<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Feature to test Firewall rule logic with test packets? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20336#M14818</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks very much! thats exactly what i was hoping for.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also, i was able to find the protocol numbers the rules refer to&lt;/P&gt;&lt;P&gt;&lt;A class="active_link" href="http://en.wikipedia.org/wiki/List_of_IP_protocol_numbers"&gt;http://en.wikipedia.org/wiki/List_of_IP_protocol_numbers&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 10 Oct 2012 16:57:23 GMT</pubDate>
    <dc:creator>choff123</dc:creator>
    <dc:date>2012-10-10T16:57:23Z</dc:date>
    <item>
      <title>Feature to test Firewall rule logic with test packets?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20334#M14816</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Im setting up some rules right now which 'should' just work as they are fairly straightforward.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there a feature that will let me state a certain packet with certain info is comming in on an interface and the FW can tell me what rules it hits and what path it takes through virtual routers?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just want to see the flow of the packet through the firewall so i know whats going wrong.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 15:59:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20334#M14816</guid>
      <dc:creator>choff123</dc:creator>
      <dc:date>2012-10-10T15:59:04Z</dc:date>
    </item>
    <item>
      <title>Re: Feature to test Firewall rule logic with test packets?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20335#M14817</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can use the test commands on the device. The test command can be used to test variety of rules like NAT, secuirty, dos , etc.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Capture3.PNG" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/4430_Capture3.PNG" width="450" /&gt;&lt;/P&gt;&lt;P&gt;You can test a security policy is working or not as below.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Capture.PNG" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/4431_Capture.PNG" width="450" /&gt;&lt;/P&gt;&lt;P&gt;And the same applies for the NAT policy also. You can test NAT policy as below,&lt;IMG alt="Capture2.PNG" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/4432_Capture2.PNG" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can use a wide range of criteria's in your test like source ip, source-user, destination application and more. Take the help&amp;nbsp; of ? symbol while using this commands and test your rules.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 16:11:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20335#M14817</guid>
      <dc:creator>sdurga</dc:creator>
      <dc:date>2012-10-10T16:11:48Z</dc:date>
    </item>
    <item>
      <title>Re: Feature to test Firewall rule logic with test packets?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20336#M14818</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks very much! thats exactly what i was hoping for.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also, i was able to find the protocol numbers the rules refer to&lt;/P&gt;&lt;P&gt;&lt;A class="active_link" href="http://en.wikipedia.org/wiki/List_of_IP_protocol_numbers"&gt;http://en.wikipedia.org/wiki/List_of_IP_protocol_numbers&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Oct 2012 16:57:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/feature-to-test-firewall-rule-logic-with-test-packets/m-p/20336#M14818</guid>
      <dc:creator>choff123</dc:creator>
      <dc:date>2012-10-10T16:57:23Z</dc:date>
    </item>
  </channel>
</rss>

