<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Disable session timeout for Orcale application in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164169#M53044</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/36590"&gt;@acc6d0b3610eec313831f7900fdbd235&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks. With Application override i skip content inspection and also with DSRI, though its skipped one way only. My issue is not wether content inspection happens or not. My issue at this time is session should not timeout between 2 specific servers in different zones because of firewall.&lt;/P&gt;</description>
    <pubDate>Fri, 30 Jun 2017 21:18:15 GMT</pubDate>
    <dc:creator>raji_toor</dc:creator>
    <dc:date>2017-06-30T21:18:15Z</dc:date>
    <item>
      <title>Disable session timeout for Orcale application</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164153#M53042</link>
      <description>&lt;P&gt;How to disable session timeout for an application completely? In my case its Oracle that i want to disable timeout for.&lt;/P&gt;&lt;P&gt;Its breaking the database connection for our application. And what would setting tcp timeout value of zero for an app would do?&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jun 2017 19:49:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164153#M53042</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2017-06-30T19:49:32Z</dc:date>
    </item>
    <item>
      <title>Re: Disable session timeout for Orcale application</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164168#M53043</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/56221"&gt;@raji_toor&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You cannot completely disable the Session timeout options in a specific App-ID, but you can adjust the values to suit your needs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Setup timeout value to zero:&amp;nbsp;&lt;SPAN&gt;A value of &lt;STRONG&gt;0&lt;/STRONG&gt; indicates that the global session timer will be used, which is 3600 seconds for TCP&lt;/SPAN&gt;&lt;SPAN&gt;.&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="App-ID Timeout.PNG" style="width: 350px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/10010i6EF083C8887D9B1B/image-dimensions/350x176/is-moderation-mode/true?v=v2" width="350" height="176" role="button" title="App-ID Timeout.PNG" alt="App-ID Timeout.PNG" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-right" image-alt="Session Timeout.PNG" style="width: 380px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/10012i407CBF642EDBBCF5/image-dimensions/380x178/is-moderation-mode/true?v=v2" width="380" height="178" role="button" title="Session Timeout.PNG" alt="Session Timeout.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Oracle-App-ID.PNG" style="width: 500px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/10013i7523BBC548B71BE4/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="Oracle-App-ID.PNG" alt="Oracle-App-ID.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;h&lt;SPAN&gt;ttps://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Change-Session-Timeout-for-TCP-based-Application/ta-p/60915&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Featured-Articles/Tips-amp-Tricks-Session-Timeouts/ta-p/68464" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Featured-Articles/Tips-amp-Tricks-Session-Timeouts/ta-p/68464&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Here are a couple of options that may help you:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;1. Create an application override:&amp;nbsp;&lt;/STRONG&gt;&lt;SPAN&gt;Application Override is where the Palo Alto Networks firewall is configured to override the normal Application Identification (App-ID) of specific traffic passing&amp;nbsp;through the firewall. This will help you decrease the latecy of the App-ID engine as the application will not be inspected. Notice, that you still can apply the security profiles through a security policy for inspection.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Learning-Articles/Tips-amp-Tricks-How-to-Create-an-Application-Override/ta-p/65513" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Learning-Articles/Tips-amp-Tricks-How-to-Create-an-Application-Override/ta-p/65513&lt;/A&gt;&lt;/SPAN&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. &lt;STRONG&gt;DSRI:&amp;nbsp;&lt;/STRONG&gt;&lt;SPAN&gt;DSRI is used in environments where internal servers are trusted and protected by the firewall. In these cases, content inspection can be configured for only client to server (internet users to internal servers) traffic using the DSRI option. By doing this, the Server to Client flow (internal servers to internet clients) is skipped after sufficient data has been inspected by the firewall to identify the applications running over HTTP.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I am not sure if it will apply to you as I don't know how this application is being utilized.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-Using-DSRI-with-the-Palo-Alto-Networks-firewall/ta-p/70666" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-Using-DSRI-with-the-Palo-Alto-Networks-firewall/ta-p/70666&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DSIR.PNG" style="width: 500px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/10014i9780598C635C6EB2/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="DSIR.PNG" alt="DSIR.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I hope this helps.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jun 2017 21:01:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164168#M53043</guid>
      <dc:creator>acc6d0b3610eec313831f7900fdbd235</dc:creator>
      <dc:date>2017-06-30T21:01:55Z</dc:date>
    </item>
    <item>
      <title>Re: Disable session timeout for Orcale application</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164169#M53044</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/36590"&gt;@acc6d0b3610eec313831f7900fdbd235&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks. With Application override i skip content inspection and also with DSRI, though its skipped one way only. My issue is not wether content inspection happens or not. My issue at this time is session should not timeout between 2 specific servers in different zones because of firewall.&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jun 2017 21:18:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/disable-session-timeout-for-orcale-application/m-p/164169#M53044</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2017-06-30T21:18:15Z</dc:date>
    </item>
  </channel>
</rss>

