<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Session ID 0 in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/222424#M63968</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/90544"&gt;@nsrini1991&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Session id '0' is used for anything that actually gets denied, because a session was never generated. Essentially the way the firewall functions you can't have a 'null' value for the session-id, so PAN chose to use '0' for anything that isn't allowed. Since the session doesn't actually get created and doesn't truthfully exist except in the logs, you can't&amp;nbsp;&lt;EM&gt;view&lt;/EM&gt; session id 0 via the cli like you could with other sessions.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 16 Jul 2018 18:44:59 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2018-07-16T18:44:59Z</dc:date>
    <item>
      <title>Session ID 0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/222325#M63944</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;When checking monitoring logs&amp;nbsp; very often especially with ICMP,&amp;nbsp; I come across" Session ID 0"&amp;nbsp; and unable to find any information for the same using CLI . This throws error message as Session ID should start with 1.&amp;nbsp;&amp;nbsp;Not sure, why only WebGui displays as 0. Please assist.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PA11.JPG" style="width: 212px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/15918i8D7F25D41071A908/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="PA11.JPG" alt="PA11.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;admin@PA&amp;gt; show session id 0&lt;BR /&gt;0 should be between 1-2147483648&lt;/P&gt;&lt;P&gt;Invalid syntax.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jul 2018 04:33:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/222325#M63944</guid>
      <dc:creator>nsrini1991</dc:creator>
      <dc:date>2018-07-16T04:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: Session ID 0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/222424#M63968</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/90544"&gt;@nsrini1991&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Session id '0' is used for anything that actually gets denied, because a session was never generated. Essentially the way the firewall functions you can't have a 'null' value for the session-id, so PAN chose to use '0' for anything that isn't allowed. Since the session doesn't actually get created and doesn't truthfully exist except in the logs, you can't&amp;nbsp;&lt;EM&gt;view&lt;/EM&gt; session id 0 via the cli like you could with other sessions.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jul 2018 18:44:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/222424#M63968</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-07-16T18:44:59Z</dc:date>
    </item>
    <item>
      <title>Re: Session ID 0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/223188#M64156</link>
      <description>&lt;P&gt;To be precise Session ID is "0" if the FW action is "drop" for that specific traffic. In case of deny a session is created but the after checking the 5 tuples the FW deny the traffic.&lt;/P&gt;</description>
      <pubDate>Sun, 22 Jul 2018 19:08:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/session-id-0/m-p/223188#M64156</guid>
      <dc:creator>Sanssj</dc:creator>
      <dc:date>2018-07-22T19:08:04Z</dc:date>
    </item>
  </channel>
</rss>

