Todd's Blog

Todd's Tips for System Adminstrators

  • TechDays
  • Speaking Engagements
  • Contact Me
  • About Me

Connect

  • LinkedIn

Powered by Genesis

Palo Alto User Identification

posted on March 17, 2012

I am in the final phase of staging our Palo Alto 5050 in the office. We are planning to deploy this unit as both an edge and datacentre firewall.

It’s a pretty nifty device. Before even implementing it, we have been able to use it in what’s called TAP mode to look at what kind of traffic is traversing our network. It’s very surprising to see what is chewing up bandwidth. The biggest surprise for me was iCloud. I couldn’t believe the gigs of data being transferred back and forth from Apple.

One of the caveats I have found so far with setting it up is when you setup your captive portal to pick up guest users. We created both a guest account for truly guest users but also give the end user a chance to authenticate using AD credentials on the captive portal for more access.  Your authentication has to be local database first before your LDAP lookup in the AD. Otherwise it tries to authenticate in AD first, then gives up without checking the local database.

Filed Under: Technology Tagged With: Palo Alto

About Todd Lamothe

Recent Posts

  • Office 365 – Creating Custom SKUs
  • Setting a Default Printer in Windows 10
  • Deploying Windows to the Correct Drive in Configuration Manager
  • Surface Pro 4, Surface Dock and DVI Problems
  • Enabling UEV in Windows 10 1607

Recent Comments

  • Moore Details on Setting up a Delayed Charge in Quickbooks Online
  • MCP Exam Training on Using PowerShell to Get a List of Groups from Active Directory
  • Kac on Setting up an Office 2010 KMS Host Server
  • prabumedia.com | Pilih lisensi MAK atau MKS untuk aktifasi produk Microsoft ? on Setting up a KMS Server
  • prabumedia.com | Pilih lisensi MAK atau MKS untuk aktifasi produk Microsoft ? on Setting up an Office 2010 KMS Host Server

Archives

Categories

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org