<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to Block Mobile Phones (iPhone/Android) via USB Using Device Control in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/how-to-block-mobile-phones-iphone-android-via-usb-using-device/m-p/1237215#M8720</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/1292593743"&gt;@HaddadSteve&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can create your own custom devices using the unique &amp;nbsp;ClassGuid &lt;SPAN&gt;&amp;nbsp;for every device.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Here is how to:&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="panel-heading"&gt;
&lt;DIV class="titlepage"&gt;
&lt;DIV&gt;
&lt;DIV class="title"&gt;
&lt;H6 class="title"&gt;Add a custom device class&lt;/H6&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;DIV id="UUID-70b171f3-abdd-ca06-9d50-2a54bc5d47a5_ideca69bf5-767c-41b1-a13d-7da15d2c481a_bodyf85e26a2-30e6-4467-829a-1f401dad16b0" class="panel-body collapse ft-expanding-block-content ft-expanding-block-expanded"&gt;
&lt;P&gt;(&lt;SPAN class="monospaced"&gt;Windows only&lt;/SPAN&gt;) You can include custom USB-connected device classes beyond Disk Drive, CD-ROM, Windows Portable Devices, and Floppy Disk Drives, such as USB connected network adapters. When you create a custom device class, you must supply&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="link ft-external-link" href="https://docs.microsoft.com/en-us/windows-hardware/drivers/install/system-defined-device-setup-classes-available-to-vendors" target="_blank" rel="noopener"&gt;official ClassGuid identifier&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;used by Microsoft. Alternatively, if you configured a GUID value to a specific USB connected device, you must use this value for the new device class. After you add a custom device class, you can view it in Device Management and enforce any device control rules and exceptions on this device class.&lt;/P&gt;
&lt;DIV class="procedure"&gt;
&lt;OL class="procedure" type="1"&gt;
&lt;LI class="step"&gt;
&lt;P class="cmd"&gt;Go to&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Endpoints&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;→&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Policy Management&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;→&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Settings&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;→&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Device Management&lt;/SPAN&gt;.&lt;/P&gt;
&lt;P&gt;This is the list of all your custom USB-connected devices.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="step"&gt;
&lt;P class="cmd"&gt;Create the new device class.&lt;/P&gt;
&lt;P&gt;Select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guilabel"&gt;+New Device&lt;/SPAN&gt;. Set a&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guilabel"&gt;Name&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;for the new device class, and supply a valid and unique GUID&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guilabel"&gt;Identifier&lt;/SPAN&gt;. For each GUID value, you can define one class type only.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="step"&gt;
&lt;P class="cmd"&gt;Save.&lt;/P&gt;
&lt;P&gt;The new device class is now available in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;as all other device classes.&lt;/P&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;You can read further at the doc:&lt;BR /&gt;&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Device-control#" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Device-control#&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you feel this has answered your query, please let us know by clicking like and on "mark this as a Solution". Thank you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;KR,&lt;/P&gt;
&lt;P&gt;Luis&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
    <pubDate>Wed, 03 Sep 2025 14:20:58 GMT</pubDate>
    <dc:creator>eluis</dc:creator>
    <dc:date>2025-09-03T14:20:58Z</dc:date>
    <item>
      <title>How to Block Mobile Phones (iPhone/Android) via USB Using Device Control</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/how-to-block-mobile-phones-iphone-android-via-usb-using-device/m-p/1237096#M8714</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm currently working on a Device Control policy in Cortex XDR and I need to block mobile phones (iPhones, Android devices, etc.) when they are connected via USB — similar to how USB drives and external disks can be blocked.&lt;/P&gt;
&lt;P&gt;I understand that Cortex XDR uses ClassGuid to identify device types (&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-4.x-Documentation/Device-control" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-4.x-Documentation/Device-control&lt;/A&gt;&amp;nbsp;and&amp;nbsp;&lt;A href="https://learn.microsoft.com/en-us/windows-hardware/drivers/install/system-defined-device-setup-classes-available-to-vendors" target="_blank"&gt;https://learn.microsoft.com/en-us/windows-hardware/drivers/install/system-defined-device-setup-classes-available-to-vendors&lt;/A&gt;&amp;nbsp;)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My goal is to block phones used for file transfer.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Questions:&lt;/STRONG&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Is there a recommended way to block mobile phones specifically, without impacting other USB peripherals?&lt;/LI&gt;
&lt;LI&gt;Are there ClassGuids or USB class codes I should be aware of for iPhones and Android devices?&lt;/LI&gt;
&lt;LI&gt;Has anyone successfully implemented this kind of policy and could share best practices?&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;I am kind of surprise to not find this feature by default.&lt;/P&gt;
&lt;P&gt;Thanks in advance for your help!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best regards&lt;/P&gt;</description>
      <pubDate>Tue, 02 Sep 2025 09:29:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/how-to-block-mobile-phones-iphone-android-via-usb-using-device/m-p/1237096#M8714</guid>
      <dc:creator>HaddadSteve</dc:creator>
      <dc:date>2025-09-02T09:29:31Z</dc:date>
    </item>
    <item>
      <title>Re: How to Block Mobile Phones (iPhone/Android) via USB Using Device Control</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/how-to-block-mobile-phones-iphone-android-via-usb-using-device/m-p/1237215#M8720</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/1292593743"&gt;@HaddadSteve&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can create your own custom devices using the unique &amp;nbsp;ClassGuid &lt;SPAN&gt;&amp;nbsp;for every device.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Here is how to:&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="panel-heading"&gt;
&lt;DIV class="titlepage"&gt;
&lt;DIV&gt;
&lt;DIV class="title"&gt;
&lt;H6 class="title"&gt;Add a custom device class&lt;/H6&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;DIV id="UUID-70b171f3-abdd-ca06-9d50-2a54bc5d47a5_ideca69bf5-767c-41b1-a13d-7da15d2c481a_bodyf85e26a2-30e6-4467-829a-1f401dad16b0" class="panel-body collapse ft-expanding-block-content ft-expanding-block-expanded"&gt;
&lt;P&gt;(&lt;SPAN class="monospaced"&gt;Windows only&lt;/SPAN&gt;) You can include custom USB-connected device classes beyond Disk Drive, CD-ROM, Windows Portable Devices, and Floppy Disk Drives, such as USB connected network adapters. When you create a custom device class, you must supply&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="link ft-external-link" href="https://docs.microsoft.com/en-us/windows-hardware/drivers/install/system-defined-device-setup-classes-available-to-vendors" target="_blank" rel="noopener"&gt;official ClassGuid identifier&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;used by Microsoft. Alternatively, if you configured a GUID value to a specific USB connected device, you must use this value for the new device class. After you add a custom device class, you can view it in Device Management and enforce any device control rules and exceptions on this device class.&lt;/P&gt;
&lt;DIV class="procedure"&gt;
&lt;OL class="procedure" type="1"&gt;
&lt;LI class="step"&gt;
&lt;P class="cmd"&gt;Go to&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Endpoints&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;→&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Policy Management&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;→&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Settings&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;→&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guimenuitem"&gt;Device Management&lt;/SPAN&gt;.&lt;/P&gt;
&lt;P&gt;This is the list of all your custom USB-connected devices.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="step"&gt;
&lt;P class="cmd"&gt;Create the new device class.&lt;/P&gt;
&lt;P&gt;Select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guilabel"&gt;+New Device&lt;/SPAN&gt;. Set a&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guilabel"&gt;Name&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;for the new device class, and supply a valid and unique GUID&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="guilabel"&gt;Identifier&lt;/SPAN&gt;. For each GUID value, you can define one class type only.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="step"&gt;
&lt;P class="cmd"&gt;Save.&lt;/P&gt;
&lt;P&gt;The new device class is now available in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;as all other device classes.&lt;/P&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;You can read further at the doc:&lt;BR /&gt;&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Device-control#" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Device-control#&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you feel this has answered your query, please let us know by clicking like and on "mark this as a Solution". Thank you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;KR,&lt;/P&gt;
&lt;P&gt;Luis&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 03 Sep 2025 14:20:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/how-to-block-mobile-phones-iphone-android-via-usb-using-device/m-p/1237215#M8720</guid>
      <dc:creator>eluis</dc:creator>
      <dc:date>2025-09-03T14:20:58Z</dc:date>
    </item>
  </channel>
</rss>

