<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Features Inquiry in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39058#M28636</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Few related information for alert notification to &lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Email&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;,&lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;syslog&lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt; ,&lt;/SPAN&gt; &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;snmp&lt;/SPAN&gt; or other Log forwarding:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/message/31844"&gt;Email alerts,.&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-4117"&gt;How to Configure Email Alerts for System Logs?&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-2390"&gt;How to Setup Email Alerts&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Example:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(A) The login information under SYSTEM logs will be "informational"&lt;/P&gt;&lt;P&gt;&lt;IMG alt="login-logs.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11721_login-logs.JPG.jpg" style="width: 620px; height: 35px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(B) Create a server profile for SYSLOG and email notification.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="syslog-1.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11722_syslog-1.JPG.jpg" style="width: 620px; height: 153px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(C)&amp;nbsp; Edit the "&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;infomational&lt;/SPAN&gt;" log settings under System&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;&amp;gt;,&lt;/SPAN&gt; add the configured SYSLOG server and email profile.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="syslog-2.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11723_syslog-2.JPG.jpg" style="width: 620px; height: 114px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(D)&amp;nbsp; Set up a log forwarding profile under Object &amp;gt; Log forwarding&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="syslog-3.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11724_syslog-3.JPG.jpg" style="width: 620px; height: 178px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 21 Feb 2014 05:45:06 GMT</pubDate>
    <dc:creator>HULK</dc:creator>
    <dc:date>2014-02-21T05:45:06Z</dc:date>
    <item>
      <title>Features Inquiry</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39056#M28634</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would like to know if there is an alert feature in PAN where it will alert (via Email, Syslog,snmp or other Log forwarding) the administrators whenever someone is trying to login in the device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;also, is there a plan in adding a Configuration Forwarding to PAN? basically PAN will just send the latest config to a FTP server or other file transfer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-hartkently&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 02:53:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39056#M28634</guid>
      <dc:creator>HartkentlyNua</dc:creator>
      <dc:date>2014-02-21T02:53:25Z</dc:date>
    </item>
    <item>
      <title>Re: Features Inquiry</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39057#M28635</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Hello,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;The firewall does not have an option to back up the config until and unless you use &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;xmli&lt;/SPAN&gt; &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;api&lt;/SPAN&gt;. If you have a panorama managing your device you can schedule a config export by navigating to Panorama-Schedule Config export--use &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;ftp&lt;/SPAN&gt;/&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;scp&lt;/SPAN&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Related notes: &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;&lt;A href="https://live.paloaltonetworks.com/message/20166"&gt;automatic config backup option&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;&lt;A href="https://live.paloaltonetworks.com/message/31937"&gt;Re: Saving and Exporting Configs&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/message/29964"&gt;schedule&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As per my knowledge, t&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;he XML-API backup works fantastically.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-1714"&gt;How to use the XML API to backup your firewall configuration&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:33:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39057#M28635</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-02-21T05:33:28Z</dc:date>
    </item>
    <item>
      <title>Re: Features Inquiry</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39058#M28636</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Few related information for alert notification to &lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Email&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;,&lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;syslog&lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt; ,&lt;/SPAN&gt; &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;snmp&lt;/SPAN&gt; or other Log forwarding:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/message/31844"&gt;Email alerts,.&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-4117"&gt;How to Configure Email Alerts for System Logs?&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-2390"&gt;How to Setup Email Alerts&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Example:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(A) The login information under SYSTEM logs will be "informational"&lt;/P&gt;&lt;P&gt;&lt;IMG alt="login-logs.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11721_login-logs.JPG.jpg" style="width: 620px; height: 35px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(B) Create a server profile for SYSLOG and email notification.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="syslog-1.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11722_syslog-1.JPG.jpg" style="width: 620px; height: 153px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(C)&amp;nbsp; Edit the "&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;infomational&lt;/SPAN&gt;" log settings under System&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;&amp;gt;,&lt;/SPAN&gt; add the configured SYSLOG server and email profile.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="syslog-2.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11723_syslog-2.JPG.jpg" style="width: 620px; height: 114px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(D)&amp;nbsp; Set up a log forwarding profile under Object &amp;gt; Log forwarding&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="syslog-3.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/11724_syslog-3.JPG.jpg" style="width: 620px; height: 178px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 05:45:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39058#M28636</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-02-21T05:45:06Z</dc:date>
    </item>
    <item>
      <title>Re: Features Inquiry</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39059#M28637</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for this very helpful information. but this isn't exactly what we are trying to figure out.&lt;/P&gt;&lt;P&gt;Correct me if I'm wrong but from what i understand on your comment, the traffic must first go through the policy.&lt;/P&gt;&lt;P&gt;what if the traffic is internal and it didn't pass through the sec policies.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:03:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39059#M28637</guid>
      <dc:creator>HartkentlyNua</dc:creator>
      <dc:date>2014-02-21T06:03:22Z</dc:date>
    </item>
    <item>
      <title>Re: Features Inquiry</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39060#M28638</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Sir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The above mentioned information is just an example. For SYSTEM logs, it does not require to have a security policy (assuming that the SYSLOG server is connected through management interface). Hence, you will get the login information &lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;whenever someone will try to login.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:17:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39060#M28638</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-02-21T06:17:29Z</dc:date>
    </item>
    <item>
      <title>Re: Features Inquiry</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39061#M28639</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for clearing that out. I will test this personally.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I appreciate your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-hartkently&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Feb 2014 06:26:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/features-inquiry/m-p/39061#M28639</guid>
      <dc:creator>HartkentlyNua</dc:creator>
      <dc:date>2014-02-21T06:26:01Z</dc:date>
    </item>
  </channel>
</rss>

