<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: URL Filtering - Bypass for Level 1-2 Support in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63579#M38236</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;you could create a scenario where specific group of GP users have URL filtering profile that only alerts without block or continue actions; upon a call to the tech support, your L1-L2 tech could enable/create a new account that would temporarily be available and given to users. Once they connect with GP, you route them through GP and apply different set of policies onto their traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just a first solution from the top of my head, would this work for you?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Luciano&lt;/P&gt;</description>
    <pubDate>Tue, 25 Aug 2015 08:02:37 GMT</pubDate>
    <dc:creator>Lucky</dc:creator>
    <dc:date>2015-08-25T08:02:37Z</dc:date>
    <item>
      <title>URL Filtering - Bypass for Level 1-2 Support</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63402#M38161</link>
      <description>&lt;P&gt;Good Afternoon&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a request to look into a way a Level 1 - 2 Support Person can easily bypass a blocked URL. &amp;nbsp;Be it by policy, a custom button on the response page, captive portal, or a combination of whatever might be needed to do so. &amp;nbsp;Has anyone set something like this up? &amp;nbsp;Is it possible? &amp;nbsp;And what would be the best practice or best method in doing so?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;General Scenario:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A crticial meeting, conference, or whatever the pressing agenda would be has a user getting blocked by URL Filtering in an attempt to go to a Legitamate and Justified URL for the business need.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The User then calls Support, and without having to involve others, the Level 1 or Level 2 support person fielding the call could initiate a remote session and go through a few clicks or enter a crendetial that will temporarily allow that users session to bypass URL Filtering for that particular session or site........&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a case opened but before I go further down that rabbit hole, I would like too see if anyone out there has done anything like this via policy, captive portal, redirect, custom button, or a combination of either to acheive this. &amp;nbsp;If it is even possible.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Aug 2015 17:29:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63402#M38161</guid>
      <dc:creator>alanglois</dc:creator>
      <dc:date>2015-08-20T17:29:38Z</dc:date>
    </item>
    <item>
      <title>Re: URL Filtering - Bypass for Level 1-2 Support</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63435#M38168</link>
      <description>&lt;P&gt;Do you have a realworld example of a site where this has occurred?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can use the "Overide" option in your URL profile for URL categories:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;TABLE cellspacing="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TH_TableHeading"&gt;URL Admin Override&lt;/DIV&gt;&lt;/TD&gt;&lt;TD&gt;&lt;DIV class="TB_TableBody"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TSH_TableSubHeading"&gt;Settings for URL Admin Override&lt;/DIV&gt;&lt;/TD&gt;&lt;TD&gt;&lt;DIV class="TB_TableBody"&gt;Specify the settings that are used when a page is blocked by the URL filtering profile and the &lt;SPAN&gt;Override&lt;/SPAN&gt; action is specified. See &lt;A title="Security Profiles" target="_blank"&gt;“URL Filtering Profiles”&lt;/A&gt;.&lt;/DIV&gt;&lt;DIV class="TB_TableBody"&gt;Click &lt;SPAN&gt;Add&lt;/SPAN&gt; and configure the following settings for each virtual system that you want to configure for URL admin override.&lt;/DIV&gt;&lt;DIV class="TB1_TableBullet_outer"&gt;&lt;TABLE border="0" cellspacing="0" cellpadding="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner"&gt;•&lt;/DIV&gt;&lt;/TD&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner"&gt;&lt;SPAN&gt;Location&lt;/SPAN&gt;—Select the virtual system from the drop-down list (multi-VSYS devices only).&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/DIV&gt;&lt;DIV class="TB1_TableBullet_outer"&gt;&lt;TABLE border="0" cellspacing="0" cellpadding="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner"&gt;•&lt;/DIV&gt;&lt;/TD&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner"&gt;&lt;SPAN&gt;Password/Confirm Password&lt;/SPAN&gt;—Enter the password that the user must enter to override the block page.&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Following this your L1/L2 tech could provide the password temporarily allowing the user to access the site.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Aug 2015 22:02:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63435#M38168</guid>
      <dc:creator>Brandon_Wertz</dc:creator>
      <dc:date>2015-08-20T22:02:21Z</dc:date>
    </item>
    <item>
      <title>Re: URL Filtering - Bypass for Level 1-2 Support</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63532#M38217</link>
      <description>&lt;P&gt;&lt;SPAN&gt;I am going to accept this solution as is, it may not be exactly what they wanted or envisioned, but it should do the job. Thanks for the assist!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Aug 2015 13:48:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63532#M38217</guid>
      <dc:creator>alanglois</dc:creator>
      <dc:date>2015-08-24T13:48:38Z</dc:date>
    </item>
    <item>
      <title>Re: URL Filtering - Bypass for Level 1-2 Support</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63579#M38236</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;you could create a scenario where specific group of GP users have URL filtering profile that only alerts without block or continue actions; upon a call to the tech support, your L1-L2 tech could enable/create a new account that would temporarily be available and given to users. Once they connect with GP, you route them through GP and apply different set of policies onto their traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just a first solution from the top of my head, would this work for you?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Luciano&lt;/P&gt;</description>
      <pubDate>Tue, 25 Aug 2015 08:02:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-bypass-for-level-1-2-support/m-p/63579#M38236</guid>
      <dc:creator>Lucky</dc:creator>
      <dc:date>2015-08-25T08:02:37Z</dc:date>
    </item>
  </channel>
</rss>

