This is how I setup my dashboard, I use all the widgets: DashBoard System Resources High Availability Interfaces ACC Risk Factor Locks General Information Top High Risk Apps Logged in Admins Top Applications Config Logs System Logs Threat Logs URL Log Filtering Logs Data Filtering Logs This would be what I would suggest for an […]
Steve Borba
My notes, I hope they help you, feel free to comment/add to them
Category: Palo Alto
This is an example of a Management Certificate you could sign with your decrypt CA Then create a TLS Profile and Assign TLS Profile
Create the responder entity Create management Profile Assign to Interface Allow with security policy if needed (ocsp application)
First Generate a Root (this could be the CA you deploy using Global Protect or Group Policy or whatever you can) Then you would want to create an intermediate CA (this could be the decrypt CA) You should also create a new root that isn’t deployed to clients and use as untrusted CA.
There is so much in the suite to show I decided to come up with a list, and keep adding to it because I know I still forgot things we all what to do DNS Record(s) – can also to by IP Public Certificate for A record (more compatible – Let’s Encrypt is free) OTP […]