<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to block a Specific `https` Site(internal DMZ) with URL Filtering in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-internal-dmz-with-url/m-p/158660#M51937</link>
    <description>&lt;P&gt;Im new Paloalto FW and welcome any advice.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I`ve applied&amp;nbsp; url block a Specific web site(internal DMZ serverfarm) From Untrust access /w Paloalto pa3020/os 6. Exist system was `https ssl` decrypted. So, when I get into the site with `http`Its blocked with FireWall But when I get into the site with `https' Its not blocked. My question is How can I block `https` url with Pa3020/ os6? thx for reply!&lt;/P&gt;</description>
    <pubDate>Tue, 30 May 2017 01:27:09 GMT</pubDate>
    <dc:creator>JoDW78</dc:creator>
    <dc:date>2017-05-30T01:27:09Z</dc:date>
    <item>
      <title>How to block a Specific `https` Site(internal DMZ) with URL Filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-internal-dmz-with-url/m-p/158660#M51937</link>
      <description>&lt;P&gt;Im new Paloalto FW and welcome any advice.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I`ve applied&amp;nbsp; url block a Specific web site(internal DMZ serverfarm) From Untrust access /w Paloalto pa3020/os 6. Exist system was `https ssl` decrypted. So, when I get into the site with `http`Its blocked with FireWall But when I get into the site with `https' Its not blocked. My question is How can I block `https` url with Pa3020/ os6? thx for reply!&lt;/P&gt;</description>
      <pubDate>Tue, 30 May 2017 01:27:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-internal-dmz-with-url/m-p/158660#M51937</guid>
      <dc:creator>JoDW78</dc:creator>
      <dc:date>2017-05-30T01:27:09Z</dc:date>
    </item>
    <item>
      <title>Re: How to block a Specific `https` Site(internal DMZ) with URL Filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-internal-dmz-with-url/m-p/158661#M51938</link>
      <description>&lt;P&gt;Welcome to community.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you want to decrypt traffic from Untrust towards server under your control then you have to export certificate together with private key out from web server and import it into firewall.&lt;/P&gt;&lt;P&gt;If you click on mag glass is Decrypted yes or no on those sessions?&lt;/P&gt;&lt;P&gt;If you don't decrypt then Palo will identify site based on website address on certificate as HTTP GET goes through firewall encrypted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A title="https://www.paloaltonetworks.com/documentation/60/pan-os/pan-os/decryption/configure-ssl-inbound-inspection" href="https://www.paloaltonetworks.com/documentation/60/pan-os/pan-os/decryption/configure-ssl-inbound-inspection" target="_blank"&gt;https://www.paloaltonetworks.com/documentation/60/pan-os/pan-os/decryption/configure-ssl-inbound-inspection&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 30 May 2017 02:06:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-internal-dmz-with-url/m-p/158661#M51938</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2017-05-30T02:06:10Z</dc:date>
    </item>
  </channel>
</rss>

