반응형

[Information]/[PaloAlto] 4

[PaloAlto] Firewall Timeout 종류 및 설정 방법 - Session, Authentication, Web Server

PaloAlto firewalls offer various timeout settings for different aspects of their operation, including session timeouts, authentication timeouts, and application-specific timeouts. These timeouts help manage firewall resources and ensure efficient network performance. 1. 세션 타임아웃Session Timeouts:Global Session Timeouts:Palo Alto firewalls have global session timeouts for TCP, UDP, and ICMP.These ..

[PaloAlto] Firewall Monitor Log 분석 - Traffic Session End Reason ( 방화벽 세션 로그 의미 )

1. 개 요 The "Session End Reason" in PaloAlto firewall logs indicates why a network session terminated. Common reasons include tcp-fin, tcp-rst-from-client, tcp-rst-from-server, aged-out, resources-unavailable, and threat. Understanding these reasons helps in troubleshooting network connectivity and identifying potential security issues. 2. 종류 및 의미 Here's a breakdown of common session end re..

[PaloAlto] Firewall CLI Command - set 명령어 (객체 생성, 객체 반영, Description, Schedule)

팔로알토 방화벽 운영 시, 많이 사용할 수 있는 객체 생성 및 반영 관련 CLI Command입니다.아래의 명령어는 configure 모드 (#)에서 사용 가능합니다. 1. 스케줄 객체 생성#set schedule "스케줄 객체명" schedule-type non-recurring "날짜" ex) #set schedule example schedule-type non-recurring 2025/01/01@00:00-2025/12/31@23:59 2. 스케줄 객체 반영 #set rulebase security rules "정책명" schedule "객체명" ex) #set rulebase security rules "Rule 1230" schedule example 3. Description 추가 #..

[PaloAlto] Firewall CLI Command - show 명령어 (HA, NAT, IPsec) Cli sheet 참조

PaloAlto Firewall (PAN-OS) CLI Command 1. CLI Cheat Sheet: HAUse the following table to quickly locate commands for HA tasks. If you want to ... Use ...View all HA cluster configuration content.> show high-availability cluster allView HA cluster flap statistics.Cluster flap count is reset when the HA device moves from suspended to functional and vice versa. Cluster flap count also resets when n..

반응형