<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 403 Forbidden in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495827#M105094</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Its a permissions issue on the far side, eg not your firewall config.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
    <pubDate>Tue, 31 May 2022 15:50:02 GMT</pubDate>
    <dc:creator>OtakarKlier</dc:creator>
    <dc:date>2022-05-31T15:50:02Z</dc:date>
    <item>
      <title>403 Forbidden</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495768#M105093</link>
      <description>&lt;P&gt;I've run into a strange issue with the following website&amp;nbsp; &lt;A href="https://dvir-prod.aws.drivecam.net" target="_blank" rel="noopener"&gt;https://dvir-prod.aws.drivecam.net&lt;/A&gt;. When Users attempt to access it they are getting a 403 Forbidden. I'm not seeing an drops in the logs, and the packet captures don't point to anything either. I have to two 5520's in an HA pair and I forced the Active to Standby in the hops that it might help but no luck. Download the Tech Support file and uploaded it to the case I opened, but I haven't heard back on that. Access the site outside of the Company no issues.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help would be greatly apricated.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;Software Version&lt;/TD&gt;&lt;TD&gt;10.1.5-h2&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;</description>
      <pubDate>Tue, 31 May 2022 15:28:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495768#M105093</guid>
      <dc:creator>TedHaubein</dc:creator>
      <dc:date>2022-05-31T15:28:59Z</dc:date>
    </item>
    <item>
      <title>Re: 403 Forbidden</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495827#M105094</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Its a permissions issue on the far side, eg not your firewall config.&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 31 May 2022 15:50:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495827#M105094</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2022-05-31T15:50:02Z</dc:date>
    </item>
    <item>
      <title>Re: 403 Forbidden</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495861#M105099</link>
      <description>&lt;P&gt;Works fine when I'm not behind the firewall. Spoke to the vendor and asked them if they needed to allow our public NAT address, and I was told no.&lt;/P&gt;</description>
      <pubDate>Tue, 31 May 2022 16:10:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/495861#M105099</guid>
      <dc:creator>TedHaubein</dc:creator>
      <dc:date>2022-05-31T16:10:20Z</dc:date>
    </item>
    <item>
      <title>Re: 403 Forbidden</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/496465#M105110</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/68158"&gt;@TedHaubein&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Do you see anything with the lytx.com domain on your firewall getting blocked that drives the authentication.&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27580"&gt;@OtakarKlier&lt;/a&gt;&amp;nbsp;is correct, the firewall isn't feeding you a 403 error. It&amp;nbsp;&lt;EM&gt;could&amp;nbsp;&lt;/EM&gt;be blocking something with the authentication process however that has the site defaulting to a 403 forbidden error. Assuming you've tried this from multiple different devices/browsers behind the firewall and can rule out a caching issue, look to see if you're blocking anything else related to Lytx.&lt;/P&gt;
&lt;P&gt;In situations like this I really recommend fully enabling logging and using a test client to blanket allow all traffic temporarily. If you can access the site perfectly fine under those conditions, you know it's an actual firewall issue and you can use the logs to see what the firewall is actually seeing from the client to narrow things down. More than likely, you're dropping&amp;nbsp;&lt;EM&gt;something&amp;nbsp;&lt;/EM&gt;in the Lytx authentication process; that or this won't work with a blanket allow either and you have something else going on.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jun 2022 01:31:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/403-forbidden/m-p/496465#M105110</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2022-06-01T01:31:40Z</dc:date>
    </item>
  </channel>
</rss>

