Panorama Best Practices Assessment
12:32
Virtual Panorama Log Collector Setup
4:23
PAN-OS upgrade lab
15:30
4 жыл бұрын
Пікірлер
@르브론시몬스
@르브론시몬스 Ай бұрын
Your PC desktop specs are important CPU, RAM
@SamuelPearson-rk9bn
@SamuelPearson-rk9bn Ай бұрын
This may be two years old, but boy did it help me today with exactly this. Thank you!
@HaiTran-fi1uc
@HaiTran-fi1uc Ай бұрын
so I did this same thing, but the file upload is still being allowed to google drive from my client machine, my lab client is sitting behind my firewall, and I've configured a NAT policy on the firewall to allow internet access from my client machine to the internet, and have tied the data filtering profile I created to the outbound security policy rule, not sure what I am doing wrong? I am doing this in my job's lab environment. I don't think decryption is required (as you did not configured decryption and access g-drive using https (encrypted)), but you were using PAN-OS 9.1 and I am using PAN-OS 10.X not sure if it makes a difference?
@ryanhoffmann4712
@ryanhoffmann4712 Ай бұрын
How did you get the server to boot to the m.2 ssd?
@sinisapodunavac437
@sinisapodunavac437 2 ай бұрын
thank you, worked perfectly
@veerabsc
@veerabsc 4 ай бұрын
EDL? 😂
@ramothkuissiTAMBO
@ramothkuissiTAMBO 4 ай бұрын
Bravoooo!
@imrancisco1
@imrancisco1 4 ай бұрын
Hi great video How the GP will work with PKI certificates? How it will work with existing machine certificates on the client machines? We have 12k users and we do not want to create new certificates and just want to using existing machine/user certificates
@ksrikanth7928
@ksrikanth7928 4 ай бұрын
Hi Matt, When adding devices to Panorama, the primary device is connected but the passive device is shown as disconnected. Can you help me with this problem?
@justinwalsh5040
@justinwalsh5040 5 ай бұрын
excellent video very important advice regarding importing HA-pair that alot of other demos dont factor in
@jimcouchmusic
@jimcouchmusic 5 ай бұрын
Fantastic videos. I'm mostly watching for the info on templates because in importing all our firewalls into Panorama, we seem to have made a mess of them. But my question is about shared objects. One of those that we imported have a GREAT deal of objects that we imported as shared. You said in the video that, in the reverse situation, we can always move them into the shared objects... can you move them out of shared so that they are no longer shared? How would you do that? Thanks for all the great info.
@ShubhamSingh-yd8gz
@ShubhamSingh-yd8gz 5 ай бұрын
Getting ready to implement this at a manufacturing plant for an automotive OEM this weekend. Watching this makes me feel really comfortable about the implementation. Very well done. Big thanks.
@benedictagyemang3862
@benedictagyemang3862 7 ай бұрын
Very great training, thanks very much as you have save me a lot of time going through the docs.
@kohers
@kohers 7 ай бұрын
this is no longer available on github - it was replaced with a "go" based solution, as far as I could find
@FatalSkeptic
@FatalSkeptic 7 ай бұрын
so where's the part on actually installing the drive?
@FatalSkeptic
@FatalSkeptic 7 ай бұрын
Hey, 2 years later, how's this thing going? I have an opportunity to get 1 of these.
@stevenramesh3225
@stevenramesh3225 7 ай бұрын
Hi the method doesn’t work in our environment can advise if there’s any ways to help resolve the issue? I am to port the objects address groups to palo alto panorama from checkpoint.
@irvingsanchez4258
@irvingsanchez4258 7 ай бұрын
Thanks for this helpful tutorial! Time to get down to work and practice!" If anyone needs the image, I used the following. It works for me!" drive.usercontent.google.com/download?id=1eZs3aUmFTzner_gX4YgbjXyOokhH3MbK&export=download&authuser=0
@joe618
@joe618 8 ай бұрын
Thanks for sharing. I hope there will be more teachings.
@TheKamaladmire1
@TheKamaladmire1 8 ай бұрын
this is absolutely amazing ( simple and straight forward)
@robertoospina10
@robertoospina10 9 ай бұрын
Excellent guide. and the background tunes are great too!
@BahodirAlimovv
@BahodirAlimovv 9 ай бұрын
Is there way to bulk upload security policies and NAT rules using this tool ?
@kohers
@kohers 7 ай бұрын
I think for that you need to export the running config and add those new rules then import the config again with the changes - don't forget to "commit" after the load ofc
@oleksandrkotov1474
@oleksandrkotov1474 10 ай бұрын
Thank you!
@batuhanbatuhan6445
@batuhanbatuhan6445 10 ай бұрын
what do you need it for?
@ryanbuster4626
@ryanbuster4626 10 ай бұрын
Well these override my fan policy and its set to high power as CIMC sees it as a foreign card. Bullshit lol. Thinking of trying a HHHL pcie ssd but I have no idea what models are supported and wont cause the fans to spin crazy loud.
@fidisiledif
@fidisiledif 10 ай бұрын
If I have HA Palo Alto , how to set secure access Web GUI using self sign SSL ? Since I try still not solved
@ganeshan-o4b
@ganeshan-o4b 11 ай бұрын
I get PA-HDF login, it is not changing, what is the minimum memory and HDD requirement to install Palo on VMware workstation
@RishiRap
@RishiRap 11 ай бұрын
You seriously need to change the resolution in your videos to make it a little bigger to be able to be seen/viewed clearly. Such a small font size, Already having a headache trying watching your HIGH resolution video with so small font size.
@akilgolandaz2486
@akilgolandaz2486 Жыл бұрын
Is it possible to get the Palo Alto logs in Panorama without managing Palo Alto from Panorama. If yes please suggest the procedure, as I have already tried but not getting any success. I know is not a good practice but there is an exceptional request
@LanternDevilYT
@LanternDevilYT Жыл бұрын
Hi MB Tech, Is it possible to use PAN OS integrated userID agent for OpenLDAP server on windows server OS 2022…? If yes, under server monitoring tab. Which type should I choose… Microsoft Active Directory, Microsoft Exchange, Novell eDirectory, Syslog Sender. Nor should I use windows integrated User-ID agent..? Please help me in this.
@popescusilviu9948
@popescusilviu9948 Жыл бұрын
fantastic content
@shamsugrace
@shamsugrace Жыл бұрын
How to migrate Active-Active HA Pair?
@hystrixlignum8983
@hystrixlignum8983 Жыл бұрын
Hey, this was very helpful in doing this next week for our environmment.
@navdahmd
@navdahmd Жыл бұрын
Hi, Excellent Video...how can i get panorama image...please guide i am student and learning PAN-OS 10
@muhammadatif2148
@muhammadatif2148 Жыл бұрын
Hi thanks for video, can we apply changes (IP changes or route addition) in Template stack instead of selecting device template?
@suganthik3202
@suganthik3202 Жыл бұрын
Hi, a very detailed one...useful too..can you explain us or share any assessment doc for the firewalls as well
@popescusilviu9948
@popescusilviu9948 Жыл бұрын
This is a great feature! I did not know about it. Loving your panorama videos. Absolute gold
@popescusilviu9948
@popescusilviu9948 Жыл бұрын
Thank you so much for your work!
@ryand7242
@ryand7242 Жыл бұрын
I just strugglebussed trying to get this to work for hours. Your video got it done in 15 mins. thanks man.
@blahblah4634867
@blahblah4634867 Жыл бұрын
Whenever I set up the PA VM on VMWare it says the Firewall tried to activate promiscuous mode on the two custom interfaces but was blocked. Is this required?
@sachinwarad10
@sachinwarad10 Жыл бұрын
Great Video. So So much better than online document. Thanks for this. 1 Query while creating Cert Profile you selected Root CA, instead of this can I use my Local Enterprise Root CA & Intermediate CA? Bcoz machine & user cert are signed using Local Enterprise CA?
@akhilbhattar1226
@akhilbhattar1226 Жыл бұрын
After following this procedure, my device group was fine but the template values in the local firewall all show overridden and I was not able to revert the interfaces config to template, it references the virtual router and vr was also overridden. Please help.
@muhammadatif2148
@muhammadatif2148 Жыл бұрын
Hi, can we update interface IP address from panorama , device template?
@bsiko1
@bsiko1 Жыл бұрын
Can we use this method to import security policies in CSV format ??
@oleksandrrapp4957
@oleksandrrapp4957 Жыл бұрын
Hi. Thank you for your video. Can we use these certificates for pre-logon authentication?
@ronaldo23425
@ronaldo23425 Жыл бұрын
Great video, just curious, what’s the purpose of the “clear marked sessions” step you did just before downloading the pcaps? What’s the harm in not doing this step? Just curious, thanks!!
@AISynthar
@AISynthar Жыл бұрын
Can someone point me in the right direction to Disable Certificate prompt during GlobalProtect login for certificate confirmation through Intune. I need to automatically accept the certificate for my users. Thanks
@bigbos779
@bigbos779 Жыл бұрын
Just found your channel and already subscribe :) Almost of your video are very helpful. Thanks
@micheleklau2387
@micheleklau2387 Жыл бұрын
Good video, but packet captures on a Palo Alto are an absolute PITA compared to the straight forward tcpdump and fwmonitor on Checkpoints.
@르브론시몬스
@르브론시몬스 Жыл бұрын
Please also ask how to set the log colltector ha while the panorama is redundant.