Can anyone report successfully passing these tests?:
And what combination of settings did it?
Default Multi-Level-Encoding BLOCKING doesnt seem to catch what http://metal.fortiguard.com/ is doing.
... View more
Has anyone seen this issue? We have had this issue for months with no relief and am at my wits end. Forgive me if my frustration comes through...... what happens is this: A remote user will login to VPN web page and click the link to download the GP client then..... *poof*! All traffic in every direction stops. ALL the PAN layer 3 interfaces stop pinging. everything except management plane. It stays like this for about 5 minutes then *poof*! everything is back. NO errors, NOTHING. The users download has failed but i cant deal with that because my phone is ringing like crazy. I know what your thinking, its you, not PAN. Well, keep in mind we run these checks against the PAN appliance from every direction(dmz,internal,etc). And from each direction we show PAN’s layer 3 interfaces all going dark(no pings) at the same. Crazy right? Im saying this is not just “TRUST” side but also from the “DMZ” side AND External side. all angles, different networks, switches, everything. its as if PAN appliance disappears from network. EXCEPT management plane. which shows no errors. zero traffic, but no errors. HA! Oh btw, the directly connected switches are not related and have redundant power. we even received a new RMA PA-2050 appliance and updated all PANOS software to the latest versions., we Imported our configuration snapshot and moved cables over to appliance around 4pm yesterday….by 9:15 pm the appliance demonstrated the exact same behavior. That is, All traffic in all direction stopped for about 5 minutes when someone initiated a download of the VPN client software . before you ask(Forgive me if my frustration comes through......): yes, The current version is installed. This problem has been with us for a LONG time so this issue has existed in every version of 6.x.x. at least. yes, i have factory reset the appliance and reloaded config. no, it does not happen every-time the client is downloaded, just sometimes. no, the PAN is not being utilized at or near its stated throughput (in fact this will happen late at night too when nearly no load is on the appliance) yes, i have a case open with pan support. for months in fact. NO, I did not check my switch on the ________ zone/side for setting _______. Listen, i have different model switches (from different manf) on each zone. they are not connected, and I have redundant power supplies, if you think there is a chance my 3 separate unrelated switches all failed in same way at same time then.... well, just think about it.
... View more