<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Decrypted traffic via firewall. in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466934#M102735</link>
    <description>&lt;P&gt;Hey &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27715"&gt;@inderjit21&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;- Is this traffic being allowed, or blocked?&lt;/P&gt;
&lt;P&gt;- Is there related URL logs with action block or continue?&lt;/P&gt;
&lt;P&gt;- Any other Threat Log related to that traffic?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am wondering if this is not related to this - &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClFKCA0" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClFKCA0&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 18 Feb 2022 21:40:37 GMT</pubDate>
    <dc:creator>aleksandar.astardzhiev</dc:creator>
    <dc:date>2022-02-18T21:40:37Z</dc:date>
    <item>
      <title>Decrypted traffic via firewall.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/465995#M102634</link>
      <description>&lt;P&gt;I don't have any decryption policy configured.&lt;BR /&gt;But I see port -443 traffic has decrypted flag yes in Traffic logs.&lt;BR /&gt;Is it normal for firewall to decrypt 443 traffic even when there is&lt;BR /&gt;no decryption policy?&lt;/P&gt;&lt;P&gt;PANOS0-9.1.10 VM-300&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 22:17:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/465995#M102634</guid>
      <dc:creator>inderjit21</dc:creator>
      <dc:date>2022-02-15T22:17:03Z</dc:date>
    </item>
    <item>
      <title>Re: Decrypted traffic via firewall.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466025#M102639</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27715"&gt;@inderjit21&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;This is normal under certain conditions for traffic that terminates at the firewall, for example captive portal or GlobalProtect traffic, even when you don't have decryption enabled.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 00:39:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466025#M102639</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2022-02-16T00:39:59Z</dc:date>
    </item>
    <item>
      <title>Re: Decrypted traffic via firewall.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466037#M102643</link>
      <description>&lt;P&gt;There is no captive portal configured and is also not GP traffic. trust to untrust 443/web browsing&amp;nbsp; and 443/ssl traffic.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 01:55:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466037#M102643</guid>
      <dc:creator>inderjit21</dc:creator>
      <dc:date>2022-02-16T01:55:39Z</dc:date>
    </item>
    <item>
      <title>Re: Decrypted traffic via firewall.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466934#M102735</link>
      <description>&lt;P&gt;Hey &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27715"&gt;@inderjit21&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;- Is this traffic being allowed, or blocked?&lt;/P&gt;
&lt;P&gt;- Is there related URL logs with action block or continue?&lt;/P&gt;
&lt;P&gt;- Any other Threat Log related to that traffic?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am wondering if this is not related to this - &lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClFKCA0" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClFKCA0&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Feb 2022 21:40:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/decrypted-traffic-via-firewall/m-p/466934#M102735</guid>
      <dc:creator>aleksandar.astardzhiev</dc:creator>
      <dc:date>2022-02-18T21:40:37Z</dc:date>
    </item>
  </channel>
</rss>

