Jeff Talkington
Jeff Talkington
  • 14
  • 193 499
Palo Alto Networks High Availability Configuration- Part 1
Basic configuration of Palo Alto Networks High Availability. High availability matrix is at this link. It's a full rundown of Palo Alto Networks models and their HA options. www.dropbox.com/s/4s4w6ug4kxcn5k6/High-Availability%20Matrix.xlsx?dl=0
Related videos will cover dataplane ports for HA, Link Monitoring, and Path Monitoring
มุมมอง: 13 137

วีดีโอ

Palo Alto Networks Policy Schedule
มุมมอง 2.5K5 ปีที่แล้ว
Create a policy schedule to enforce policies at specific times to meet business objectives. Based on the following Knowledgebase article- knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClZOCA0
Why is my firewall in the ocean?!? Palo Alto Networks geolocation
มุมมอง 7256 ปีที่แล้ว
In this video I'll help you understand geolocation on Palo Alto Networks next-gen firewalls, how to configure this option, and the two things to watch out for! Table of Contents: 00:46 - Traffic Map/Threat Map 01:50 - Quick Navigation Lesson 03:48 - Quick Navigation Lesson 04:32 - Quick Navigation Lesson 05:18 - Quick Navigation Lesson 05:53 - Quick Navigation Lesson 06:11 - Quick Navigation Le...
URL Activity Report Issues- SOLVED!- Palo Alto Networks
มุมมอง 6K6 ปีที่แล้ว
Today we solve two issues. 1. User is able to see URL categories but not actual URLs on the User Activity Report. Solved by fixing URL Filtering profile. 2. I'll show you the faster way to make this change- 10 seconds instead of 10 minutes.
Palo Alto Networks- Data Center Firewall High Availability
มุมมอง 8K6 ปีที่แล้ว
Understanding high availability for Palo Alto Networks data center firewalls, particularly the 5200 series, and how to do HA over distance. 5200 front panel reference- www.paloaltonetworks.com/documentation/platforms/pa-5200-series/pa-5200-series-hw-ref/pa-5200-series-firewall-overview/front-panel-description Session setup and session owner load sharing reference- www.paloaltonetworks.com/docum...
Palo Alto Networks is Disrupting the Evolution of Cybersecurity
มุมมอง 1.9K6 ปีที่แล้ว
Palo Alto Networks has taken the next step in the evolution of Cybersecurity. I'll walk you through the evolution and show you the disruption taking place today. Disclaimer- While I am a Palo Alto Networks employee, any statements or opinions are mine alone. Table of Contents: 01:21 - TRADITIONAL PERIMETER 01:51 - TRADITIONAL PERIMETER 01:57 - TRADITIONAL PERIMETER 02:47 - USERS, DATA, AND APPL...
Palo Alto Networks- Searching for Security Profiles within Security Policy (and making mass changes)
มุมมอง 1K7 ปีที่แล้ว
This video describes how to do a large-scale search for security profiles within your policies and how to do a mass change using the migration tool. Documentation link-www.paloaltonetworks.com/documentation/61/pan-os/pan-os/policy/tips-and-tricks-for-searching-for-objects-in-security-policy#_83978 Disclaimer- While I am an employee of Palo Alto Networks, any statements or opinions are mine alone.
Palo Alto Networks- Hunting ransomware with Aperture and AutoFocus
มุมมอง 7K7 ปีที่แล้ว
Using a scenario, we discover how quickly you can find information regarding ransomware in your environment using Aperture and AutoFocus. Disclaimer- While I am an employee of Palo Alto Networks, any statements or opinions are mine alone.
Palo Alto Networks- DNS Sinkhole
มุมมอง 32K7 ปีที่แล้ว
Understanding DNS Sinkholing for Palo Alto Networks- Concept, Configuration, and Testing Disclaimer- While I am a Palo Alto Networks employee, my statements and opinions are mine alone.
Palo Alto Networks- Is Prevention Possible?
มุมมอง 2357 ปีที่แล้ว
Is prevention possible with Palo Alto Networks? Disclaimer- While I am Palo Alto Networks employee, any opinions or statements are mine alone.
Palo Alto Networks- Traps Advanced Endpoint Protection prevents ransomware
มุมมอง 18K7 ปีที่แล้ว
Demo shows exploits and malware used for ransomware and how Traps prevents them using a multi-method approach. Disclaimer- While I am Palo Alto Networks employee, any opinions or statements are mine alone.
Palo Alto Networks-URL Filtering Demo
มุมมอง 9K7 ปีที่แล้ว
Presentation and Demonstration of the power of URL filtering with Palo Alto Networks. NOTE- I state in the video at 3:30 that the private cloud option is the WF-500. It should have been M-500. WF-500 is the WildFire private cloud. M-500 is used for PAN-DB private cloud. Disclaimer- While I am Palo Alto Networks employee, any opinions or statements are mine alone.
Palo Alto Networks- Agentless User ID Tutorial
มุมมอง 37K7 ปีที่แล้ว
Agentless User-ID configuration for the Palo Alto Networks Next Generation Firewall using Active Directory. Disclaimer- While I am Palo Alto Networks employee, any opinions or statements are mine alone.
Palo Alto Networks-Firewall Demo
มุมมอง 58K7 ปีที่แล้ว
Demo of the Palo Alto Networks Next-Generation Firewall. Disclaimer- while I am a Palo Alto Networks employee, any statements or opinions are mine alone.

ความคิดเห็น

  • @ghzx7770
    @ghzx7770 3 หลายเดือนก่อน

    Good morning, Mr. Jeff. I would like to ask, I want to learn from the Palo Alto dashboard. Do you have information on resources for free access to the Palo Alto dashboard environment? Thank you.

  • @mohammedalshammari5921
    @mohammedalshammari5921 3 หลายเดือนก่อน

    Question here. Is it possible to set a schedule for let's say 30-days dynamically. So that this policy would be reusable on other policies from the day it is applied to the policy? For context: We use Palo Alto for our VPN access, and I would like a 30-day schedule to be applied upon request without having to configure a new schedule for every policy. Is it doable?

  • @hiirusha
    @hiirusha 5 หลายเดือนก่อน

    well appreciated for your nice and clear explanation! cheers.

  • @truefriendabhi
    @truefriendabhi ปีที่แล้ว

    what type of connector [LC connector/MPO etc] is required on the single mode fibre for connecting to PAN-QSFP-40GBASE-LR4.

  • @brett8706
    @brett8706 ปีที่แล้ว

    Hi Jeff. I know this is a few years old. If I set up a Group Mapping and choose the groups to include, will this mapping update if I change the location of a group in AD? Also, do I need to change this in the Policy, or will it update automatically?

  • @markusyunianto8826
    @markusyunianto8826 ปีที่แล้ว

    Thanks for your explanation, it's very useful 👍

  • @cyber-security-women-courses
    @cyber-security-women-courses 2 ปีที่แล้ว

    th-cam.com/channels/9zVmz9afR7wIfE_xLPbwCg.html

  • @alexlora6009
    @alexlora6009 2 ปีที่แล้ว

    So, as i see in all the videos from youtube, nobody speak about the app User ID Agent must be installed.. so, it is not necessary needed.

  • @firewalllife
    @firewalllife 2 ปีที่แล้ว

    Thanks. Microsoft Azure Palo Alto deployment with live network connectivity troubleshooting.. th-cam.com/video/oQ7gbiUkYxE/w-d-xo.html th-cam.com/video/vMIJSgu26Ro/w-d-xo.html th-cam.com/video/PflNJueBRk0/w-d-xo.html

  • @thomasbezak1090
    @thomasbezak1090 2 ปีที่แล้ว

    Note: Recent windows updates break WMI and you now need to setup WinRM/Kerberos to connect to AD for agentless user identification.

  • @wally19
    @wally19 2 ปีที่แล้ว

    thank you

  • @TheJokeJoker
    @TheJokeJoker 2 ปีที่แล้ว

    This works on PAN-OS 10.0, FYI

  • @vasudeva1902
    @vasudeva1902 2 ปีที่แล้ว

    Great learning material! Thank you for the tutorial. Does DNS Sinkhole leave any Malware trace on the source endpoint as in any files? Where it uses Palo Alto Network's Cortex XDR Agent On it and while scanning the endpoint, no items detected.

  • @nikhilbhandari9092
    @nikhilbhandari9092 2 ปีที่แล้ว

    What is the use of HSCI port?

  • @thirumalnarayanan7494
    @thirumalnarayanan7494 3 ปีที่แล้ว

    Jeff we are still waiting for your Part 2 configuration Please upload when you get time

  • @ngurjar100
    @ngurjar100 3 ปีที่แล้ว

    God Stuff... Clear and Concise...

  • @thirumalnarayanan7494
    @thirumalnarayanan7494 3 ปีที่แล้ว

    Jeff, would love to see part 2

  • @dineshgogna
    @dineshgogna 3 ปีที่แล้ว

    How can we configure Palo Alto HA with existing Network, resource group & application gateway in Azure ?

  • @SANDEEPKUMAR-tv9yw
    @SANDEEPKUMAR-tv9yw 3 ปีที่แล้ว

    Hello Jeff, Hope you are doing well 😆 This is regarding Palo Alto Training. Can you please share your mail id/no. ? Regards, SAM

  • @mylearnings910
    @mylearnings910 3 ปีที่แล้ว

    Thank you very much for the tutorial Jeff.

  • @crystalhu7502
    @crystalhu7502 3 ปีที่แล้ว

    Hello Jeff, my AD server is connected well. But when I map user IP, it shows unknown users. Only Paloalto service account can be recognized. Do you know why? Thank you.

  • @Volleydog
    @Volleydog 3 ปีที่แล้ว

    Hello Jeff, I was wondering if there is any way to download a virtual Palo Alto firewall to figure out and test procedures on? Thank you.

  • @adelsonamorim9637
    @adelsonamorim9637 3 ปีที่แล้ว

    Hello Jeff. I it is possible to get a free 30-day trial for testing in a virtualization environment.

  • @vivekprajapati7911
    @vivekprajapati7911 3 ปีที่แล้ว

    great...

  • @Black_Swan68761
    @Black_Swan68761 3 ปีที่แล้ว

    Thanks for sharing the video!

  • @nickstathakis5263
    @nickstathakis5263 3 ปีที่แล้ว

    Hi Jeff, how does the PA perform the correlation/mapping of the userID and ad-group membership is this within the logs?

  • @Ryan-vw8sq
    @Ryan-vw8sq 4 ปีที่แล้ว

    don't you need the dns security license along with threat prevention? Has this requirement recently changed? I updated to 10.x.x.x and now i get a warning every commit saying "Warning: No Valid DNS Security License"

  • @QuangLe-zc7et
    @QuangLe-zc7et 4 ปีที่แล้ว

    Hi Jeff, i read in Palo Alto document that say when deploy HA in Active-Active mode. We need to have 4 type of HA that is HA1, HA2, HA3 and HA4. so if we want to have back up to this. We must need at least 8 link between 2 PA firewall ? Or we only must some, not all HA link type ? And last question is are they must be 10G link or 1Gb is ok too. Thank you!

  • @alexandrufilip5652
    @alexandrufilip5652 4 ปีที่แล้ว

    but is there a way to log the actual destination of the request?

  • @Mb19877
    @Mb19877 4 ปีที่แล้ว

    Can we do it by some CLI config ???

  • @brolysmash9333
    @brolysmash9333 4 ปีที่แล้ว

    Great tutorial Jeff. I have implemented successfully in 20 locations and works like charm.

  • @agostons
    @agostons 4 ปีที่แล้ว

    great! please publish part2, thanks!

  • @ZakaTenTen
    @ZakaTenTen 4 ปีที่แล้ว

    Thank you, Jeff, this Video Explain about HA Palo So Good keep going to do part 2, I need to know how about HA Active/Active and how to do?

  • @disasterromio
    @disasterromio 4 ปีที่แล้ว

    Good job, thanks and waiting part2

  • @jonathannelson8880
    @jonathannelson8880 4 ปีที่แล้ว

    Jeff, would love to see part 2. That is were I'm most confused when it comes to HA.

  • @TheMegaFireFox90
    @TheMegaFireFox90 4 ปีที่แล้ว

    Am I reading this wrong or at 14:13 it clearly says that marsha is the brute force attacker

  • @Capcut_shorts2016
    @Capcut_shorts2016 4 ปีที่แล้ว

    Best One -=EVEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEEER=-

  • @jtorresb1
    @jtorresb1 4 ปีที่แล้ว

    Many thanks for Sharing this video, Good Job

  • @pavansamudrala8494
    @pavansamudrala8494 4 ปีที่แล้ว

    Good One, Waiting for part 2

  • @niteshshah8123
    @niteshshah8123 4 ปีที่แล้ว

    plz add in playlist it will make easy for capturing

  • @somykt
    @somykt 4 ปีที่แล้ว

    Brilliant

  • @yummyummy8662003
    @yummyummy8662003 4 ปีที่แล้ว

    Great video..very well explained..thanks

  • @chriscowboyfan
    @chriscowboyfan 4 ปีที่แล้ว

    GREAT VIDEO!

  • @malikhade5593
    @malikhade5593 4 ปีที่แล้ว

    Excellent video Jeff. Thanks!

  • @Gyan_Khand1
    @Gyan_Khand1 4 ปีที่แล้ว

    Excellent video. Please upload the part 2 when you get time.

  • @y.d.bmedia2506
    @y.d.bmedia2506 4 ปีที่แล้ว

    Excellent presentation

  • @saadahmadkhan5049
    @saadahmadkhan5049 5 ปีที่แล้ว

    Very well organized demo. I wish you can upload more video tutorial about the PA.

  • @prasanth02061985
    @prasanth02061985 5 ปีที่แล้ว

    Great video i have came across - about palo alto Traps.. Thank you so much for this video..

  • @ANCsounds
    @ANCsounds 5 ปีที่แล้ว

    Hi Jeff, thank you for this video tutorial. We have implemented the ad integration on our Palo Alto by following your tutorial!

    • @jefftalkington8404
      @jefftalkington8404 5 ปีที่แล้ว

      Thanks for the kind words! Much appreciated.

    • @ANCsounds
      @ANCsounds 4 ปีที่แล้ว

      It seems that PAN is confused when there is multiple user logged in on a windows computer. Some users did not log out and when new user log in, the IP user mapping is not updated. Do you have any idea on how to fix this?

    • @jefftalkington8404
      @jefftalkington8404 4 ปีที่แล้ว

      @@ANCsounds It sounds like this a multi-use system, like terminal services for Citrix or Windows. If that's the case, PANW has a terminal services agent that can be installed on the machine and each user will be identified with a set of source ports to use. It's available for download on the customer support portal. If, however, this is a normal machine and not a terminal services client, the agent/firewall should pick up the changes when it checks in with your AD/syslog server.

  • @sandhusbythesea1122
    @sandhusbythesea1122 5 ปีที่แล้ว

    Hi guys ,How can I set the internet shutdown at night hours on PA220

    • @jefftalkington8404
      @jefftalkington8404 5 ปีที่แล้ว

      Try the policy schedule. It gives you the ability to turn on/turn off a policy for certain hours. Here's a knowledge base article that covers the steps. knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CmAxCAK