<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic DNS issues after implementing GeoBlock policy. in Advanced Threat Prevention Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/330301#M834</link>
    <description>&lt;P&gt;Hey guys, wanted to see if I can can get any input on this here - had to Geoblock one of&amp;nbsp; the countries for inbound/outbound traffic completely. Everything was fine until I found out that one of the employees started having issues with email delivery to the certain customer - "domain of sender address &lt;A href="mailto:xxxx@mydomain.com" target="_blank"&gt;xxxx@mydomain.com&lt;/A&gt; does not resolve &lt;A href="mailto:customer.email@customerdomain.com&amp;quot;" target="_blank"&gt;customer.email@customerdomain.com"&lt;/A&gt;. Turns out mail servers of this certain customer (as well as other server infrastructure) located in that Geoblocked zone. Tried to identify range of their public addresses and allow inbound/outbound dns and smtp applications from my mail server and on-prem dns servers (just in case).&lt;/P&gt;&lt;P&gt;Issue still exists. No problems/issues with incoming emails from &lt;A href="mailto:customer.email@customerdomain.com" target="_blank"&gt;customer.email@customerdomain.com&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Will appreciate any help/suggestions.&lt;/P&gt;&lt;P&gt;Thanks.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 28 May 2020 13:38:26 GMT</pubDate>
    <dc:creator>MKarasev</dc:creator>
    <dc:date>2020-05-28T13:38:26Z</dc:date>
    <item>
      <title>DNS issues after implementing GeoBlock policy.</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/330301#M834</link>
      <description>&lt;P&gt;Hey guys, wanted to see if I can can get any input on this here - had to Geoblock one of&amp;nbsp; the countries for inbound/outbound traffic completely. Everything was fine until I found out that one of the employees started having issues with email delivery to the certain customer - "domain of sender address &lt;A href="mailto:xxxx@mydomain.com" target="_blank"&gt;xxxx@mydomain.com&lt;/A&gt; does not resolve &lt;A href="mailto:customer.email@customerdomain.com&amp;quot;" target="_blank"&gt;customer.email@customerdomain.com"&lt;/A&gt;. Turns out mail servers of this certain customer (as well as other server infrastructure) located in that Geoblocked zone. Tried to identify range of their public addresses and allow inbound/outbound dns and smtp applications from my mail server and on-prem dns servers (just in case).&lt;/P&gt;&lt;P&gt;Issue still exists. No problems/issues with incoming emails from &lt;A href="mailto:customer.email@customerdomain.com" target="_blank"&gt;customer.email@customerdomain.com&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Will appreciate any help/suggestions.&lt;/P&gt;&lt;P&gt;Thanks.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 May 2020 13:38:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/330301#M834</guid>
      <dc:creator>MKarasev</dc:creator>
      <dc:date>2020-05-28T13:38:26Z</dc:date>
    </item>
    <item>
      <title>Re: DNS issues after implementing GeoBlock policy.</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/330340#M835</link>
      <description>&lt;P&gt;Query your traffic logs for denied traffic where your SMTP server is the source address.&lt;/P&gt;</description>
      <pubDate>Thu, 28 May 2020 16:18:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/330340#M835</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2020-05-28T16:18:39Z</dc:date>
    </item>
    <item>
      <title>Re: DNS issues after implementing GeoBlock policy.</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/331086#M839</link>
      <description>&lt;P&gt;Issue resolved, problem resided in the policy with the wrong DMZ zone assigned.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2020 14:47:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/dns-issues-after-implementing-geoblock-policy/m-p/331086#M839</guid>
      <dc:creator>MKarasev</dc:creator>
      <dc:date>2020-06-02T14:47:08Z</dc:date>
    </item>
  </channel>
</rss>

