<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Applications not being identified correctly in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582662#M116513</link>
    <description>&lt;P&gt;I spent several hours making a lot of changes but what i found that works is making sure that in your policy that "Service/URL Catagory" is setup to be any/any.&amp;nbsp; the setting "Application Default" ends up blocking the initial connection to the patch servers from the battle.net app.&lt;/P&gt;</description>
    <pubDate>Thu, 04 Apr 2024 15:09:33 GMT</pubDate>
    <dc:creator>NikGore</dc:creator>
    <dc:date>2024-04-04T15:09:33Z</dc:date>
    <item>
      <title>Applications not being identified correctly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/40705#M29891</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am running into a&amp;nbsp; number of situations where the applications are not being identified correctly and thus not working.&amp;nbsp; I can see that the applications is using the correct port, but the PA shows it is "web browsing", unknown, etc.&amp;nbsp; Examples:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;KaKaoTalk (ports 80 and 443) which is enabled, does not work&lt;/P&gt;&lt;P&gt;Guild Wars (6112, 6600 and 80) 6112 shows up as unknown-tcp, 6600&lt;/P&gt;&lt;P&gt;Battle.net (80 and 1119) port 1119 shows up as uknown-tcp and "web browsing".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any suggestions on why?&amp;nbsp; How can I got about fixing them?&amp;nbsp; etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Bob&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 Jan 2013 01:13:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/40705#M29891</guid>
      <dc:creator>BobW</dc:creator>
      <dc:date>2013-01-14T01:13:00Z</dc:date>
    </item>
    <item>
      <title>Re: Applications not being identified correctly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/40706#M29892</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are any of these using SSL/HTTPS? And if so, did you enable SSL-termination (SSL-decrypt) in your PA box?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 Jan 2013 10:25:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/40706#M29892</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2013-01-14T10:25:54Z</dc:date>
    </item>
    <item>
      <title>Re: Applications not being identified correctly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582662#M116513</link>
      <description>&lt;P&gt;I spent several hours making a lot of changes but what i found that works is making sure that in your policy that "Service/URL Catagory" is setup to be any/any.&amp;nbsp; the setting "Application Default" ends up blocking the initial connection to the patch servers from the battle.net app.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 15:09:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582662#M116513</guid>
      <dc:creator>NikGore</dc:creator>
      <dc:date>2024-04-04T15:09:33Z</dc:date>
    </item>
    <item>
      <title>Re: Applications not being identified correctly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582710#M116516</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;This is where things get confusing and complicated. Lets take battle.net as an example.&lt;/P&gt;
&lt;P&gt;First go to&amp;nbsp;&lt;A href="https://applipedia.paloaltonetworks.com/" target="_blank"&gt;https://applipedia.paloaltonetworks.com/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;This lists all the applications the PAN knows etc.&lt;/P&gt;
&lt;P&gt;Search for battle.net and click on the name.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the important part to look for:&lt;/P&gt;
&lt;P&gt;"Depends on Applications" and "Standard Ports"&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="OtakarKlier_0-1712264128496.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/58846iDFC14E5D0BE11E1C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="OtakarKlier_0-1712264128496.png" alt="OtakarKlier_0-1712264128496.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So if we are just creating a policy to allow battle.net, it should look something like:&lt;/P&gt;
&lt;P&gt;Applications: battle.net, web-browsing, ssl (its not listed but maybe required due to port 443)&lt;/P&gt;
&lt;P&gt;Service: http, https, and might need to create a custom one for 1119.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I hope this makes sense. Please let us know if you have additional follow up questions.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 20:57:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582710#M116516</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2024-04-04T20:57:36Z</dc:date>
    </item>
    <item>
      <title>Re: Applications not being identified correctly</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582726#M116518</link>
      <description>&lt;P&gt;If love it that worked alone but there are some initial p2p connections that aren't categorized as such.&amp;nbsp; I went so far as to put the machine in a dmz with a policy allowing everything and still didn't work until I changed application-default to "any" and then the connections to the installer patch server were no problem.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I believe this is an issue with the battle net installer and not with the firewall but workarounds are there for us poor unfortunate souls who have to deal with this stuff.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I couldn't find anywhere in the logs that would point me to this change, I was just turning off security policy items one by one till it worked.&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 22:42:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/applications-not-being-identified-correctly/m-p/582726#M116518</guid>
      <dc:creator>NikGore</dc:creator>
      <dc:date>2024-04-04T22:42:46Z</dc:date>
    </item>
  </channel>
</rss>

