<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Custom Signature to allow LDAPS as SSL port 636 in Custom Signatures</title>
    <link>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310895#M340</link>
    <description>&lt;P&gt;I am enforcing APP-ID and wanted to do it at the application lever but your suggestion should be good. The insteresting part is that the Palo is showing hits to the rule with the custom rule but when I review the traffic it does not show anything with that rule. Any ideas on that?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Update on my own question.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looks like I needed to create the APP override which is something I have not done before but was able to do it properly and now the rule it is showing the traffic properly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Thu, 13 Feb 2020 14:34:12 GMT</pubDate>
    <dc:creator>palmanza</dc:creator>
    <dc:date>2020-02-13T14:34:12Z</dc:date>
    <item>
      <title>Custom Signature to allow LDAPS as SSL port 636</title>
      <link>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310628#M338</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has anyone created a custom signature to create a custom APP-ID to allow SSL over port 636? I have read that decryption needs to be implemented for the Palo to identify the traffic to the right application but if decryption can not be completed how can this be done.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Feb 2020 16:56:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310628#M338</guid>
      <dc:creator>palmanza</dc:creator>
      <dc:date>2020-02-11T16:56:39Z</dc:date>
    </item>
    <item>
      <title>Re: Custom Signature to allow LDAPS as SSL port 636</title>
      <link>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310866#M339</link>
      <description>&lt;P&gt;Hello &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/124554"&gt;@palmanza&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it mandatory to have a signature, or would application override suffice for your need?&lt;/P&gt;&lt;P&gt;I simply created a new application (copied over the things from ldap, named it ldap&lt;STRONG&gt;s&lt;/STRONG&gt;), and created the override policy. The policies where ldap was listed as application were extended by ldap&lt;STRONG&gt;s&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="JoergSchuetter_0-1581528116827.png" style="width: 573px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23929iF8CEFA03A1EA0F1A/image-dimensions/573x182/is-moderation-mode/true?v=v2" width="573" height="182" role="button" title="JoergSchuetter_0-1581528116827.png" alt="JoergSchuetter_0-1581528116827.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="JoergSchuetter_1-1581528126281.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23930i2CE840B43F85700C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="JoergSchuetter_1-1581528126281.png" alt="JoergSchuetter_1-1581528126281.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="JoergSchuetter_2-1581528135255.png" style="width: 734px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23931i692C5490191DBD8F/image-dimensions/734x233/is-moderation-mode/true?v=v2" width="734" height="233" role="button" title="JoergSchuetter_2-1581528135255.png" alt="JoergSchuetter_2-1581528135255.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Feb 2020 17:25:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310866#M339</guid>
      <dc:creator>JoergSchuetter</dc:creator>
      <dc:date>2020-02-12T17:25:21Z</dc:date>
    </item>
    <item>
      <title>Re: Custom Signature to allow LDAPS as SSL port 636</title>
      <link>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310895#M340</link>
      <description>&lt;P&gt;I am enforcing APP-ID and wanted to do it at the application lever but your suggestion should be good. The insteresting part is that the Palo is showing hits to the rule with the custom rule but when I review the traffic it does not show anything with that rule. Any ideas on that?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Update on my own question.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looks like I needed to create the APP override which is something I have not done before but was able to do it properly and now the rule it is showing the traffic properly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2020 14:34:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/custom-signatures/custom-signature-to-allow-ldaps-as-ssl-port-636/m-p/310895#M340</guid>
      <dc:creator>palmanza</dc:creator>
      <dc:date>2020-02-13T14:34:12Z</dc:date>
    </item>
  </channel>
</rss>

