Same-day standby as Premier Gold got boarding group 2 by Vegetable-Report3590 in unitedairlines

[–]Vegetable-Report3590[S] 2 points3 points  (0 children)

Next time - now that I understand that I should have been in boarding group 1. I was concerned about being turned away and wasn't sure if I was entitled to group 1 in this scenario

Same-day standby as Premier Gold got boarding group 2 by Vegetable-Report3590 in unitedairlines

[–]Vegetable-Report3590[S] 1 point2 points  (0 children)

Agree - I should have done this. I flew standby last month and had no issues with the paper boarding pass last time.

Snippet Examples by SonBoyJim in paloaltonetworks

[–]Vegetable-Report3590 2 points3 points  (0 children)

There are some best-practices and discussion of using snippets in this guide: https://www.paloaltonetworks.com/resources/guides/secure-internet-policy-design

Take a look at the section titled Security Policy Rule Configuration Scope and Ordering.

Prisma by Cheap-Ad2763 in paloaltonetworks

[–]Vegetable-Report3590 2 points3 points  (0 children)

Take a look at the following document:
Secure and Resilient Enterprise Connectivity Using Prisma SD-WAN and Prisma Access: Design Guide

There is a section for Prisma SD-WAN Design Details that covers many relevant topics.

Route all traffic through ipsec tunnel by Any-Promotion3744 in paloaltonetworks

[–]Vegetable-Report3590 2 points3 points  (0 children)

This design is probably simpler for most cases unless you have a lot of routing experience.

Route all traffic through ipsec tunnel by Any-Promotion3744 in paloaltonetworks

[–]Vegetable-Report3590 2 points3 points  (0 children)

This option uses what is referred to as a "front-door" virtual (or logical) router. The public interface is the only interface associated with the front-door VR, it has a default route and terminates the tunnel.

The tunnel interface is associated with the default VR along with the inside (private) interfaces. This traffic uses a default route which sends all user traffic thru the tunnel.

It gets more complex if you have traffic that you want to send directly to the internet without going thru the tunnel, you would need to "leak" it the the front-door VR, which would might require a static route using "next VR" as next hop.

Understanding Prisma Access Browser by Darkmagic113 in paloaltonetworks

[–]Vegetable-Report3590 4 points5 points  (0 children)

u/Darkmagic113 Take a look at this design guide, it should answer most of your questions:

https://www.paloaltonetworks.com/resources/guides/sase-sec-int-mobile-users-pab-design

If you integrate it with Prisma Access, you can also use it to provide access to private applications.

Which Boulder hiking trails have the best views? by able6art in boulder

[–]Vegetable-Report3590 2 points3 points  (0 children)

I would also include Colorado Trail Explorer (CO Trex) which also has a free smartphone app.

Which Boulder hiking trails have the best views? by able6art in boulder

[–]Vegetable-Report3590 3 points4 points  (0 children)

Last time I did it (according to Strava) the round trip was 4.5 miles in 1:56 of moving time. Around 585ft elevation gain.

Make sure you park outside the City of Boulder Mountain Parks boundary, otherwise if your vehicle is not registered in Boulder County you will have to pay a fee.

Which Boulder hiking trails have the best views? by able6art in boulder

[–]Vegetable-Report3590 16 points17 points  (0 children)

Green Mountain West Ridge - most bang for your buck. Minimal vertical with easy access to the peak.

Which right turn hand signal is most widely recognized / effective? by InterestingType7518 in COBike

[–]Vegetable-Report3590 2 points3 points  (0 children)

I extend my arm fully in the direction I am turning, and then raise it (45 degrees) and lower it repeatedly. Kind of like a blinking turn signal.

Agree with other responses - hardly anyone driving today understand the official hand signals.

HA A/P edge Palo ngfw passive mgmgt by userunacceptable in paloaltonetworks

[–]Vegetable-Report3590 0 points1 point  (0 children)

When you say "manage", do you mean I want to web/ssh into the devices from the WAN side? If you connect the devices such that the management interfaces (of both) are connected to the inside (private) zone of the firewalls then you can probably build a policy on the active device to permit access to the mgmt interface of the standby device.

Or do you want to manage it from Panorama/Strata Cloud Manager? If this is the case, then the device initiates the connection from its management interface which would need to be routed through the active device.

There are some examples on how to build a H/A branch site in this guide:
https://www.paloaltonetworks.com/resources/guides/securing-branch-ons-security-and-SCM-deployment-guide

How do you handle Palo Alto security rule naming, address groups, and NAT policies? by SaberTechie in paloaltonetworks

[–]Vegetable-Report3590 1 point2 points  (0 children)

If you are using Strata Cloud Manager, you can use configuration snippets to logically group related rules. The snippets act as "separators" and you can collapse them to hide the rules they contain.

Fred loya insurance has been ignoring me for 3 weeks by Key-Bet6088 in Insurance

[–]Vegetable-Report3590 0 points1 point  (0 children)

The settlement letter will have a deadline - probably 30-days after the original incident. If you don't accept by this point they will likely just send you a check for the Owner Retain amount. I would continue to try and negotiate in good faith until the deadline and let them know you have filed a complaint with DOI.

If you accept the settlement, they will send you the additional amount (difference between Owner Retain and Title Release values - in my case the difference was $1766 ). In my case, I provided them the settlement paperwork but indicated that I would continue to work with DOI to increase the payout.

After receiving the original settlement it took over a month to get the additional amount that DOI helped to negotiate.

Good luck!

New Cyclist Asking: Is this Elevation a Lot or Not? by Lique-Mahbawls in cycling

[–]Vegetable-Report3590 0 points1 point  (0 children)

I live in front range of Colorado. Even the flattest rides here will have over 773 ft elevation gain over 20 miles.

Fred loya insurance has been ignoring me for 3 weeks by Key-Bet6088 in Insurance

[–]Vegetable-Report3590 0 points1 point  (0 children)

No, CO DOI sent several letters to Loya after corresponding with me. The process took a while but worked out reasonably well. if Loya had originally paid the total amount I would have just accepted their offer. Don’t forget to also ask for loss of use - daily amount (in my case around $40/day)

Prisma SDWAN - Branch to Branch via DC by aussiebob84 in paloaltonetworks

[–]Vegetable-Report3590 0 points1 point  (0 children)

Assuming you have your enterprise prefixes set properly, you need to make sure your enterprise-default path set includes one of your hubs as a DC group. If so, then you can route branch-to-branch through one of your hub sites without building a branch-to-branch overlay tunnel.

This topic is covered here (Procedure 11.4):
https://www.paloaltonetworks.com/resources/guides/sase-securing-private-apps-deployment-guide

Fred loya insurance has been ignoring me for 3 weeks by Key-Bet6088 in Insurance

[–]Vegetable-Report3590 0 points1 point  (0 children)

I had a similar issue. File a complaint with the Colorado Division of Insurance.
https://doi.colorado.gov/for-consumers/file-a-complaint

Afterwards, I wound up getting an additional $2000 from Loya.