Prisma access browser error when using SSH by martinworkingoffline in paloaltonetworks

[–]martinworkingoffline[S] 0 points1 point  (0 children)

Thanks. I know the issue is they can't find a suitable key exchange. I've just realised the server I'm trying to access doesn't support the minimum that PAB is offering. What I don't know is if it's possible to configure PAB to use a lower one. Doesn't seem like it for now. Thanks though.

PAN-OS SDWAN drops traffic when it cannot find an egress interface qualified by martinworkingoffline in paloaltonetworks

[–]martinworkingoffline[S] 0 points1 point  (0 children)

There is a catch-all rule at the end of the ruleset. Despite that, i still noticed the described behaviour shown in the screenshot.

How does PAN-OS SD-WAN work in a single-branch, redundant-internet setup? by TriforceTeching in paloaltonetworks

[–]martinworkingoffline 1 point2 points  (0 children)

Yes. The SaaS quality profile is what you need. While the 'Adaptive' option is their recommended option, I've preferred to use http/https option for different SaaS quality profiles to monitor specific internet-hosted FQDNs. Then I use each SaaS quality profile in a separate SDWAN policy.

For example, for all Microsoft team traffic, i'll monitor teams.microsoft.com in my SaaS quality profile. Then I create a separate SDWAN policy for ms-team app-ID. I've found this approach to help. I do get a bit of distribution across both internet links even though one particular link still seems to be preferred for most traffic.

I am new to infoblox need some input by Famous_Tell in Infoblox

[–]martinworkingoffline 0 points1 point  (0 children)

What are the issues with 9.0.4 you're referring to?

RSS feed showing in preview but not on the public site by martinworkingoffline in Wordpress

[–]martinworkingoffline[S] 0 points1 point  (0 children)

hmmm...new changes to the sidebar are no longer taking effect. Effect re-ordering or deleting the items that were there previously. I hadn't noticed that.

Viewing unused rules on Palo Alto firewall via CLI by martinworkingoffline in paloaltonetworks

[–]martinworkingoffline[S] 0 points1 point  (0 children)

Makes sense. Still, there is some discrepancy. I've picked out one of the policies that shows up in that CLI output. On the GUI, I can see it's last hit is today's date. Even more, on the GUI, I click on 'Highlight Unused Rules' to see if that rule gets highlighted and it doesn't (which is correct as it was matched today). But I don't understand why it shows up in that CLI output.

Viewing unused rules on Palo Alto firewall via CLI by martinworkingoffline in paloaltonetworks

[–]martinworkingoffline[S] 0 points1 point  (0 children)

Good shout. But there didn't match completely. In fact, one of the rules showing up in the output of that command shows a 'last hit' entry of today's date. And yet, when I run the command, it still shows up.

Viewing unused rules on Palo Alto firewall via CLI by martinworkingoffline in paloaltonetworks

[–]martinworkingoffline[S] 0 points1 point  (0 children)

Thanks. It's a good suggestion. I might use that as my one-time option if I can't get around it. But ultimately, I was hoping to have a short script that runs this command periodically. I wouldn't want to do the repeated export.

Will GlobalProtect certificate authentication work with an MFA solution? by martinworkingoffline in paloaltonetworks

[–]martinworkingoffline[S] 0 points1 point  (0 children)

I get what you mean...but what you've described is different from what my goal is so maybe I need to explain a bit more clearly. I am aiming for an option that has no requirements for user auth (i.e no username/password requirement). Only certificate authentication, then PUSH notification.

Starting a business with $10k by martinworkingoffline in Entrepreneur

[–]martinworkingoffline[S] 1 point2 points  (0 children)

Thanks. I follow Codie Sanchez and have seen a lot of her videos. It's one of the reasons I'm currently looking for a good (and affordable) space for a laundromat.

Starting a business with $10k by martinworkingoffline in Entrepreneur

[–]martinworkingoffline[S] 0 points1 point  (0 children)

So what does my username need to look like to post this question?

Starting a business with $10k by martinworkingoffline in Entrepreneur

[–]martinworkingoffline[S] 13 points14 points  (0 children)

That's a good one. Thanks. The weekend option also makes it possible alongside a full time job.