Configure Banners, Message of the Day, and Logos
Table of Contents
Expand All
|
Collapse All
Next-Generation Firewall Docs
-
PAN-OS 11.1 & Later
- PAN-OS 11.1 & Later
- PAN-OS 11.0 (EoL)
- PAN-OS 10.2
- PAN-OS 10.1
-
- Tap Interfaces
-
- Layer 2 and Layer 3 Packets over a Virtual Wire
- Port Speeds of Virtual Wire Interfaces
- LLDP over a Virtual Wire
- Aggregated Interfaces for a Virtual Wire
- Virtual Wire Support of High Availability
- Zone Protection for a Virtual Wire Interface
- VLAN-Tagged Traffic
- Virtual Wire Subinterfaces
- Configure Virtual Wires
- Configure a PPPoE Client on a Subinterface
- Configure an IPv6 PPPoE Client
- Configure an Aggregate Interface Group
- Configure Bonjour Reflector for Network Segmentation
- Use Interface Management Profiles to Restrict Access
-
- DHCP Overview
- Firewall as a DHCP Server and Client
- Firewall as a DHCPv6 Client
- DHCP Messages
- Dynamic IPv6 Addressing on the Management Interface
- Configure an Interface as a DHCP Server
- Configure an Interface as a DHCPv4 Client
- Configure an Interface as a DHCPv6 Client with Prefix Delegation
- Configure the Management Interface as a DHCP Client
- Configure the Management Interface for Dynamic IPv6 Address Assignment
- Configure an Interface as a DHCP Relay Agent
-
- DNS Overview
- DNS Proxy Object
- DNS Server Profile
- Multi-Tenant DNS Deployments
- Configure a DNS Proxy Object
- Configure a DNS Server Profile
- Use Case 1: Firewall Requires DNS Resolution
- Use Case 2: ISP Tenant Uses DNS Proxy to Handle DNS Resolution for Security Policies, Reporting, and Services within its Virtual System
- Use Case 3: Firewall Acts as DNS Proxy Between Client and Server
- DNS Proxy Rule and FQDN Matching
-
- NAT Rule Capacities
- Dynamic IP and Port NAT Oversubscription
- Dataplane NAT Memory Statistics
-
- Translate Internal Client IP Addresses to Your Public IP Address (Source DIPP NAT)
- Create a Source NAT Rule with Persistent DIPP
- PAN-OS
- Strata Cloud Manager
- Enable Clients on the Internal Network to Access your Public Servers (Destination U-Turn NAT)
- Enable Bi-Directional Address Translation for Your Public-Facing Servers (Static Source NAT)
- Configure Destination NAT with DNS Rewrite
- Configure Destination NAT Using Dynamic IP Addresses
- Modify the Oversubscription Rate for DIPP NAT
- Reserve Dynamic IP NAT Addresses
- Disable NAT for a Specific Host or Interface
-
- Network Packet Broker Overview
- How Network Packet Broker Works
- Prepare to Deploy Network Packet Broker
- Configure Transparent Bridge Security Chains
- Configure Routed Layer 3 Security Chains
- Network Packet Broker HA Support
- User Interface Changes for Network Packet Broker
- Limitations of Network Packet Broker
- Troubleshoot Network Packet Broker
-
- Enable Advanced Routing
- Logical Router Overview
- Configure a Logical Router
- Create a Static Route
- Configure BGP on an Advanced Routing Engine
- Create BGP Routing Profiles
- Create Filters for the Advanced Routing Engine
- Configure OSPFv2 on an Advanced Routing Engine
- Create OSPF Routing Profiles
- Configure OSPFv3 on an Advanced Routing Engine
- Create OSPFv3 Routing Profiles
- Configure RIPv2 on an Advanced Routing Engine
- Create RIPv2 Routing Profiles
- Create BFD Profiles
- Configure IPv4 Multicast
- Configure MSDP
- Create Multicast Routing Profiles
- Create an IPv4 MRoute
-
-
PAN-OS 11.2
- PAN-OS 11.2
- PAN-OS 11.1
- PAN-OS 11.0 (EoL)
- PAN-OS 10.2
- PAN-OS 10.1
- PAN-OS 10.0 (EoL)
- PAN-OS 9.1 (EoL)
- PAN-OS 9.0 (EoL)
- PAN-OS 8.1 (EoL)
- Cloud Management and AIOps for NGFW
Something went wrong please try again later
Configure Banners, Message of the Day, and Logos
A login banner is optional text
that you can add to the login page so that administrators will see
information they must know before they log in. For example, you could
add a message to notify users of restrictions on unauthorized use
of the firewall.
You can add colored bands that highlight
overlaid text across the top (header banner) and bottom
(footer banner) of the web interface to ensure administrators see
critical information, such as the classification level for firewall
administration.
A message of the day dialog automatically
displays after you log in. The dialog displays messages that Palo
Alto Networks embeds to highlight important information associated
with a software or content release. You can also add one custom message
to ensure administrators see information, such as an impending system restart,
that might affect their tasks.
You can replace the default
logos that appear on the login page and in the header of the web
interface with the logos of your organization.
- Configure the login banner.
- Select DeviceSetupManagement and edit the General Settings.
- Enter the Login Banner (up to 3,200 characters).
- (Optional) Select Force Admins to Acknowledge Login Banner to force administrators to select an I Accept and Acknowledge the Statement Below check box above the banner text to activate the Login button.
- Click OK.
- Set the message of the day.
- Select DeviceSetupManagement and edit the Banners and Messages settings.
- Enable the Message of the Day.
- Enter the Message of the Day (up to 3,200 characters).After you enter the message and click OK, administrators who subsequently log in, and active administrators who refresh their browsers, see the new or updated message immediately; a commit isn’t necessary. This enables you to inform other administrators of an impending commit that might affect their configuration changes. Based on the commit time that your message specifies, the administrators can then decide whether to complete, save, or undo their changes.
- (Optional) Select Allow Do Not Display Again (default is disabled) to give administrators the option to suppress a message of the day after the first login session. Each administrator can suppress messages only for his or her own login sessions. In the message of the day dialog, each message will have its own suppression option.
- (Optional) Enter a header Title for the message of the day dialog (default is Messageof the Day).
- Configure the header and footer banners.A bright background color and contrasting text color can increase the likelihood that administrators will notice and read a banner. You can also use colors that correspond to classification levels in your organization.
- Enter the Header Banner (up to 3,200 characters).
- (Optional) Clear Same Banner Header and Footer (enabled by default) to use different header and footer banners.
- Enter the Footer Banner (up to 3,200 characters) if the header and footer banners differ.
- Click OK.
- Replace the logos on the login page and in the header.The maximum size for any logo image is 128KB. The supported file types are png and jpg. The firewall does not support image files that are interlaced, images that contain alpha channels, and gif file types because such files interfere with PDF generation.
- Select DeviceSetupOperations and click Custom Logos in the Miscellaneous section.
- Perform the following steps for both the Login Screen logo and the Main UI (header) logo:
- Click upload
- Select a logo image and click Open.You can preview the image to see how PAN-OS will crop it to fit by clicking the magnifying glass icon.
- Click Close.
- Commit your changes.
- Verify that the banners, message of the day, and logos display as expected.
- Log out to return to the login page, which displays the new logos you selected.
- Enter your login credentials, review the banner, select I Accept and Acknowledge the Statement Below to enable the Login button, and then Login.A dialog displays the message of the day. Messages that Palo Alto Networks embedded display on separate pages in the same dialog. To navigate the pages, click the right or left arrows along the sides of the dialog or click a page selector
- (Optional) You can select Do not show again for the message you configured and for any messages that Palo Alto Networks embedded.
- Close the message of the day dialog to access the web interface.Header and footer banners display in every web interface page with the text and colors that you configured. The new logo you selected for the web interface displays below the header banner.