<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Encrypted-DNS False Positive Heads Up in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537908#M110461</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167427"&gt;@securehops&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;This is said to be addressed, however someone of the domains falsely categorized last night are still being corrected and reported. If you haven't done so already and you're affected by this, ensure that you've cleared the cache on your firewall to verify that you have the current categorizations. I've listed the command below.&lt;/P&gt;
&lt;P&gt;I've sent three updates with a handful of domains still as of this morning that needed to be corrected, but the majority appear to be categorized properly now.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;clear url-cache all&lt;/LI-CODE&gt;</description>
    <pubDate>Thu, 06 Apr 2023 17:02:23 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2023-04-06T17:02:23Z</dc:date>
    <item>
      <title>Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537833#M110451</link>
      <description>&lt;P&gt;Presently&amp;nbsp;&lt;SPAN&gt;20230406.20033&lt;SPAN class="Apple-converted-space"&gt;&amp;nbsp;and earlier updates are presenting a large number of false positive categorizations for encrypted-dns. This includes several domains from Bitwarden, YouTube, Google, Microsoft, Spotify, and many many others. If you have encrypted-dns set to block you may get reports of many services not functioning properly.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Apr 2023 02:18:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537833#M110451</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2023-04-06T02:18:10Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537905#M110460</link>
      <description>&lt;P&gt;Any updates on a resolution for this?&amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Apr 2023 16:12:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537905#M110460</guid>
      <dc:creator>securehops</dc:creator>
      <dc:date>2023-04-06T16:12:16Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537908#M110461</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167427"&gt;@securehops&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;This is said to be addressed, however someone of the domains falsely categorized last night are still being corrected and reported. If you haven't done so already and you're affected by this, ensure that you've cleared the cache on your firewall to verify that you have the current categorizations. I've listed the command below.&lt;/P&gt;
&lt;P&gt;I've sent three updates with a handful of domains still as of this morning that needed to be corrected, but the majority appear to be categorized properly now.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="markup"&gt;clear url-cache all&lt;/LI-CODE&gt;</description>
      <pubDate>Thu, 06 Apr 2023 17:02:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537908#M110461</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2023-04-06T17:02:23Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537911#M110462</link>
      <description>&lt;P&gt;Thansk&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;.&amp;nbsp; I'm also still seeing some of the domains being categorized as Encrypted DNS&amp;nbsp; (based of the Test A Site url).&amp;nbsp; &amp;nbsp;Do you have an official link where this says it was addressed?&amp;nbsp; &amp;nbsp;I opened a priority ticket last night but still waiting on a response.&lt;/P&gt;</description>
      <pubDate>Thu, 06 Apr 2023 18:05:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537911#M110462</guid>
      <dc:creator>securehops</dc:creator>
      <dc:date>2023-04-06T18:05:58Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537913#M110463</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167427"&gt;@securehops&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;I don't have any acknowledgement that it was addressed officially by PAN outside of an update I have on a TAC ticket earlier this morning. A lot of the false positives that I gave as examples were addressed earlier this morning, but not everything. It&amp;nbsp;&lt;EM&gt;looks&amp;nbsp;&lt;/EM&gt;like they attempted to clear things up but more minor domains may need to be individually reported.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Apr 2023 18:27:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537913#M110463</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2023-04-06T18:27:07Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537947#M110467</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;, wanted to make sure I didn't miss something official!&lt;/P&gt;</description>
      <pubDate>Fri, 07 Apr 2023 00:27:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/537947#M110467</guid>
      <dc:creator>securehops</dc:creator>
      <dc:date>2023-04-07T00:27:18Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted-DNS False Positive Heads Up</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/538723#M110576</link>
      <description>&lt;P&gt;Looks like the issue is solved to me as of ~9PM of 12th April (CEST time).&lt;/P&gt;</description>
      <pubDate>Fri, 14 Apr 2023 06:54:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/encrypted-dns-false-positive-heads-up/m-p/538723#M110576</guid>
      <dc:creator>emyl_79</dc:creator>
      <dc:date>2023-04-14T06:54:58Z</dc:date>
    </item>
  </channel>
</rss>

