Networking/Firewall3 Palo Alto Config - 1 user-id agent -> install this agent on DNS server then it will automatically join. redristiribution : Act as re-distribution point -> 다 묻는거 방식 바꾸는거 , USER-ID 정보 distribute 하게 바꾸는거 dsquery dc=transys,dc=global -name 10200007 dsquery user "dc=transys,dc=global" -samid 10200007 show user ip-user-mapping-mp all tail lines 200 follow yes mp-log ikemgr.log test vpn ike-sa gateway KR 2021. 5. 14. Palo Alto Firewall -3 Routed Protocol - Actual data that is transferred from router to router (IP,IPv4,IPv6) Routing Protocol - Exchange information about known network (EIGRP , RIP , BGP etc..) Firewall 에서 Layer 3 쓰려면 무조건 Virtual Router Feature을 써서, 라우팅을 해줘야 제대로 동작함. Virtual Router도 내 입맛대로 만들수있음. 만들고 싶은만큼. I can push VR -> VR Traffic. Next hope 을 VR로 설정 가능함. 기본적인 0.0.0.0 라우팅을 할수있는 3가지 방법 1. 0.0.0.0/24 Interface 2. 0.. 2021. 5. 14. Palo Alto Firewall -2 Firewall Interface - Can configure Ethernet interfaces for virtual-Wire, Layer 2,3, & tap Mode deployment(physical). - Can configure Logical Interface(VLAN, Tunnel, Loopback.. etc) - Tap = Monitoring purpose, HA = High availability, VW = Transfer interface, Layer 2 and 3. Most likely go with Layer 3 option - After set the Interface Type, there will be different configuration. - Netflow is more a.. 2021. 5. 14. 이전 1 다음