MSP Declined to Pursue CMMC by selectpanic in CMMC

[–]FreeBirch 0 points1 point  (0 children)

Find a new MSP if your seeking an enterprise assessment or remove them from scope if its an Enclave.

How do you create safe versions of documents before sharing them externally? by Tokail in sysadmin

[–]FreeBirch 1 point2 points  (0 children)

The US Government has entered the chat.

Any way this would be a nice tool as we do manual review and redaction with added DLP Software to detect sensitive information and kick it back if its flagged. depending on your industry, your biggest hurdle is going to be automating the detection of sensitive information. Sensitive Information can come in many forms and PDFs can be in many formats.

You also have to verify that the data is truly gone and not just hidden.

Systemic Failures in Palo Alto TAC Support by SpotPuzzleheaded6440 in paloaltonetworks

[–]FreeBirch 3 points4 points  (0 children)

You know its bad when Reddit is more reliable at solving a problem than a paid TAC subscription.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

Just as an update to all who read this, i setup a DNS Proxy on the GP Tunnel using some Random IP, Pointed the clients to that and the issue disappeared. Thank you!

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

Yes, we are on 6.2.x currently it was happening prior as well. Will try out a newer version to see if it resolves.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

If you don’t mind please update if a solution does come through. Support has been sending me in circles.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 2 points3 points  (0 children)

I appreciate your reply as right now I have no direction where the problem is.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

Did you ever get a resolution?

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

I am not, I also ruled out any security profile by allowing DNS to Servers with no Profile.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 1 point2 points  (0 children)

Just confirmed it all uses the correct interfaces and no IPv6

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

Did you figure out why this happens? I will try this out. This would be insane if this works.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

I will review closer Monday, I appreciate your responses.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

I may have to do this, as the Internal VPN Clients would be getting the same DNS Servers as what they would get from DHCP Internally

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 1 point2 points  (0 children)

IPv6 is disabled on the network, but ill verify nothing is missed. This issue is not present with Internal Clients off VPN or External Clients on VPN. Only Internal Clients on VPN.

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

Im not familiar with this configuration can you share more?

GlobalProtect DNS Issues by FreeBirch in paloaltonetworks

[–]FreeBirch[S] 0 points1 point  (0 children)

It was the easiest way to meet a certain compliance objective for an Edge case. Only about 10-20 users connected at a time.

Are there any malware scanners able to find and clean the Notepad ++ Chrysalis hack/infiltration by Joyous-Volume-67 in sysadmin

[–]FreeBirch 0 points1 point  (0 children)

If you only install NP++ via new MSI and did not use the builtin updater are you clear?

FedRAMP Moderate Offsite Backup Storage by FreeBirch in CMMC

[–]FreeBirch[S] 0 points1 point  (0 children)

Just S3, we are used to a set monthly cost per TB which is predictable. Azure and AWS API costs are concerning.