<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Blocking Facebook apps without ssl policy in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31503#M23042</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As &lt;A href="https://live.paloaltonetworks.com/u1/11197"&gt;ssharma&lt;/A&gt; says, if you don't decrypt the session you will only see the hostname of the session and not the full URL so the PA will not be able to determine read vs post.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 05 Feb 2015 14:35:06 GMT</pubDate>
    <dc:creator>Dz3015</dc:creator>
    <dc:date>2015-02-05T14:35:06Z</dc:date>
    <item>
      <title>Blocking Facebook apps without ssl policy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31501#M23040</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We are trying to let users to have read-only access to Facebook' but not allow them do posting or download anything from it.&amp;nbsp;&amp;nbsp; We don't have SSL policy.&amp;nbsp; Can you block Facebook posting with you SSL policy decrypt traffic?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Feb 2015 14:19:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31501#M23040</guid>
      <dc:creator>awarsame</dc:creator>
      <dc:date>2015-02-05T14:19:26Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking Facebook apps without ssl policy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31502#M23041</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI &lt;A href="https://live.paloaltonetworks.com/u1/22266"&gt;awarsame&lt;/A&gt; ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You will need ssl decryption on the device to allow or deny specific child application of parent application (facebook in this case). Hope this helps. Thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Feb 2015 14:28:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31502#M23041</guid>
      <dc:creator>ssharma</dc:creator>
      <dc:date>2015-02-05T14:28:24Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking Facebook apps without ssl policy</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31503#M23042</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As &lt;A href="https://live.paloaltonetworks.com/u1/11197"&gt;ssharma&lt;/A&gt; says, if you don't decrypt the session you will only see the hostname of the session and not the full URL so the PA will not be able to determine read vs post.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Feb 2015 14:35:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-facebook-apps-without-ssl-policy/m-p/31503#M23042</guid>
      <dc:creator>Dz3015</dc:creator>
      <dc:date>2015-02-05T14:35:06Z</dc:date>
    </item>
  </channel>
</rss>

