<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to Test a Vulnerability Protection Rule in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/533682#M1001</link>
    <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;
&lt;P&gt;I have a use case that I’m trying to test in a lab, but I can’t figure out how to perform the test, and I’m looking for guidance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My use case is to drop traffic if the firewall detects certain CVE vulnerabilities in the traffic. My question is, how can I actually test this if my test endpoint is not vulnerable, or I do not know of a server with vulnerabilities?&lt;/P&gt;</description>
    <pubDate>Wed, 08 Mar 2023 21:52:26 GMT</pubDate>
    <dc:creator>JasonMcNulty</dc:creator>
    <dc:date>2023-03-08T21:52:26Z</dc:date>
    <item>
      <title>How to Test a Vulnerability Protection Rule</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/533682#M1001</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;
&lt;P&gt;I have a use case that I’m trying to test in a lab, but I can’t figure out how to perform the test, and I’m looking for guidance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My use case is to drop traffic if the firewall detects certain CVE vulnerabilities in the traffic. My question is, how can I actually test this if my test endpoint is not vulnerable, or I do not know of a server with vulnerabilities?&lt;/P&gt;</description>
      <pubDate>Wed, 08 Mar 2023 21:52:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/533682#M1001</guid>
      <dc:creator>JasonMcNulty</dc:creator>
      <dc:date>2023-03-08T21:52:26Z</dc:date>
    </item>
    <item>
      <title>Re: How to Test a Vulnerability Protection Rule</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/534113#M1010</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/104461"&gt;@JasonMcNulty&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;in lab environment I would recommend to deploy a VM with&amp;nbsp;&lt;SPAN&gt;DVWA&amp;nbsp;&lt;A href="https://github.com/digininja/DVWA" target="_self"&gt;Ref&lt;/A&gt;&amp;nbsp;, then build another VM running vulnerability scanners for example OpenVAS, Metasploit. All these are open source or have free version. As next step, please each VM into own zone, apply policy with security profiles and start scanning the&amp;nbsp;DVWA server.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Kind Regards&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Pavel&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 11 Mar 2023 23:44:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/534113#M1010</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2023-03-11T23:44:02Z</dc:date>
    </item>
    <item>
      <title>Re: How to Test a Vulnerability Protection Rule</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/534188#M1013</link>
      <description>&lt;P&gt;Thanks for the reply Pavel! I have created a DVWA server and I think you provided me with the final pice of the puzzle, which is to scan that server! That is what I did not try.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Mar 2023 14:07:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/how-to-test-a-vulnerability-protection-rule/m-p/534188#M1013</guid>
      <dc:creator>JasonMcNulty</dc:creator>
      <dc:date>2023-03-13T14:07:56Z</dc:date>
    </item>
  </channel>
</rss>

