<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Rule creation query in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498564#M105159</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/214068"&gt;@BNSRIKAR&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for reaching out! I have a few questions:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can you confirm URL Filtering is licensed by going to Devices -&amp;gt; Licenses?&lt;/P&gt;
&lt;P&gt;Once licensed is verified, can you pull up your custom URL category and share a screenshot of what your settings are? If not able to, are the pre-defined categories within the profile set to site access -&amp;gt; blocked? The only options set to allow should be the domains you specify.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On your monitor logs, does the internet traffic hit the security policy you specified?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;LI-PRODUCT title="URL Filtering" id="URL_Filtering"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;, &lt;LI-PRODUCT title="NGFW" id="NGFW"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 03 Jun 2022 00:01:19 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2022-06-03T00:01:19Z</dc:date>
    <item>
      <title>Rule creation query</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498409#M105154</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have created policy&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Source: Internal subnet&lt;/P&gt;&lt;P&gt;Destination: Any Application:Any service/url category:custom category.&lt;/P&gt;&lt;P&gt;Action allow.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In custom URl category, we have added 2 domains. Our requirement is internal subnet user should access these 2 domains only.&lt;/P&gt;&lt;P&gt;However traffic is getting allowed for all other destination IP address. Why it is happening when i clearly mentioned the URL category that needs to be allowed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However&amp;nbsp; traffic is getting allowed&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jun 2022 15:29:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498409#M105154</guid>
      <dc:creator>BNSRIKAR</dc:creator>
      <dc:date>2022-06-02T15:29:07Z</dc:date>
    </item>
    <item>
      <title>Re: Rule creation query</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498564#M105159</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/214068"&gt;@BNSRIKAR&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for reaching out! I have a few questions:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can you confirm URL Filtering is licensed by going to Devices -&amp;gt; Licenses?&lt;/P&gt;
&lt;P&gt;Once licensed is verified, can you pull up your custom URL category and share a screenshot of what your settings are? If not able to, are the pre-defined categories within the profile set to site access -&amp;gt; blocked? The only options set to allow should be the domains you specify.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On your monitor logs, does the internet traffic hit the security policy you specified?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;LI-PRODUCT title="URL Filtering" id="URL_Filtering"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;, &lt;LI-PRODUCT title="NGFW" id="NGFW"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jun 2022 00:01:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498564#M105159</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2022-06-03T00:01:19Z</dc:date>
    </item>
    <item>
      <title>Re: Rule creation query</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498888#M105165</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/214068"&gt;@BNSRIKAR&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;If you're just looking at the logs, the firewall needs to allow enough traffic to pass to actually identify the URL being requested. It would be expected to see other traffic getting allowed until the firewall can identify the URL and determine if it matches your policy.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can you verify that you've actually tested on one of these restricted users and actually had a page load successfully matching this policy?&amp;nbsp;My assumption is that you are just going off of traffic logs here.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jun 2022 01:39:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/rule-creation-query/m-p/498888#M105165</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2022-06-03T01:39:53Z</dc:date>
    </item>
  </channel>
</rss>

