SymptomThis document explains the various error logs seen during the IPSec tunnel negotiation issues. EnvironmentPA firewall version 8.1 and above ResolutionThe following debug is enabled to get the debug logs shown in the document. Primary-Tunnel is the IPSec tunnel name usually refers to the Phase 2.Primary-GW is the IKE Gateway that holds the Phase 1 settings. Read More
Month: November 2022
How to Set Up Site-to-Site VPN on Palo Alto with NordLayer
Note: If your device/service supports SHA256 and DH group 14, it is recommended to use these settings instead. Configuring the tunnel in the Palo Alto WebGUI Open the Palo Alto WebGUI, and select the Network tab Select Interfaces and open the Tunnel tab Click Add Assign the parameters with the following information Virtual Router: Select Read More
How to Deploy Microsoft Local Administrator Password Solution (LAPS)
Local Administrator Password Solution (LAPS) is a new tool that gives the power to manage local Administrator accounts passwords (RID-500).The most important benefit of deploying LAPS is to mitigate Pass-the-Hash (PtH) credential attack. By configuring LAPS, Local Administrator on each machine will have its own (unique) complex password. This password changes randomly as per LAPS configuration Read More
How to Create an Azure AD Device Group for Windows 11 Devices
Let’s learn to create Windows 11 Azure AD Device Group. You will have to get ready with Windows 11 PCs sooner than later. One of the things you can start with is creating Azure AD dynamic devices for Windows 11 PCs. You can create Azure AD dynamic device groups based on available device properties. Well, you Read More
How to Manage Windows 10 Updates with Microsoft Intune
With Intune you can manage windows 10 updates using Windows update for Business. This is a free service that is available for Windows 10 Pro, Enterprise and Education editions (Enterprise LTSC is not supported). The service will deploy updates automatically without the need for approving individual updates. This will make it easy to manage Windows Read More
How to Configure Cisco Meraki WAP with JumpCloud RADIUS
Get the strength and security of RADIUS without building, maintaining, or monitoring physical servers. It’s also quick to roll out managed RADIUS to your organization to authenticate users to Wi-Fi, VPNs, switches, and network devices securely. This is a full walkthrough of configuring JumpCloud’s RADIUS-as-a-Service (RaaS) and a Meraki Wireless Access Point (WAP) Settings and Configuration Notes Read More