<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Action is Reset Both in traffic monitoring in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/action-is-reset-both-in-traffic-monitoring/m-p/577801#M2679</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Are you seeing this session end under the traffic logs? It sounds like there isnt a rule allowing this traffic. Under the "Policies" tab is there a rule thats create to allow access for this traffic? You could also use the "Test Policy Match" button at the bottom of the same page to see what rule the traffic would hit. If it was something under the threat logs stopping it you should see session end reason "threat". You could also be seeing policy-deny as a result of a file blocking profile or I've seen it in some cases as a result of something pertaining to ssl inspection.&lt;/P&gt;</description>
    <pubDate>Tue, 20 Feb 2024 21:09:09 GMT</pubDate>
    <dc:creator>Claw4609</dc:creator>
    <dc:date>2024-02-20T21:09:09Z</dc:date>
    <item>
      <title>Action is Reset Both in traffic monitoring</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/action-is-reset-both-in-traffic-monitoring/m-p/577798#M2678</link>
      <description>&lt;P&gt;The user was trying to access the Proofpoint links it is not accessible in the firewall. We could see the action is reset both in monitoring and a session end reason is policy-deny and checked the threat logs but we couldn't see any logs in the threat. could someone please help me to understand the issue&lt;/P&gt;</description>
      <pubDate>Tue, 20 Feb 2024 20:34:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/action-is-reset-both-in-traffic-monitoring/m-p/577798#M2678</guid>
      <dc:creator>SuganthanD</dc:creator>
      <dc:date>2024-02-20T20:34:00Z</dc:date>
    </item>
    <item>
      <title>Re: Action is Reset Both in traffic monitoring</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/action-is-reset-both-in-traffic-monitoring/m-p/577801#M2679</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Are you seeing this session end under the traffic logs? It sounds like there isnt a rule allowing this traffic. Under the "Policies" tab is there a rule thats create to allow access for this traffic? You could also use the "Test Policy Match" button at the bottom of the same page to see what rule the traffic would hit. If it was something under the threat logs stopping it you should see session end reason "threat". You could also be seeing policy-deny as a result of a file blocking profile or I've seen it in some cases as a result of something pertaining to ssl inspection.&lt;/P&gt;</description>
      <pubDate>Tue, 20 Feb 2024 21:09:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/action-is-reset-both-in-traffic-monitoring/m-p/577801#M2679</guid>
      <dc:creator>Claw4609</dc:creator>
      <dc:date>2024-02-20T21:09:09Z</dc:date>
    </item>
  </channel>
</rss>

