<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to Block a Specific HTTPS Site with URL Filtering in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213630#M62129</link>
    <description>&lt;P&gt;If traffic is encrypted then all that Palo sees is name on the certificate and it assumes application/website based on that.&lt;/P&gt;&lt;P&gt;For example in case of Google it is *.google.com&lt;/P&gt;&lt;P&gt;In case of SSL traffic HTTP GET goes inside encrypted payload and without decrypting Palo does not see it.&lt;/P&gt;&lt;P&gt;As a result&amp;nbsp;Palo can't distinguish if you go to maps.google.com or &lt;A href="http://www.google.com" target="_blank"&gt;www.google.com&lt;/A&gt; etc.&lt;/P&gt;&lt;P&gt;Also if you want to block specific Youtube videos you need decryption to see full URL user tries to access.&lt;/P&gt;</description>
    <pubDate>Tue, 08 May 2018 19:39:28 GMT</pubDate>
    <dc:creator>Raido_Rattameister</dc:creator>
    <dc:date>2018-05-08T19:39:28Z</dc:date>
    <item>
      <title>How to Block a Specific HTTPS Site with URL Filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213590#M62116</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I want to use URL Filtering Profile to block a particular "https" website (for ex, youtube.com) do I compulsorily need a decryption profile as well?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This question is partly answered here:&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Block-a-Specific-HTTPS-Site-with-URL-Filtering/ta-p/53840" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Configuration-Articles/How-to-Block-a-Specific-HTTPS-Site-with-URL-Filtering/ta-p/53840&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But the example is specific to a sub-URL. I want to know for any HTTPS Website.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;R&lt;/P&gt;</description>
      <pubDate>Tue, 08 May 2018 16:03:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213590#M62116</guid>
      <dc:creator>rjdahav163</dc:creator>
      <dc:date>2018-05-08T16:03:04Z</dc:date>
    </item>
    <item>
      <title>Re: How to Block a Specific HTTPS Site with URL Filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213630#M62129</link>
      <description>&lt;P&gt;If traffic is encrypted then all that Palo sees is name on the certificate and it assumes application/website based on that.&lt;/P&gt;&lt;P&gt;For example in case of Google it is *.google.com&lt;/P&gt;&lt;P&gt;In case of SSL traffic HTTP GET goes inside encrypted payload and without decrypting Palo does not see it.&lt;/P&gt;&lt;P&gt;As a result&amp;nbsp;Palo can't distinguish if you go to maps.google.com or &lt;A href="http://www.google.com" target="_blank"&gt;www.google.com&lt;/A&gt; etc.&lt;/P&gt;&lt;P&gt;Also if you want to block specific Youtube videos you need decryption to see full URL user tries to access.&lt;/P&gt;</description>
      <pubDate>Tue, 08 May 2018 19:39:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213630#M62129</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2018-05-08T19:39:28Z</dc:date>
    </item>
    <item>
      <title>Re: How to Block a Specific HTTPS Site with URL Filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213638#M62132</link>
      <description>&lt;P&gt;Actually it is possible to have URL filtering configured without TLS decryption, because the client sends the hostname of the website where it wants to connect in the TLS handshake. This part of the connection is not encrypted so Palo is able to filter based on that value.&lt;/P&gt;</description>
      <pubDate>Tue, 08 May 2018 23:20:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213638#M62132</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2018-05-08T23:20:20Z</dc:date>
    </item>
    <item>
      <title>Re: How to Block a Specific HTTPS Site with URL Filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213685#M62134</link>
      <description>&lt;P&gt;You are right. Palo can use data in SNI that is sent by the client.&lt;/P&gt;</description>
      <pubDate>Wed, 09 May 2018 05:14:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-block-a-specific-https-site-with-url-filtering/m-p/213685#M62134</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2018-05-09T05:14:24Z</dc:date>
    </item>
  </channel>
</rss>

