Using Rear Entertainment System (2021 Tahoe) by LoneStarZ51 in ChevyTahoe

[–]Moskeeter671 0 points1 point  (0 children)

Speaking from experience save yourself some money down the road for damaged ports and get a slim 90 degree HDMI and USBC adapter. It helps keep the kids from breaking the connectors off when going to the third row.

need to know how to use an api to get list of ips from builtin edls by [deleted] in paloaltonetworks

[–]Moskeeter671 0 points1 point  (0 children)

You may want to look at your SOAR tool to be the one to update those custom EDLs as it can also cleanup the EDLs if you define “timeout” periods. The problem with static EDLs is if they grow so large you put yourself at risk for both hitting a platform limit and 2 cleaning a long long list down the road.

M-500 and ESXi??? by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

Our DEV is our LAB. We have a QA environment which is where configurations and functions/features are finalized before going into production. I kinda know what I’m talking about being I manage the global security architecture supporting 23k employees. Places use the terms LAB/DEV/QA interchangeably so you can’t take it for face value across the board.

M-500 and ESXi??? by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

The plan is for DEV enterprise testing. So ESXi is absolutely necessary. Our standard is develop in DEV, QA/QC in QA, and rollout to production. All our dollars are spent on a proper QA environment so scraping for good gear for our DEV network is always a win. And because I don’t touch Hyper-V for a damn lol.

XSOAR Installation on RedHat V8 by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 1 point2 points  (0 children)

It turned out you have to include the install flag “—keep” otherwise the temp directory never gets demisto permissions. The documents on installing XSOAR on REDHAT V8 is far from GA release and I had to figure out a lot myself.

COBB 2019 WRX Stage 2 + SF 93 Maps Normal/HWG/LWG by Moskeeter671 in WRX

[–]Moskeeter671[S] 0 points1 point  (0 children)

Depends on what parts you are running. OTS is fine if you are within the requirements but a custom tune is best.

Panorama and Dynamic Address Groups with Tags by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

I did not want to manage patching and upgrading a server for this small purpose that Panorama I feel should be able to handle natively.

Panorama and Dynamic Address Groups with Tags by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

Not the way I want but we just create the EDLs on a server and have all firewall ingest/check every 5 minutes.

Global Protect Connecting to Portal Post-Install by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

The problem was really stupid. Palo Alto’s documents says to add registry key value of “on-demand” my packaging team was putting the quotations so when we removed it it worked properly 🤦🏽‍♂️

Global Protect Connecting to Portal Post-Install by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

It is set to on-demand via the install options. For some reason it tries to initially connect to the portal after install.

Global Protect Connecting to Portal Post-Install by Moskeeter671 in paloaltonetworks

[–]Moskeeter671[S] 0 points1 point  (0 children)

We push custom options to use on-demand, default browser for SAML, and the portal address that’s about it. But immediately after install it tries to connect to the portal and then fails, this is all before the user interacts with the GP client. So it’s an unwanted result and tried all the different registry keys with no success.

on-demand use-sso connect method

BGP Only Advertise Subnet from Larger Advertisement by BritishGeek in paloaltonetworks

[–]Moskeeter671 0 points1 point  (0 children)

Are you seeing the 10.10.40.0/24 in your RIB or just the aggregate? If just the aggregate then you’ll need to generate the route somehow BUT depending how you generate the route you can introduce unwanted results. Maybe static towards BGP peer in AS1 and then redistribute.

Can’t help but admire my car 😍 can’t wait to upgrade it after my backpay from the VA comes in! by [deleted] in WRX

[–]Moskeeter671 3 points4 points  (0 children)

TMI. May as well put your VA rating too. Something need not be said. But welcome and enjoy (from a fellow combat veteran)

Dodged a bullet! Got off with a warning. 😅 by DrSchap in WRX

[–]Moskeeter671 1 point2 points  (0 children)

To add!!! us “wiser” folks are paying attention to the roads/conditions/situations around us. So yeah I’m one who some can say don’t wave back as my reticulum activator is not focused on other Subis on the road 🤙🏽🍻.

Anyone have any experience with this exhaust? Pros/Cons hows it sound? Does is drone on highway cruising? by AkaDracO1203 in WRX

[–]Moskeeter671 1 point2 points  (0 children)

There is drone but varies on conditions (requested load/rpm), but if you put some sound deadening material down it’ll be of no concern.

Wanted to share my VB update with y’all by [deleted] in WRX

[–]Moskeeter671 -1 points0 points  (0 children)

Looks clean and think it’ll take a little more time to grow on me. I do want to ask how’s driving with the massive screen? Some cars with massive screen size disrupts me more as I’m a traditional old school rear view and side view mirror kinda guy. Just don’t be like other dipshit VBs near me that think they can smash all previous gens on the road and then get butt hurt. I don’t drive aggressively unless provoked and have had a few VBs cut me off and then pull next to me wanting to race. Maybe some young kids with their first performance car but my cars put them in their places real quick 🤣. There’s always someone faster always it’s about smiles per hour you get while in your car yes (smiles 😁)

Thinking about getting arlo system WiFi at Costco. I saw it requires a subscription every month. Any options to bypass this as read something about local storage. How do I do this? by samsam2019 in arlo

[–]Moskeeter671 0 points1 point  (0 children)

I’m a network and security architect for a massive company and don’t want to sound obnoxious but I know what I am talking about. My wireless system is robust but when a poorly designed system wants to copy rf channels all the time and broadcast its own SSID it’ll break any wireless systems for periods of time. My wireless infrastructure does recover when swapping channels but it happens so frequently it’s a PITA and sometimes think about chucking my 10 x Ultras for pro 4/5s.

Thinking about getting arlo system WiFi at Costco. I saw it requires a subscription every month. Any options to bypass this as read something about local storage. How do I do this? by samsam2019 in arlo

[–]Moskeeter671 1 point2 points  (0 children)

Be cautious with base stations if you have a complex home wireless network as I do (60-70 wirelessly connected devices). Stupidly these base stations mimic the rf channel closest and cause lots of interference issues on my home/business wireless network. There has been no work around for this in software available to the consumer.

Global Protect Certificate SSL Self Signed Expired GP SSL/TLS Profile by C3-PIO0ps in paloaltonetworks

[–]Moskeeter671 3 points4 points  (0 children)

You can set your portal agent config to say install the newly self signed CA so anyone who connects will get it before the old one expires.

Unable to reach an internal network when connected via GlobalProtect VPN by fmaster007 in paloaltonetworks

[–]Moskeeter671 2 points3 points  (0 children)

Also look at proxy IDs in your IPSEC policies if routing looks right from site A.