<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: URL filtering based on source IP? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184219#M56512</link>
    <description>&lt;P&gt;I guess what I was wondering is if I just made a policy for source network &amp;gt; any &amp;gt; any and applied that very specific URL filter would it stop processing the policies after that one for hosts within that specific source network?&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 27 Oct 2017 18:23:35 GMT</pubDate>
    <dc:creator>drewdown</dc:creator>
    <dc:date>2017-10-27T18:23:35Z</dc:date>
    <item>
      <title>URL filtering based on source IP?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184165#M56504</link>
      <description>&lt;P&gt;Is this possible?&amp;nbsp; I assume it is but not sure how to allow it while applying all the other policies I already have in place across the board.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 13:27:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184165#M56504</guid>
      <dc:creator>drewdown</dc:creator>
      <dc:date>2017-10-27T13:27:25Z</dc:date>
    </item>
    <item>
      <title>Re: URL filtering based on source IP?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184208#M56509</link>
      <description>&lt;P&gt;This should be relatively easy to do, as you would just create an additional policy specifically for that source with it's own custom URL Fitlering profile. What exactly are you trying to accomplish, and where are you running into issues if you've tried it already?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 17:56:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184208#M56509</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-10-27T17:56:46Z</dc:date>
    </item>
    <item>
      <title>Re: URL filtering based on source IP?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184219#M56512</link>
      <description>&lt;P&gt;I guess what I was wondering is if I just made a policy for source network &amp;gt; any &amp;gt; any and applied that very specific URL filter would it stop processing the policies after that one for hosts within that specific source network?&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 18:23:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184219#M56512</guid>
      <dc:creator>drewdown</dc:creator>
      <dc:date>2017-10-27T18:23:35Z</dc:date>
    </item>
    <item>
      <title>Re: URL filtering based on source IP?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184220#M56513</link>
      <description>&lt;P&gt;PA analyses security policies from top to bottom until it finds one that matches that session, once it finds a matching security policy that is the one it's going to utilize.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Not knowing how secure you are trying to make things or anything like that, I would say lock it down to whatever it is you want it to stop. If you create a URL filtering profile that includes a custom category such as 'Streaming Media' that you've created so that Netflix, Hulu, Sling and the like are all blocked at a URL level with a block action; it's likely that you don't really care what application or what service the traffic is using, you simply want to block all traffic. In that situation you'd probably be fine leaving application and service as 'any', as there really wouldn't be any other reason to communicate with those URLs.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 18:28:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184220#M56513</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-10-27T18:28:45Z</dc:date>
    </item>
    <item>
      <title>Re: URL filtering based on source IP?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184221#M56514</link>
      <description>&lt;P&gt;In this case I want to allow users on a certain subnet to access already blocked websites (IE no filtering whatsoever), so I assume this poicy would need to be at the top of the list?&amp;nbsp; IE before all the policies that enforce URL filtering?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 18:32:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184221#M56514</guid>
      <dc:creator>drewdown</dc:creator>
      <dc:date>2017-10-27T18:32:50Z</dc:date>
    </item>
    <item>
      <title>Re: URL filtering based on source IP?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184222#M56515</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/34542"&gt;@drewdown&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;The policy would need to be placed before the rule that doesn't allow the user to access these websites. You can find this information by looking at the logs on the firewall, once you've verified what rule is actually blocking the traffic simply place the new rule above that one.&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you constantly find yourself putting things at the top of your security policies you're going to run into a situation where you'll start breaking things; it's best to identify the correct place for the policy and question and put the policy exactly where it needs to be at the beginning.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Oct 2017 18:35:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering-based-on-source-ip/m-p/184222#M56515</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2017-10-27T18:35:18Z</dc:date>
    </item>
  </channel>
</rss>

