This website uses cookies essential to its operation, for analytics, and for personalized content. By continuing to browse this site, you acknowledge the use of cookies. For details on cookie usage on our site, read our Privacy Policy
I'm seeing the error within the System Log widget on the dashboard. It's fine to turn it off, but the fact that I'm getting an error makes me think I have another issue. Is there a way to tell which interface on the PAN is being used to query DNS? Our internal DNS happen to be on segments directly connected to the PAN's, but I'm not seeing the traffic in the logs (from that PAN interface). It's going to take me a while to go through all of the interfaces to see which one is being used. I also checked for the management interface .. also not in the logs (for application dns).
... View more
Yikes. So I've noticed something on my systems. When I issue a "request resolve address <address>" command, any system that can respond with an IPv6 address returns a value immediately. Any system that can only respond with an IPv4 address takes ~9 seconds to return the information. I'm looking in to that now.
... View more
Have you been able to resolve this? I've pretty much ignored it for months on my systems. I just upgraded to 8.1.3 and, at least, they fixed the "diskable" typo, but I'm still getting the warning. I cannot find the reports it is flagging .. even searching the XML configuration code.
... View more
Last week I ran an ACC report for the top 25 applications. Netflix was #3 (university environment, so it's to be expected). Today, I ran the same report and Netflix (as an application) is no where to be found. I launched Netflix on my computer to generate some traffic and I'm not seeing it (I waited 20 minutes to make sure the session was ended and logged). I've tried searching, but I don't see any modifications to the application. Any reason this isn't showing up any more? PA-5050 @ PANOS 5.0.10 -Brian
... View more
The last I heard, this is not officially supported. However, if one did do it, two pairs of 100Mbs media converters would be the way to go. Hypothetically. You can also throw them into a layer-2 DEDICATED VLAN, if you don't have dedicated fiber between the devices. You need to make sure latency is very low though, or you're going to end up with both FW's going active.
... View more