<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Have managed to break Google Play and Apple App store downloads in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21731#M15882</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do already have an explicit deny all rule covering this zone, with logging enabled.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 22 May 2013 07:37:09 GMT</pubDate>
    <dc:creator>BlackfenSchool</dc:creator>
    <dc:date>2013-05-22T07:37:09Z</dc:date>
    <item>
      <title>Have managed to break Google Play and Apple App store downloads</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21727#M15878</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At some point in the last month or so, I've managed to break downloads from both the Google Play store and Apple App store.&amp;nbsp; But I don't know how. &lt;img id="smileysad" class="emoticon emoticon-smileysad" src="https://live.paloaltonetworks.com/i/smilies/16x16_smiley-sad.png" alt="Smiley Sad" title="Smiley Sad" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have enabled decryption, but have disabled all my decryption rules and it is still broken - So I assume it's not that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can't find any associated denied traffic in the traffic log, or in the URL filtering log.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="PlayBroke.jpg" class="jive-image-thumbnail jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/6597_PlayBroke.jpg" width="450" /&gt;&lt;/P&gt;&lt;P&gt;If anyone has any idea what I've done, it would be greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Shaun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 May 2013 07:38:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21727#M15878</guid>
      <dc:creator>BlackfenSchool</dc:creator>
      <dc:date>2013-05-21T07:38:01Z</dc:date>
    </item>
    <item>
      <title>Re: Have managed to break Google Play and Apple App store downloads</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21728#M15879</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you don't have an explicit deny rule at the end of your policies, you won't see anything that is implicitly denied. In other words, If you don't have something allowed that needs to be allowed, and you don't have a policy that alerts or blocks everything else, you won't see it in the log. There is also a document located here: &lt;A _jive_internal="true" href="https://live.paloaltonetworks.com/docs/DOC-4256"&gt;https://live.paloaltonetworks.com/docs/DOC-4256&lt;/A&gt; that may be of use to you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 May 2013 15:10:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21728#M15879</guid>
      <dc:creator>craymond</dc:creator>
      <dc:date>2013-05-21T15:10:08Z</dc:date>
    </item>
    <item>
      <title>Re: Have managed to break Google Play and Apple App store downloads</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21729#M15880</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Also instead of a "Deny any to any" rule you might want to break your explicit deny rule up by Zone... otherwise you break intra-zone traffic if you have any (this is from experience.. we broke our Palo Alto providing DHCP by having a 'deny any' at the bottom of our rule base)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 May 2013 15:32:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21729#M15880</guid>
      <dc:creator>ericgearhart</dc:creator>
      <dc:date>2013-05-21T15:32:32Z</dc:date>
    </item>
    <item>
      <title>Re: Have managed to break Google Play and Apple App store downloads</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21730#M15881</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I should have been more explicit! - As egearhart said, you definitely should not use a deny any any rule.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 May 2013 17:28:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21730#M15881</guid>
      <dc:creator>craymond</dc:creator>
      <dc:date>2013-05-21T17:28:57Z</dc:date>
    </item>
    <item>
      <title>Re: Have managed to break Google Play and Apple App store downloads</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21731#M15882</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do already have an explicit deny all rule covering this zone, with logging enabled.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 22 May 2013 07:37:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/have-managed-to-break-google-play-and-apple-app-store-downloads/m-p/21731#M15882</guid>
      <dc:creator>BlackfenSchool</dc:creator>
      <dc:date>2013-05-22T07:37:09Z</dc:date>
    </item>
  </channel>
</rss>

