<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Blocked traffic log has no url logged in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230070#M66155</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;how come it showes the url category?&lt;/P&gt;</description>
    <pubDate>Sat, 08 Sep 2018 00:25:01 GMT</pubDate>
    <dc:creator>SThatipelly</dc:creator>
    <dc:date>2018-09-08T00:25:01Z</dc:date>
    <item>
      <title>Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230060#M66152</link>
      <description>&lt;P&gt;I want to look at the url address of a data packet that was blocked by a deny rule. I had url filtering&amp;nbsp;applied on the rule but the denied traffic log shows the url category but not the url address. Please advise me in logging url address for denied traffic.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;</description>
      <pubDate>Fri, 07 Sep 2018 20:38:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230060#M66152</guid>
      <dc:creator>SThatipelly</dc:creator>
      <dc:date>2018-09-07T20:38:30Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230067#M66153</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70284"&gt;@SThatipelly&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;In all likelyhood you are blocking this traffic before the firewall would ever look at the URL, and therefore there is no reason to record this information.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Say for instance I've blocked access to 54.225.121.9. The URL of that IP is never recorded because the firewall never looks at it, because it knows that it needs to block the traffic before it ever needs to look at the URl.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Sep 2018 20:57:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230067#M66153</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-09-07T20:57:59Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230070#M66155</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;how come it showes the url category?&lt;/P&gt;</description>
      <pubDate>Sat, 08 Sep 2018 00:25:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230070#M66155</guid>
      <dc:creator>SThatipelly</dc:creator>
      <dc:date>2018-09-08T00:25:01Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230074#M66158</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70284"&gt;@SThatipelly&lt;/a&gt;&lt;/P&gt;&lt;P&gt;How does your securitd policy rule look like or more precisely: how did you configure URL filtering? Did you add an URL filtering security profile or you just added the categories directly to the rule?&lt;/P&gt;</description>
      <pubDate>Mon, 10 Sep 2018 17:35:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230074#M66158</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2018-09-10T17:35:07Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230205#M66181</link>
      <description>&lt;P&gt;I had the complete url filering applied under profiles in action tab.&lt;/P&gt;</description>
      <pubDate>Mon, 10 Sep 2018 17:20:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230205#M66181</guid>
      <dc:creator>SThatipelly</dc:creator>
      <dc:date>2018-09-10T17:20:05Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230207#M66183</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/70284"&gt;@SThatipelly&lt;/a&gt;&lt;/P&gt;&lt;P&gt;Did you check the "URL Log" or opened the detail of such a denied session in the traffic log?&lt;/P&gt;</description>
      <pubDate>Mon, 10 Sep 2018 17:46:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/230207#M66183</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2018-09-10T17:46:48Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/531799#M109663</link>
      <description>&lt;P&gt;Sorry to bother you, may I ask did you figure out why&amp;nbsp;&lt;SPAN&gt;the denied traffic log shows the url category but not the url address? Since my customer faced the same issue, there are only custom url category defined in the&amp;nbsp;security rule and the action is deny.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Feb 2023 02:39:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/531799#M109663</guid>
      <dc:creator>zji</dc:creator>
      <dc:date>2023-02-21T02:39:38Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/542965#M111192</link>
      <description>&lt;P&gt;Were you ever able to figure this out? I have the same question&lt;/P&gt;</description>
      <pubDate>Mon, 22 May 2023 21:26:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/542965#M111192</guid>
      <dc:creator>rt839134</dc:creator>
      <dc:date>2023-05-22T21:26:25Z</dc:date>
    </item>
    <item>
      <title>Re: Blocked traffic log has no url logged</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/555457#M112831</link>
      <description>&lt;P&gt;I think it depends on how the traffic is blocked. If you have an IP based drop rule, the firewall is not able to log the actual URL. With a drop rule with an URL added direcrly to the rule a log is written, at least in new PAN-OS versions, so maybe this was a bug in the past, that then no url log was written - or a new feature that was implemented.&lt;/P&gt;</description>
      <pubDate>Sun, 27 Aug 2023 18:48:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocked-traffic-log-has-no-url-logged/m-p/555457#M112831</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2023-08-27T18:48:27Z</dc:date>
    </item>
  </channel>
</rss>

