<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: MS-RDP and t.120 -&amp;gt; application: not-applicable in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40595#M29821</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would take a look at the placement of the policy that's blocking the traffic...It could be that the policy blocking this traffic is sitting above the policy that allows it. If not, take a closer look at the policy that's supposed to allow it and find out why the traffic is not not hitting it. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 29 Jul 2013 22:01:17 GMT</pubDate>
    <dc:creator>jteetsel</dc:creator>
    <dc:date>2013-07-29T22:01:17Z</dc:date>
    <item>
      <title>MS-RDP and t.120 -&gt; application: not-applicable</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40592#M29818</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a few rules that only permit ms-rdp and t.120. A new rule was implemented last week that permits ms-rdp and t.120, just different source addresses. The other rule can see the ms-rdp application but for the new rule, it shows up as application not-applicable and the traffic is being blocked.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I looked around here for some answers and have found that something before in the rule, the zone/source, etc. could be causing the tcp handshake not complete, thus not allowing the PA to pick up the application. However, the other rule which is working has the same zones set up, just the source address is different (same subnet). So I do not think it is anything to the left in the rule and the other rule is just above it so I do not think that is it either.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just looking for some thoughts/ideas.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Jul 2013 21:40:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40592#M29818</guid>
      <dc:creator>ArnelManalo</dc:creator>
      <dc:date>2013-07-29T21:40:50Z</dc:date>
    </item>
    <item>
      <title>Re: MS-RDP and t.120 -&gt; application: not-applicable</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40593#M29819</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello, the application will be listed as not-applicable if the traffic is being blocked via a rule that uses source\destination IP or zone as the criteria, with application "any". This happens because the traffic is blocked before it hits the content engine. The only time a block rule will show the application being blocked is when the application is the deciding factor on weather the traffic is blocked and is specifically listed in the application(s) for the policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;John&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Jul 2013 21:50:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40593#M29819</guid>
      <dc:creator>jteetsel</dc:creator>
      <dc:date>2013-07-29T21:50:19Z</dc:date>
    </item>
    <item>
      <title>Re: MS-RDP and t.120 -&gt; application: not-applicable</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40594#M29820</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi John,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the info. That would explain to me why it shows up as not-applicable when blocked. However, I suppose I am still curious as to why it is not seeing it as MS-RDP and being allowed through...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Arnel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Jul 2013 21:55:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40594#M29820</guid>
      <dc:creator>ArnelManalo</dc:creator>
      <dc:date>2013-07-29T21:55:13Z</dc:date>
    </item>
    <item>
      <title>Re: MS-RDP and t.120 -&gt; application: not-applicable</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40595#M29821</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would take a look at the placement of the policy that's blocking the traffic...It could be that the policy blocking this traffic is sitting above the policy that allows it. If not, take a closer look at the policy that's supposed to allow it and find out why the traffic is not not hitting it. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Jul 2013 22:01:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ms-rdp-and-t-120-gt-application-not-applicable/m-p/40595#M29821</guid>
      <dc:creator>jteetsel</dc:creator>
      <dc:date>2013-07-29T22:01:17Z</dc:date>
    </item>
  </channel>
</rss>

