<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Some webs not working in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184090#M56484</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a PA-3050 with PanOS 8.0.5. We cant access to these webs &lt;A href="https://www.metromadrid.es" target="_blank"&gt;https://www.metromadrid.es&lt;/A&gt; and &lt;A href="https://www.ing.es" target="_blank"&gt;https://www.ing.es&lt;/A&gt;&lt;/P&gt;&lt;P&gt;We receive a timeout and we see a RST from Palo Alto to web server.&lt;/P&gt;&lt;P&gt;We had this problem in 8.0.4 and we upgraded to 8.0.5 but the problem persists.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This issue breaks my mind, can someone give me any idea???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Captura.JPG" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/12138iA713E0468A4A1D08/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Captura.JPG" alt="Captura.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 27 Oct 2017 10:22:55 GMT</pubDate>
    <dc:creator>soporteseguridad</dc:creator>
    <dc:date>2017-10-27T10:22:55Z</dc:date>
    <item>
      <title>Some webs not working</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184090#M56484</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a PA-3050 with PanOS 8.0.5. We cant access to these webs &lt;A href="https://www.metromadrid.es" target="_blank"&gt;https://www.metromadrid.es&lt;/A&gt; and &lt;A href="https://www.ing.es" target="_blank"&gt;https://www.ing.es&lt;/A&gt;&lt;/P&gt;&lt;P&gt;We receive a timeout and we see a RST from Palo Alto to web server.&lt;/P&gt;&lt;P&gt;We had this problem in 8.0.4 and we upgraded to 8.0.5 but the problem persists.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This issue breaks my mind, can someone give me any idea???&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Captura.JPG" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/12138iA713E0468A4A1D08/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Captura.JPG" alt="Captura.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 10:22:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184090#M56484</guid>
      <dc:creator>soporteseguridad</dc:creator>
      <dc:date>2017-10-27T10:22:55Z</dc:date>
    </item>
    <item>
      <title>Re: Some webs not working (maybe SSL problem)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184115#M56488</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/9102"&gt;@soporteseguridad&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If there's an algorithm incompatibility then&amp;nbsp;you can verify this in the&amp;nbsp;PCAPs.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The PCAP will&amp;nbsp;show&amp;nbsp;you the&lt;SPAN&gt;&amp;nbsp;Cipher Suite the servers sends back.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The following information is an extract taken from&amp;nbsp;&lt;A href="https://www.ssllabs.com/ssltest" target="_blank"&gt;https://www.ssllabs.com/ssltest&lt;/A&gt;&amp;nbsp;where you can&amp;nbsp;analyse server SSL reports.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.metromadrid.es" target="_blank"&gt;https://www.metromadrid.es&lt;/A&gt; supports the following cipher suites :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;TABLE class="reportTable"&gt;
&lt;TBODY id="suitesBody"&gt;&lt;/TBODY&gt;
&lt;TBODY id="suitesBody"&gt;
&lt;TR class="tableSeparator"&gt;
&lt;TD colspan="3" class="tableSubHead"&gt;&lt;SPAN class="hideIcon"&gt;&lt;IMG src="https://ip1.i.lithium.com/391cbefce907d7bda2925c591585af18e27fd1fb/68747470733a2f2f7777772e73736c6c6162732e636f6d2f696d616765732f636f6c6c617073652e706e67" border="0" width="14" height="14" /&gt;&lt;/SPAN&gt;
&lt;DIV class="reportSubHeading"&gt;# TLS 1.2 (suites in server-preferred order)&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY class="cipher1Block"&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (&lt;CODE&gt;0xc030&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (&lt;CODE&gt;0xc02f&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (&lt;CODE&gt;0xc028&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0xc014&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 (&lt;CODE&gt;0xc027&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0xc013&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_GCM_SHA384 (&lt;CODE&gt;0x9d&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_GCM_SHA256 (&lt;CODE&gt;0x9c&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA256 (&lt;CODE&gt;0x3d&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x35&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA256 (&lt;CODE&gt;0x3c&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x2f&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY&gt;
&lt;TR class="tableSeparator"&gt;
&lt;TD colspan="3" class="tableSubHead"&gt;&lt;SPAN class="hideIcon"&gt;&lt;IMG src="https://ip1.i.lithium.com/391cbefce907d7bda2925c591585af18e27fd1fb/68747470733a2f2f7777772e73736c6c6162732e636f6d2f696d616765732f636f6c6c617073652e706e67" border="0" width="14" height="14" /&gt;&lt;/SPAN&gt;
&lt;DIV class="reportSubHeading"&gt;# TLS 1.1 (suites in server-preferred order)&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY class="cipher2Block"&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0xc014&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0xc013&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x35&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x2f&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY&gt;
&lt;TR class="tableSeparator"&gt;
&lt;TD colspan="3" class="tableSubHead"&gt;&lt;SPAN class="hideIcon"&gt;&lt;IMG src="https://ip1.i.lithium.com/391cbefce907d7bda2925c591585af18e27fd1fb/68747470733a2f2f7777772e73736c6c6162732e636f6d2f696d616765732f636f6c6c617073652e706e67" border="0" width="14" height="14" /&gt;&lt;/SPAN&gt;
&lt;DIV class="reportSubHeading"&gt;# TLS 1.0 (suites in server-preferred order)&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY class="cipher3Block"&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0xc014&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0xc013&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp384r1 (eq. 7680 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x35&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x2f&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.ing.es" target="_blank"&gt;https://www.ing.es&lt;/A&gt; supports the following cipher suites :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;TABLE class="reportTable"&gt;
&lt;TBODY id="suitesBody"&gt;
&lt;TR class="tableSeparator"&gt;
&lt;TD colspan="3" class="tableSubHead"&gt;
&lt;DIV class="reportSubHeading"&gt;# TLS 1.2 (suites in server-preferred order)&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY class="cipher1Block"&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 (&lt;CODE&gt;0x9f&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x39&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_GCM_SHA384 (&lt;CODE&gt;0x9d&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA256 (&lt;CODE&gt;0x3d&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x35&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (&lt;CODE&gt;0xc030&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384 (&lt;CODE&gt;0xc028&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0xc014&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0x16&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0xa&lt;/CODE&gt;) &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0xc012&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_128_GCM_SHA256 (&lt;CODE&gt;0x9e&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x33&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_GCM_SHA256 (&lt;CODE&gt;0x9c&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA256 (&lt;CODE&gt;0x3c&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x2f&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (&lt;CODE&gt;0xc02f&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256 (&lt;CODE&gt;0xc027&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0xc013&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY&gt;
&lt;TR class="tableSeparator"&gt;
&lt;TD colspan="3" class="tableSubHead"&gt;&lt;SPAN class="hideIcon"&gt;&lt;IMG src="https://ip1.i.lithium.com/391cbefce907d7bda2925c591585af18e27fd1fb/68747470733a2f2f7777772e73736c6c6162732e636f6d2f696d616765732f636f6c6c617073652e706e67" border="0" width="14" height="14" /&gt;&lt;/SPAN&gt;
&lt;DIV class="reportSubHeading"&gt;# TLS 1.1 (suites in server-preferred order)&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY class="cipher2Block"&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x39&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x35&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0xc014&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0x16&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0xa&lt;/CODE&gt;) &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0xc012&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x33&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x2f&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0xc013&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY&gt;
&lt;TR class="tableSeparator"&gt;
&lt;TD colspan="3" class="tableSubHead"&gt;&lt;SPAN class="hideIcon"&gt;&lt;IMG src="https://ip1.i.lithium.com/391cbefce907d7bda2925c591585af18e27fd1fb/68747470733a2f2f7777772e73736c6c6162732e636f6d2f696d616765732f636f6c6c617073652e706e67" border="0" width="14" height="14" /&gt;&lt;/SPAN&gt;
&lt;DIV class="reportSubHeading"&gt;# TLS 1.0 (suites in server-preferred order)&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;TBODY class="cipher3Block"&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x39&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0x35&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA (&lt;CODE&gt;0xc014&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;256&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0x16&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0xa&lt;/CODE&gt;) &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;&lt;FONT color="#F88017"&gt;TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA (&lt;CODE&gt;0xc012&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;&lt;FONT color="#F88017"&gt;112&lt;/FONT&gt;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_DHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x33&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="weakSmall colorF88017"&gt; &lt;SPAN&gt;DH 1024 bits&lt;/SPAN&gt; &amp;nbsp; FS&lt;/SPAN&gt; &amp;nbsp; &lt;SPAN class="colorF88017"&gt;&lt;STRONG&gt;WEAK&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0x2f&lt;/CODE&gt;)&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR class="tableRow"&gt;
&lt;TD class="tableLeft"&gt;TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA (&lt;CODE&gt;0xc013&lt;/CODE&gt;) &amp;nbsp; &lt;SPAN class="greySmall"&gt;ECDH secp256r1 (eq. 3072 bits RSA) &amp;nbsp; FS&lt;/SPAN&gt;&lt;/TD&gt;
&lt;TD class="tableRight"&gt;128&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers !&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 08:41:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184115#M56488</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2017-10-27T08:41:06Z</dc:date>
    </item>
    <item>
      <title>Re: Some webs not working (maybe SSL problem)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184116#M56489</link>
      <description>&lt;P&gt;I think the RST is sent before SSL negotiation. You can see it in the capture.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 08:43:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184116#M56489</guid>
      <dc:creator>soporteseguridad</dc:creator>
      <dc:date>2017-10-27T08:43:36Z</dc:date>
    </item>
    <item>
      <title>Re: Some webs not working (maybe SSL problem)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184120#M56492</link>
      <description>&lt;P&gt;This does not seem to be an SSL issue because we do not see even the 3-way handshake completing.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For the first packet from source port 57901, there is not corresponding syn ack. What is see is an 'Ack' packet from the server, which is something the client would not be expecting and thus resets the connection in the following packet.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Take simultaneously pcap&amp;nbsp;on firewall and client and compare packets for one particular stream.&lt;/P&gt;&lt;P&gt;Also, you can check global counters. On the firewall set the filter as source 10.160.74.142 and destination as 193.41.234.29.&lt;/P&gt;&lt;P&gt;Turn on the filter, access the website and in the cli type "show counter global filter packet-filter yes delta yes" 3 -4 times.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If the firewall is sending rst due to some reason, then counters should show some reason.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Post your results.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 09:01:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184120#M56492</guid>
      <dc:creator>mgarg</dc:creator>
      <dc:date>2017-10-27T09:01:05Z</dc:date>
    </item>
    <item>
      <title>Re: Some webs not working (maybe SSL problem)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184134#M56496</link>
      <description>&lt;P&gt;Hi, i tried with web &lt;A href="http://www.metromadrid.es" target="_blank"&gt;www.metromadrid.es&lt;/A&gt;. I attch the screenshots:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is the pcap. IPs:&lt;/P&gt;&lt;P&gt;10.160.74.142: My ip PC&lt;/P&gt;&lt;P&gt;188.87.x.x: NAT publi IP Palo Alto&lt;/P&gt;&lt;P&gt;185.89.60.64: Web server metromadrid.es&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Captura1.JPG" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/12140iF16460BE3AD0C049/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Captura1.JPG" alt="Captura1.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is the global counter reset using filter source my IP to web server and return:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="drops.JPG" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/12141i1373CCE7D9E1403D/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="drops.JPG" alt="drops.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What could be the reason for this RST?? thanks&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 09:37:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184134#M56496</guid>
      <dc:creator>soporteseguridad</dc:creator>
      <dc:date>2017-10-27T09:37:27Z</dc:date>
    </item>
    <item>
      <title>Re: Some webs not working (maybe SSL problem)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184135#M56497</link>
      <description>&lt;P&gt;in the global counters i see a warning "&lt;STRONG&gt;tcp_drop_out_of_wnd - out-of-window packets dropped&lt;/STRONG&gt;". As per the packet captures the client seems to be resetting the connection because the 3-way handshake is not completing and the weird part is that it sends retransmission packets after sending rst packets.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Anyway, here is an explanation as to why the firewall is dropping the packet and you can test if the command that is given below to check if it works ( Just a way to confirm the problem and not a solution).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;tcp_drop_out_of_wnd - out-of-window packets dropped&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;The Palo Alto Networks Firewall creates a sliding sequence window starting with the original ACK (the window size is based on the type of traffic within the session). It is expected that the packet sequence numbers within the current session reside within this sliding window. This window adjusts with the type of traffic and whenever new ACK messages are received. The default behavior &lt;/EM&gt;on&lt;EM&gt; the device is to drop packets when sequence numbers are outside this window.&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;This feature can be added to the config file and applied with a commit, which is required to override the default behavior after rebooting:&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;gt; configure&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;# set deviceconfig setting tcp asymmetric-path &amp;lt; bypass|drop &amp;gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;# commit&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think the packets that you have captured are client side. It would be more helpful if you can capture the packet on the firewall as well for receive, transmit and drop stage. That way you can check what response is received from the server before the firewall drops the packet.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 10:01:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/184135#M56497</guid>
      <dc:creator>mgarg</dc:creator>
      <dc:date>2017-10-27T10:01:53Z</dc:date>
    </item>
    <item>
      <title>Re: Some webs not working (maybe SSL problem)</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/571346#M115042</link>
      <description>&lt;P&gt;Facing a similar issue here:&amp;nbsp;&lt;A href="https://live.paloaltonetworks.com/t5/next-generation-firewall/packets-retransmission-captured-in-packet-capture-on-firewall/m-p/571345#M2335" target="_blank"&gt;https://live.paloaltonetworks.com/t5/next-generation-firewall/packets-retransmission-captured-in-packet-capture-on-firewall/m-p/571345#M2335&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Any recommendations?&lt;/P&gt;</description>
      <pubDate>Mon, 01 Jan 2024 12:08:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/some-webs-not-working/m-p/571346#M115042</guid>
      <dc:creator>mhannan313</dc:creator>
      <dc:date>2024-01-01T12:08:33Z</dc:date>
    </item>
  </channel>
</rss>

