was established properly.

3. While doing config sync from active to passive it was falling with error Client ikemgr phase 1 failure

 

Resolution:

U

...

FW Recommendation version

Kindly note that we found the below vulnerabilities in our boxes .

 

Model                                  PA-5020

Software Version            8.1.20

 

what is the recommended version and upgrade path .

EOL/Obsolete Operating System: Palo Alto Netw

...

Panorama fragmentation

Hi,
If the checkbox for Fragmented traffic is uncheck, does that mean that the fw will not discard fragmented traffic? 

 

I have a case where someone says "10.154.74.0/23: We can not send from, or send to,  packages bigger than 1472. All ports are de

...

Richard_M_3-1684146287887.png
Richard_M_2-1684146274804.png

Interface Monitoring

We have total 3 Interface ,  two ISP interface ( In router we have made them to act as Primary and Secondary) and one trust interface , now the confusion is I am trying to make if both ISP interface goes down , I need to make my trust interface also

...

Sujanya by L3 Networker
  • 2749 Views
  • 4 replies
  • 0 Likes
  • 1608 Posts
  • 53 Subscriptions