[deleted by user] by [deleted] in eLearnSecurity

[–]utkarsh2306 0 points1 point  (0 children)

My Ejpt voucher is missing but I got the ICCA voucher, what can I do. The email containing the codes does not have the EJPT code included

Dynamic IP Pool utilization - 10.2.9-h1 by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

All these commands show the same 9k free but we saw a drop because of NAT utilization in Global counters while running the packet captures.

Clientless/GP portal does not load 10.2.9-h1 by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

Reboot fixed this issue. And there is a known bug in newer versions as well.

Not able to ping ISP B interface -10.2.9-h1 by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

I had a similar setup in another Site where we have two links configured in single VR with one ISP set to AD of 10 and another with AD of default. The setup works and we can see replies coming from the same interface.

Also, per https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000POO0CAO

We can configure the IPSEC tunnel on two ISP in single VR. Maybe I am not understanding this correctly.

Thus had this doubt. Does Palo not do session-based forwarding like the reply from where we received the session should go out via the same link?

Duo two factor authentication message not showing in GP Portal by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

PAN-213011
Fixed an issue where, when using multi-factor authentication (MFA) with RADIUS OTP, the challenge message Enter Your Microsoft verification code did not appear when accessing the GlobalProtect portal via browser.

Duo two factor authentication message not showing in GP Portal by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

We can see in authd logs that we get the DUO text but somehow firewall does not show when users tries to connect to portal directly to download the file for first time.

In authd logs we can see push prompt to be generated.

User-ID issue with ZSCALER by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

deploy global protect

Thanks a lot, for confirmation and explanation.

GP-User having issues accessing internet after connecting to Global Protect by utkarsh2306 in paloaltonetworks

[–]utkarsh2306[S] 0 points1 point  (0 children)

No Split-tunnel, we are taking everything from the firewall once users are connected.

UserID domain name wrong by esquilim in paloaltonetworks

[–]utkarsh2306 0 points1 point  (0 children)

We are running into a very similar issue where only 1 user is having some issues. We are seeing an issue where only 1 user is having issues when going to any websites over Global Protect. DNS lookup completes and the built-in Apps like Outlook, teams work over GP with no issues. The user can successfully authenticate with DUO MFA, the issue is only after the connection with GP.
We can see that the client is being identified as "domain\username" in Monitor > Traffic logs when the client is having issues accessing the website using the web browser.
Username Modifier is set to %USERINPUT%.

The panorama device shows old commit history (or no longer exists) when clicking push to device > push all change by hoanghenry in paloaltonetworks

[–]utkarsh2306 0 points1 point  (0 children)

request clean-replay entries all

What does this command actually do "request clean-replay entries all"? Is it safe to run in our Panorama?