This website uses cookies essential to its operation, for analytics, and for personalized content. By continuing to browse this site, you acknowledge the use of cookies. For details on cookie usage on our site, read our Privacy Policy
Hi Steven, thank you for your warm welcome and especially for the link to the real good overview document. By reading the document I've found that we've done a lot of things the right way - thanks to our consultant. Additionally my understanding of the system has been improved with the document. Nevertheless I guess that it needs even more experience with the system to feel real confident. oklier has pointed out the interessting topic: How to move forward from the "default" setting without causing to much trouble for users and IT. So more answers are appreciated. Maybe some other end users share their experience. Best regards Thomas
... View more
Hi Commuity, I'm looking for your tips and hints regarding TP best practices. (hopefully this newbee question is not too bad :smileyconfused:) Let me explain our setup: As a first step to a new IT Security Infrastructure we are running a HA-pair of PA-3050 in an "IPS Mode" behind our current firewalls. From configuration point of view it means that we have a set of virtual wires with "allow any / inspect all" rules. The security profiles are currently copies of the "default" profiels for antivirus, anti-spyware and vulnerability protection. Basically this works fine since we've started: Only a few actions beside "alert" which had no impact on normal operations. But what about the lots of "alerts"? Do we need to reserch on each and every of them? Shall we tune the rules? Is the "default" setting still ok? Or are you running more in "strict" mode? Right now I'm a little bit confused. Which might be also related so some of the "not so perfect" AV and TP Updates of the last days. Please help me to get out and to makes best use of our PAs. Best Regrads Thomas
... View more
Hi, I can confirm this. With R1470 we've seen thousands of logged virus threats with one day on our new PA 3050. Today with R1471 everything is fine again. For us as brand new customer this was quite suprising :smileyconfused: Best regards Thomas
... View more