Module 2 Initial Firewall Config Flashcards
Initial config must be done by what two things
Out of band mgmt, or serial cable
What s imp to know about the out of band mgmt
Only passes management traffic. Is labeled MGT port.
What is imp to know about the mgt port
MGT int can run as a static IP or dhcp client.
What are the four ways to do access firewall mgt
Panorama, SSH, REST/XML API, web based
What are the special req’s for creating predefined admin pass
8 characters, 1 upper, 1 lower, one special and numerical
What are the two ways to reset to factory config?
Via CLI with a known admin password. (Erases logs, including IP address)
VIA console port, type maint - set to factory default
What is important to know about MGT interface config via web interface?
At a minimum, need IP, gateway and subnet. For the MGT port by default, PING, SSH and HTTPS are enabled.
What else is required for initial setup?
DNS is REQUIRED, NTP is OPTIONAL.
What is the update server domain name?
default paloaltonetworks.com do not change this setting
What does the MGT port do?
Accesses external services like DNS, NTP, and update servers, URL updates, licenses and auto focus.
What is a service route?
Path from the interface to the service on a server. Allows you to access external services like the mgt port.
Before registering your license, what must you do/
Provide serial number of your device. Before you register, it must be configured with an IP, netmask, DG and DNS server add.