<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Block page for security policy matches in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/block-page-for-security-policy-matches/m-p/131297#M46944</link>
    <description>&lt;P&gt;Is there a way to return a block page to users&amp;nbsp;when their connection&amp;nbsp;is blocked not by the URL-filter but by a security policy?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a security policy that blocks all outbound traffic to a list of foreign countries.&amp;nbsp; The problem is when users attempt to browse websites in these countries the traffic is blocked but the user doesn't receive any information about why it was blocked- the connection just times out.&lt;/P&gt;&lt;P&gt;IS there a way to send an HTML&amp;nbsp;block page to users when the traffic is blocked?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 05 Dec 2016 22:10:47 GMT</pubDate>
    <dc:creator>fmurray</dc:creator>
    <dc:date>2016-12-05T22:10:47Z</dc:date>
    <item>
      <title>Block page for security policy matches</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/block-page-for-security-policy-matches/m-p/131297#M46944</link>
      <description>&lt;P&gt;Is there a way to return a block page to users&amp;nbsp;when their connection&amp;nbsp;is blocked not by the URL-filter but by a security policy?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a security policy that blocks all outbound traffic to a list of foreign countries.&amp;nbsp; The problem is when users attempt to browse websites in these countries the traffic is blocked but the user doesn't receive any information about why it was blocked- the connection just times out.&lt;/P&gt;&lt;P&gt;IS there a way to send an HTML&amp;nbsp;block page to users when the traffic is blocked?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 05 Dec 2016 22:10:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/block-page-for-security-policy-matches/m-p/131297#M46944</guid>
      <dc:creator>fmurray</dc:creator>
      <dc:date>2016-12-05T22:10:47Z</dc:date>
    </item>
    <item>
      <title>Re: Block page for security policy matches</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/block-page-for-security-policy-matches/m-p/131327#M46945</link>
      <description>&lt;P&gt;If user tries to browse to website that is running on IP that is not permitted then this attempt is blocked before connection get's to HTTP.&lt;/P&gt;&lt;P&gt;Initial SYN packet gets tcp-rst back and connection is taken down.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What you can try is to:&lt;/P&gt;&lt;P&gt;Create top rule that permits traffic to your country IP addresses, application web-browsing, action allow.&lt;/P&gt;&lt;P&gt;Create second rule below it where destination is any, application is web-browsing and action is block.&lt;/P&gt;&lt;P&gt;And edit application response page.&lt;/P&gt;&lt;P&gt;If I were you I would add some Javascript to it so if application equals to web-browsing then show text "You are browsing to website hosted outside our country".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Dec 2016 23:58:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/block-page-for-security-policy-matches/m-p/131327#M46945</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2016-12-05T23:58:12Z</dc:date>
    </item>
  </channel>
</rss>

