<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Network Monitoring capabilities of XDR in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523061#M3206</link>
    <description>&lt;P&gt;Hello ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Wanted to know if XDR has the capability to view network packets (pcap) or to push out network policies, block traffic, visualization of network data etc.&lt;/P&gt;</description>
    <pubDate>Thu, 01 Dec 2022 18:07:07 GMT</pubDate>
    <dc:creator>nrangarajan22</dc:creator>
    <dc:date>2022-12-01T18:07:07Z</dc:date>
    <item>
      <title>Network Monitoring capabilities of XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523061#M3206</link>
      <description>&lt;P&gt;Hello ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Wanted to know if XDR has the capability to view network packets (pcap) or to push out network policies, block traffic, visualization of network data etc.&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2022 18:07:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523061#M3206</guid>
      <dc:creator>nrangarajan22</dc:creator>
      <dc:date>2022-12-01T18:07:07Z</dc:date>
    </item>
    <item>
      <title>Re: Network Monitoring capabilities of XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523100#M3207</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/252604"&gt;@nrangarajan22&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;Thank you for for writing to Live Community!&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;Please allow me to address your questions:&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;1. Cortex XDR does not currently have complete network visualization, however you are able to investigate an asset’s traffic by going into IP View. You can access an asset’s IP view by going into Assets-&amp;gt;&lt;/SPAN&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-pro-admin/asset-management/manage-your-network-assets" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;Asset Inventory&lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN&gt;-&amp;gt; Right Click an asset and choose Open IP View. There you’ll be able to see important network data such as: number of outgoing connections, total traffic, and total download and upload.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;2. Cortex XDR allows for network visibility and asset management by collecting and analyzing&amp;nbsp;different network resources such as:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI style="font-weight: 400;" aria-level="1"&gt;&lt;SPAN&gt;User-defined IP Address Ranges and Domain Names associated with your internal network&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI style="font-weight: 400;" aria-level="1"&gt;&lt;SPAN&gt;EDR data collected by Firewall Logs&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI style="font-weight: 400;" aria-level="1"&gt;&lt;SPAN&gt;Cortex XDR Agent Logs&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI style="font-weight: 400;" aria-level="1"&gt;&lt;SPAN&gt;ARP Cache&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI style="font-weight: 400;" aria-level="1"&gt;&lt;A href="https://docs.paloaltonetworks.com/content/techdocs/en_US/cortex/cortex-xdr/cortex-xdr-pro-admin/broker-vm/set-up-broker-vm/activate-the-network-mapper.html#id6f524c22-040f-4963-8cce-0ee74ef1ac8b" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;Broker VM Network Mapper&lt;/SPAN&gt;&lt;/A&gt;&lt;/LI&gt;
&lt;LI style="font-weight: 400;" aria-level="1"&gt;&lt;A href="https://docs.paloaltonetworks.com/content/techdocs/en_US/cortex/cortex-xdr/cortex-xdr-pro-admin/broker-vm/set-up-broker-vm/activate-pathfinder.html#id8a5e2ea2-8c80-41eb-bc3d-4c391d15397b" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;Pathfinder Data Collector&lt;/SPAN&gt;&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;3. Cortex XDR can obtain pcap files originating from Palo Alto NGFW alerts, but the packet capture is being done by the FW itself.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Last, I recommend watching &lt;/SPAN&gt;&lt;A href="https://www.paloaltonetworks.com/resources/videos/demystifying-network-traffic-analysis" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;this &lt;/SPAN&gt;&lt;/A&gt;&lt;SPAN&gt;video which thoroughly explains the product’s network capabilities.&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;Hope this helps!&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Dec 2022 01:58:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523100#M3207</guid>
      <dc:creator>mavraham</dc:creator>
      <dc:date>2022-12-02T01:58:28Z</dc:date>
    </item>
    <item>
      <title>Re: Network Monitoring capabilities of XDR</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523105#M3208</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Dec 2022 05:11:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/network-monitoring-capabilities-of-xdr/m-p/523105#M3208</guid>
      <dc:creator>nrangarajan22</dc:creator>
      <dc:date>2022-12-02T05:11:30Z</dc:date>
    </item>
  </channel>
</rss>

