<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Profies confusion in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217546#M62933</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;Its in the vulnerability prifiles only if action is se;lected to block.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 646px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/15466iA64DE14BDCEB0CC5/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 12 Jun 2018 15:04:10 GMT</pubDate>
    <dc:creator>raji_toor</dc:creator>
    <dc:date>2018-06-12T15:04:10Z</dc:date>
    <item>
      <title>Profies confusion</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217076#M62815</link>
      <description>&lt;P&gt;What does host type(server/client) in profies&amp;nbsp;&lt;/P&gt;&lt;P&gt;and track by source / source and destinantion signify&lt;/P&gt;</description>
      <pubDate>Thu, 07 Jun 2018 19:42:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217076#M62815</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2018-06-07T19:42:33Z</dc:date>
    </item>
    <item>
      <title>Re: Profies confusion</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217097#M62821</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/56221"&gt;@raji_toor&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;The host type is simply which side of the connection you want to limit the profile too, or if you simply want to apply it to either side. In certain instances you may want to only look at the server side connection, or you may only want to look at the client side depending on the profile you are configuring and where you are using it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;As for the second part of your question you'll have to clarify where you are seeing this in a profile? This is an option when configuring DoS Protection Policies when you configure a Classified policy as you need to know which address to act/look at. If you select source-ip-only then it will only look at connections and act on the source IP address. If you select src-dest-ip-both then you would monitor all connections and the action would apply to both the source and destination IPs. Again if you are speaking strictly about profiles you would have to point out where exactly you are seeing this option.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Jun 2018 20:49:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217097#M62821</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-06-07T20:49:31Z</dc:date>
    </item>
    <item>
      <title>Re: Profies confusion</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217546#M62933</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;Its in the vulnerability prifiles only if action is se;lected to block.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 646px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/15466iA64DE14BDCEB0CC5/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 15:04:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217546#M62933</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2018-06-12T15:04:10Z</dc:date>
    </item>
    <item>
      <title>Re: Profies confusion</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217547#M62934</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/56221"&gt;@raji_toor&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Okay so this one is simply if you want to block the IP address as a whole, or if you want to only block it from hitting that particular server.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Say for example I have a web-server that is going to serve as the destination that is identified and then '8.8.8.8' will serve as my 'Source' or 'Attacker' in this example. If I select 'Track By: Source' and this profile trips it will simply block '8.8.8.8' across my network. If I select Track By: Source and Destination' then it'll only block the IP from hitting that destination IP, or in this case it will only block '8.8.8.8' from hitting the one web-server.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hopefully that helps.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jun 2018 15:17:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/profies-confusion/m-p/217547#M62934</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-06-12T15:17:58Z</dc:date>
    </item>
  </channel>
</rss>

