<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to monitor threats for Panorama traffic in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453645#M101375</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Pavel, thank you for your answer.&amp;nbsp; What I mean is that, for example if there is a vulnerability "x" I can check in monitor&amp;gt;&amp;nbsp; threat&amp;nbsp; if a fw is suffering an attack due to this vulnerability using the next filter cve eq CVE-number, But If panorama is affected to this vulnerability, how could we perform the same check for panorama?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 16 Dec 2021 13:20:25 GMT</pubDate>
    <dc:creator>Maria-Victoria</dc:creator>
    <dc:date>2021-12-16T13:20:25Z</dc:date>
    <item>
      <title>How to monitor threats for Panorama traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453595#M101371</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We can check if a fw is hitting some vulnerability checking the monitor threat tab, I would like to know if there is a way to check the same think for panorama traffic, thanks in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 09:45:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453595#M101371</guid>
      <dc:creator>Maria-Victoria</dc:creator>
      <dc:date>2021-12-16T09:45:21Z</dc:date>
    </item>
    <item>
      <title>Re: How to monitor threats for Panorama traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453620#M101373</link>
      <description>&lt;P&gt;Thank you for posting question&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/147372"&gt;@Maria-Victoria&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Panorama does not have any data plane and is not processing any traffic like Firewall does. If you mean checking of the logs from Firewalls, then as long as Firewall is registered in Panorama and sending Threat logs you should be able to see it under: Monitor &amp;gt; Logs &amp;gt; Threat.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you are referring to something else could you please provide more details what you are looking into?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind Regards&lt;/P&gt;&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 12:01:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453620#M101373</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2021-12-16T12:01:36Z</dc:date>
    </item>
    <item>
      <title>Re: How to monitor threats for Panorama traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453645#M101375</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Pavel, thank you for your answer.&amp;nbsp; What I mean is that, for example if there is a vulnerability "x" I can check in monitor&amp;gt;&amp;nbsp; threat&amp;nbsp; if a fw is suffering an attack due to this vulnerability using the next filter cve eq CVE-number, But If panorama is affected to this vulnerability, how could we perform the same check for panorama?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 13:20:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453645#M101375</guid>
      <dc:creator>Maria-Victoria</dc:creator>
      <dc:date>2021-12-16T13:20:25Z</dc:date>
    </item>
    <item>
      <title>Re: How to monitor threats for Panorama traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453682#M101380</link>
      <description>&lt;P&gt;Thank you for quick reply&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/147372"&gt;@Maria-Victoria&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Since Panorama does not have any firewall feature and does not process any data plane traffic, there is no equivalent in Panorama what you are used to see in regular Firewall with Threat logs. Panorama can't check itself for vulnerability.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I would recommend to check this security advisory:&amp;nbsp;&lt;A href="https://security.paloaltonetworks.com/CVE-2021-44228" target="_blank"&gt;https://security.paloaltonetworks.com/CVE-2021-44228&lt;/A&gt;&amp;nbsp;based on your PAN-OS version and deployment mode to confirm whether you are affected or not. As time progress Palo Alto is going to provide update on hotfix for PAN-OS versions that are affected.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kind Regards&lt;/P&gt;&lt;P&gt;Pavel&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 14:32:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-monitor-threats-for-panorama-traffic/m-p/453682#M101380</guid>
      <dc:creator>PavelK</dc:creator>
      <dc:date>2021-12-16T14:32:48Z</dc:date>
    </item>
  </channel>
</rss>

