<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Hit-Statistics per Security/NAT Policy in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17284#M12619</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think contacting your sales engineer and propose this as a feature request is the thing you need to do.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A workaround is described in &lt;A __default_attr="8633" __jive_macro_name="message" class="jive_macro jive_macro_message" href="https://live.paloaltonetworks.com/"&gt;&lt;/A&gt; (using custom reports).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;According to the CLI manual for PANOS 4.1 it seems that stuff like this is already being used internally:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;P&gt;set deviceconfig&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;&amp;gt; security-policy-limits — Security rule violation notification threshold (count 1-4294967295; time-&lt;/P&gt;&lt;P&gt;interval 30-86400). Security policy limits affect each individual rule in the security policy.&amp;nbsp; If any &lt;/P&gt;&lt;P&gt;rule hits the specified count within the time-interval, an alarm is generated.&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 06 Nov 2012 10:42:36 GMT</pubDate>
    <dc:creator>mikand</dc:creator>
    <dc:date>2012-11-06T10:42:36Z</dc:date>
    <item>
      <title>Hit-Statistics per Security/NAT Policy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17283#M12618</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would really like to see how often a security policy is hit. We came from Sonicwall to Palo alto, and this is one of the things i miss the most.&lt;/P&gt;&lt;P&gt;Maybe there's a CLI command for it ? I didn't find it so far.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope you can help me out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;René Posthumus &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Nov 2012 10:17:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17283#M12618</guid>
      <dc:creator>NOC-Alliade</dc:creator>
      <dc:date>2012-11-06T10:17:20Z</dc:date>
    </item>
    <item>
      <title>Re: Hit-Statistics per Security/NAT Policy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17284#M12619</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think contacting your sales engineer and propose this as a feature request is the thing you need to do.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A workaround is described in &lt;A __default_attr="8633" __jive_macro_name="message" class="jive_macro jive_macro_message" href="https://live.paloaltonetworks.com/"&gt;&lt;/A&gt; (using custom reports).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;According to the CLI manual for PANOS 4.1 it seems that stuff like this is already being used internally:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;P&gt;set deviceconfig&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;&amp;gt; security-policy-limits — Security rule violation notification threshold (count 1-4294967295; time-&lt;/P&gt;&lt;P&gt;interval 30-86400). Security policy limits affect each individual rule in the security policy.&amp;nbsp; If any &lt;/P&gt;&lt;P&gt;rule hits the specified count within the time-interval, an alarm is generated.&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Nov 2012 10:42:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17284#M12619</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2012-11-06T10:42:36Z</dc:date>
    </item>
    <item>
      <title>Re: Hit-Statistics per Security/NAT Policy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17285#M12620</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Mikand,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanx for the reply. I'll certainly will notify our sales engineer for this. I didn't believe that this feature wasn't part of the OS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;René&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Nov 2012 10:47:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/hit-statistics-per-security-nat-policy/m-p/17285#M12620</guid>
      <dc:creator>NOC-Alliade</dc:creator>
      <dc:date>2012-11-06T10:47:54Z</dc:date>
    </item>
  </channel>
</rss>

