<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic I have two queries for Cortex XDR for cloud identity engine and browser protection. in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/i-have-two-queries-for-cortex-xdr-for-cloud-identity-engine-and/m-p/428480#M986</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have deployed Cortex XDR in my environment and I have two queries it features.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. I have integrated the on-premises AD with the help of a DSS agent and cert. It is connected and is synced in the cloud identity engine. So what is the purpose of the AD in Cortex XDR why it is used and can we configured the user and group base policy. if yes what is the process to configure the user and group base policy?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. Previously we were using McAfee in our environment. It has a feature to prevent our block the users to download malicious files. Does this feature is also available in cortex XDR. If yes, how can we enable it? we have tested this thing in the test machine we were able to download the malicious files after running those the cortex was blocking it but it was not blocking when it was downloading.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 23 Aug 2021 13:59:48 GMT</pubDate>
    <dc:creator>OsamaKhan</dc:creator>
    <dc:date>2021-08-23T13:59:48Z</dc:date>
    <item>
      <title>I have two queries for Cortex XDR for cloud identity engine and browser protection.</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/i-have-two-queries-for-cortex-xdr-for-cloud-identity-engine-and/m-p/428480#M986</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have deployed Cortex XDR in my environment and I have two queries it features.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. I have integrated the on-premises AD with the help of a DSS agent and cert. It is connected and is synced in the cloud identity engine. So what is the purpose of the AD in Cortex XDR why it is used and can we configured the user and group base policy. if yes what is the process to configure the user and group base policy?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. Previously we were using McAfee in our environment. It has a feature to prevent our block the users to download malicious files. Does this feature is also available in cortex XDR. If yes, how can we enable it? we have tested this thing in the test machine we were able to download the malicious files after running those the cortex was blocking it but it was not blocking when it was downloading.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Aug 2021 13:59:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/i-have-two-queries-for-cortex-xdr-for-cloud-identity-engine-and/m-p/428480#M986</guid>
      <dc:creator>OsamaKhan</dc:creator>
      <dc:date>2021-08-23T13:59:48Z</dc:date>
    </item>
    <item>
      <title>Re: I have two queries for Cortex XDR for cloud identity engine and browser protection.</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/i-have-two-queries-for-cortex-xdr-for-cloud-identity-engine-and/m-p/429503#M999</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/116059"&gt;@OsamaKhan&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have deployed Cortex XDR in my environment and I have two queries it features.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. I have integrated the on-premises AD with the help of a DSS agent and cert. It is connected and is synced in the cloud identity engine. So what is the purpose of the AD in Cortex XDR why it is used and can we configured the user and group base policy. if yes what is the process to configure the user and group base policy?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. Previously we were using McAfee in our environment. It has a feature to prevent our block the users to download malicious files. Does this feature is also available in cortex XDR. If yes, how can we enable it? we have tested this thing in the test machine we were able to download the malicious files after running those the cortex was blocking it but it was not blocking when it was downloading.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Hello OsamaKhan,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1.DSS is now rebranded as the Cloud Identity Engine, It is meant for visibility into identities and user behavior. You can find documentation and information of it's features here:&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-new-features/identity-features/cloud-identity-engine.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/10-1/pan-os-new-features/identity-features/cloud-identity-engine.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. You can configure policy rules and security profiles to harden your security posture. More details on the documentation below.&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-prevent-admin/endpoint-security/endpoint-security-profiles/manage-security-profiles.html" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-prevent-admin/endpoint-security/endpoint-security-profiles/manage-security-profiles.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-pro-admin/endpoint-security/endpoint-security-profiles.html" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-xdr/cortex-xdr-pro-admin/endpoint-security/endpoint-security-profiles.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Aug 2021 17:22:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/i-have-two-queries-for-cortex-xdr-for-cloud-identity-engine-and/m-p/429503#M999</guid>
      <dc:creator>yalonso</dc:creator>
      <dc:date>2021-08-26T17:22:27Z</dc:date>
    </item>
  </channel>
</rss>

