<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Getting SMB brute force logs in Advanced Threat Prevention Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/getting-smb-brute-force-logs/m-p/435562#M1323</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Check the traffic and see if its legit. Could be a false positive as some applications look like this and it turns out to be a false positive.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
    <pubDate>Tue, 21 Sep 2021 16:52:37 GMT</pubDate>
    <dc:creator>OtakarKlier</dc:creator>
    <dc:date>2021-09-21T16:52:37Z</dc:date>
    <item>
      <title>Getting SMB brute force logs</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/getting-smb-brute-force-logs/m-p/434115#M1319</link>
      <description>&lt;P&gt;hey, guys hope you are doing well One of my customer getting the logs of&amp;nbsp;SMB: User Password Brute Force Attempt for a particular user as the user is connected to Global VPN to LAN the port 445 getting reset both traffic logs in threat logs all things are working fine GP is authenticated but why these logs are getting what things we should do customer check the system side also.&lt;/P&gt;</description>
      <pubDate>Wed, 15 Sep 2021 10:53:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/getting-smb-brute-force-logs/m-p/434115#M1319</guid>
      <dc:creator>FarhanKoujalgi</dc:creator>
      <dc:date>2021-09-15T10:53:41Z</dc:date>
    </item>
    <item>
      <title>Re: Getting SMB brute force logs</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/getting-smb-brute-force-logs/m-p/435562#M1323</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Check the traffic and see if its legit. Could be a false positive as some applications look like this and it turns out to be a false positive.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 16:52:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/getting-smb-brute-force-logs/m-p/435562#M1323</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2021-09-21T16:52:37Z</dc:date>
    </item>
  </channel>
</rss>

