Archive for Blog - page 5

L’importazione del certificato è riuscita ma non è visibile nella GUI o nella CLI.

L’importazione del certificato è riuscita ma non è visibile nella GUI o nella CLI.

Dopo aver importato un certificato locale, viene visualizzato il messaggio “Importato con successo…”, ma il certificato non è visibile nella GUI e in qualche versione neanche nella CLI. Se proviamo a reimportarlo, riceviamo il messaggio che il certificato è già presente. Il problema è la…

Continue reading →

Joining an Active Directory: A Packet Capture

What happens on the network if you’re joining a Microsoft Active Directory domain? Which protocols are used? As I suspected, it’s a bit more complex than just seeing a single known protocol like HTTPS. 😉 Since a PCAP is worth a thousand words, I captured…

Continue reading →

Getting started with the APIs from Palo Alto Ntwks

You can talk to firewalls and Panorama from Palo Alto Networks in various ways. The well-known GUI (which I really love, by the way) and the CLI are quite common at first glance. Nearly everyone using the Palos is familiar with these configuration options. When…

Continue reading →

iPad Ping: WLAN vs. LAN

Meine Kids spielen derzeit häufig Brawl Stars, ein Echtzeit Onlinespiel. Und sie schauen auch immer mal Videos dazu, bei denen ihnen jetzt der Floh ins Ohr gesetzt wurde, dass man ein iPad ja auch per LAN-Adapter mit einem Netzwerkkabel ausstatten kann, was ja den Ping…

Continue reading →

PANW: Dynamic Routing between Logical Routers

How to route traffic between multiple logical routers aka Inter-LR Routing on a Palo Alto Networks Strata firewall? More precisely, inclusive route redistribution rather than a few static routes. –> Via iBGP through loopback interfaces. Let’s go: Setup Notes The advanced routing engine… Source link…

Continue reading →

BGP Route Filtering with Palo’s Advanced Routing Engine (ARE)

With PAN-OS 10.2, Palo Alto Networks has introduced the “Advanced Routing Engine” (ARE) with its “Logical Routers” (LR) rather than the legacy “Virtual Routers” (VR). The Advanced Routing Engine simplifies operations with a standards-based configuration, which reduces your learning curve since… Source link Author: legendary…

Continue reading →

Misusing Palo’s Captive Portal as a Guest Wi-Fi Welcome Page

I was faced with an interesting customer requirement: An existing guest Wi-Fi should be prefaced with a welcome page for accepting the terms and conditions. Since there was already a Palo Alto Networks firewall in place, could we perhaps use its captive portal directly for…

Continue reading →

Dynamic DNS on a Palo

With PAN-OS 9.0 (quite some time ago), Palo Alto Networks has added Dynamic DNS for a firewall’s interfaces. That is: If your Internet-facing WAN interface gets a dynamic IP address via DHCP or PPPoE (rather than statically configured), the firewall updates this IP address to…

Continue reading →

Page 5 of 10 ← First ... 3 4 5 6 7 ... Last →