<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Analysis and control of protocol running in SSH like SFTP in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93403#M43852</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any ideas on better controlling what gets transferred over a decrypted (by the Palo Alto's ssh decryption feature) SSH session.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I don't see an option blocking file up- or downloads via the fileblocking feature for SSH or an other corresponding protocol, nor is it possible creating a custom definition (for what's being transferred within SSH).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Palo Alto is telling me that it has "Decrypted" the SSH session, but no way of controling protocols or files in there...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Probably some of you have had the same thing coming up and know a little more...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and best regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Peter&lt;/P&gt;</description>
    <pubDate>Thu, 30 Jun 2016 14:25:10 GMT</pubDate>
    <dc:creator>pschoenegger-gm</dc:creator>
    <dc:date>2016-06-30T14:25:10Z</dc:date>
    <item>
      <title>Analysis and control of protocol running in SSH like SFTP</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93403#M43852</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any ideas on better controlling what gets transferred over a decrypted (by the Palo Alto's ssh decryption feature) SSH session.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I don't see an option blocking file up- or downloads via the fileblocking feature for SSH or an other corresponding protocol, nor is it possible creating a custom definition (for what's being transferred within SSH).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Palo Alto is telling me that it has "Decrypted" the SSH session, but no way of controling protocols or files in there...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Probably some of you have had the same thing coming up and know a little more...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and best regards,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Peter&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2016 14:25:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93403#M43852</guid>
      <dc:creator>pschoenegger-gm</dc:creator>
      <dc:date>2016-06-30T14:25:10Z</dc:date>
    </item>
    <item>
      <title>Re: Analysis and control of protocol running in SSH like SFTP</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93410#M43855</link>
      <description>&lt;P&gt;I don't think the firewall can do this unfortuantly. You can block SSH tunnelled apps however by blocking the SSH-tunnel application.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can find out more info here:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Documentation-Articles/SSH-tunneling-Control/ta-p/53134" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Documentation-Articles/SSH-tunneling-Control/ta-p/53134&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;hope this helps,&lt;/P&gt;&lt;P&gt;Ben&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2016 14:56:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93410#M43855</guid>
      <dc:creator>bmorris1</dc:creator>
      <dc:date>2016-06-30T14:56:00Z</dc:date>
    </item>
    <item>
      <title>Re: Analysis and control of protocol running in SSH like SFTP</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93415#M43857</link>
      <description>&lt;P&gt;SSH decryption cannot control the traffic/command going inside the ssh tunnel.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jun 2016 16:37:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/analysis-and-control-of-protocol-running-in-ssh-like-sftp/m-p/93415#M43857</guid>
      <dc:creator>pankaku</dc:creator>
      <dc:date>2016-06-30T16:37:50Z</dc:date>
    </item>
  </channel>
</rss>

