<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Threat Log filter by 'Name' field in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48341#M35578</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;+1 for the ability to search on threat name and use some sort of wildcard language.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 19 Jul 2013 17:10:16 GMT</pubDate>
    <dc:creator>cmaier</dc:creator>
    <dc:date>2013-07-19T17:10:16Z</dc:date>
    <item>
      <title>Threat Log filter by 'Name' field</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48336#M35573</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've got a potential client that is trying to filter the threat log by the threat 'Name' field.&amp;nbsp; He wants to see all from a specific threat.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Normally you click on the item and it puts it in the filter bar but here when you click on the name you get a pop up with the details on that threat.&amp;nbsp; I've tried a bunch of combinations and can't find anything that will filter on the threat name.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there syntax for that field?&amp;nbsp; Another way to filter that traffic?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Apr 2013 01:17:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48336#M35573</guid>
      <dc:creator>CafNetMatt</dc:creator>
      <dc:date>2013-04-20T01:17:35Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Log filter by 'Name' field</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48337#M35574</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can use Threat ID instead.&lt;/P&gt;&lt;P&gt;If you click threat Name, you can see threat detail.&lt;/P&gt;&lt;P&gt;This window contain threat ID.&lt;/P&gt;&lt;P&gt;You can use this as follow:&lt;/P&gt;&lt;P&gt;(threatid eq xxxxx)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Apr 2013 01:40:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48337#M35574</guid>
      <dc:creator>emr_1</dc:creator>
      <dc:date>2013-04-20T01:40:41Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Log filter by 'Name' field</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48338#M35575</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Agree with &lt;A href="https://live.paloaltonetworks.com/u1/3485"&gt;emr&lt;/A&gt; &lt;/P&gt;&lt;P&gt;You can alternatively just choose the Threat Id from the Available columns in the Threat logs as shown in the Snapshot.&lt;/P&gt;&lt;P&gt;Threats details can also be searched from the Threat Vault.&lt;/P&gt;&lt;P&gt;&lt;A href="https://threatvault.paloaltonetworks.com/" title="https://threatvault.paloaltonetworks.com/"&gt;https://threatvault.paloaltonetworks.com/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="6316" alt="Threat Logs.PNG" class="jiveImage" src="https://live.paloaltonetworks.com/legacyfs/online/6316_Threat Logs.PNG" style="width: 450px; height: 98px;" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Apr 2013 02:40:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48338#M35575</guid>
      <dc:creator>UhMayYeah</dc:creator>
      <dc:date>2013-04-20T02:40:42Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Log filter by 'Name' field</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48339#M35576</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If I could do two correct answers I would've.&amp;nbsp; I had to choose and being lazy like all good net engineers, I chose the path of least resistance.&amp;nbsp; I added the column.&amp;nbsp; But, both worked and worked perfectly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you both!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Apr 2013 02:47:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48339#M35576</guid>
      <dc:creator>CafNetMatt</dc:creator>
      <dc:date>2013-04-20T02:47:31Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Log filter by 'Name' field</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48340#M35577</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There should be the capability to filter using text from the Name field also. If you want to search for, let's say, Microsoft vulnerabilities, you should be able to filter using the name field. This would allow an admin to find out what vulnerabilities are trying to be exploited and whether clients or servers have been patched for those vulnerabilities. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Jun 2013 21:37:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48340#M35577</guid>
      <dc:creator>craymond</dc:creator>
      <dc:date>2013-06-19T21:37:03Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Log filter by 'Name' field</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48341#M35578</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;+1 for the ability to search on threat name and use some sort of wildcard language.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Jul 2013 17:10:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log-filter-by-name-field/m-p/48341#M35578</guid>
      <dc:creator>cmaier</dc:creator>
      <dc:date>2013-07-19T17:10:16Z</dc:date>
    </item>
  </channel>
</rss>

