<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Query on URL filtering in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254476#M72222</link>
    <description>&lt;P&gt;Thank you for the explanation Bpry.&lt;/P&gt;&lt;P&gt;Is there any scenraio where you would right a URL rule like&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Both in Allow rule,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;sega.com&amp;nbsp;&lt;/P&gt;&lt;P&gt;*.sega.com/*. &amp;nbsp; "This statement includes the First URL right, correct me If I am wrong.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
    <pubDate>Thu, 21 Mar 2019 04:26:25 GMT</pubDate>
    <dc:creator>amocherla</dc:creator>
    <dc:date>2019-03-21T04:26:25Z</dc:date>
    <item>
      <title>Query on URL filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254433#M72214</link>
      <description>&lt;P&gt;I found this article on URL filtering.&lt;/P&gt;&lt;P&gt;My question is how is *.baidu.com not allowing mp3.baidu.com or news.baidu.com as well&lt;/P&gt;&lt;P&gt;What does *. signify or equate to this scenario.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ALso is there is any need or scenario in which we would need to add&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.baidu.com" target="_blank" rel="noopener"&gt;www.baidu.com&lt;/A&gt;&lt;/P&gt;&lt;P&gt;*.baidu.com as rules in Custom URL category.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any Help would be appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HOW TO ALLOW ONE URL AND BLOCK OTHER ASSOCIATED URLS&lt;/P&gt;&lt;DIV&gt;&lt;SPAN&gt;11171&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN class="synopsis-grey"&gt;Created On&amp;nbsp;02/07/19 23:48 PM - Last Updated&amp;nbsp;02/07/19 23:48 PM&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class="topics"&gt;&lt;STRONG&gt;&lt;SPAN class="slds-badge"&gt;URL FILTERING&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;/DIV&gt;&lt;P&gt;&lt;SPAN&gt;Resolution&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Overview&lt;/P&gt;&lt;P&gt;This describes how to allow a single URL and block other associated URLs. In this example &lt;A href="http://www.baidu.com" target="_blank" rel="noopener"&gt;www.baidu.com&lt;/A&gt; will be allowed but mp3.baidu.com and news.baidu.com will be blocked.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Steps&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Use one of the following two configuration options.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Option 1: Use URL Category&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Go to Objects &amp;gt; Custom URL Category, and create a category called "Baidu," for example. Add "*.baidu.com" to the category.&lt;/LI&gt;&lt;LI&gt;Go to Objects &amp;gt; Custom URL Category, and create a category called "Everything," for example. Add "*" to the category. This will cover all URLs.&lt;/LI&gt;&lt;LI&gt;Add a security policy that permits from any to any.&lt;/LI&gt;&lt;LI&gt;Under Service/URL Category, add the category "Baidu."&lt;/LI&gt;&lt;LI&gt;Add another security policy that blocks from any to any. Under Service/URL Category add the category "Everything."&lt;BR /&gt;The first rule should permit access to *.baidu.com, while the second rule should act as a catch-all rule that blocks access to all URLs.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Option 2: Use URL filtering&lt;/STRONG&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Go to Objects &amp;gt; Custom URL Category, and create a category called "Baidu" for example. Add "*.baidu.com" to the category.&lt;/LI&gt;&lt;LI&gt;Go to Objects &amp;gt; URL Filtering, and create a url filtering profile called "Baidu-URL."&lt;/LI&gt;&lt;LI&gt;Select the category "Baidu" to allow and the rest of the categories to block. This will block all URLs except &lt;A href="http://www.baidu.com" target="_blank" rel="noopener"&gt;www.baidu.com&lt;/A&gt;.&lt;/LI&gt;&lt;LI&gt;Add a security policy that permits from any to any. Under Actions &amp;gt; Profile Setting &amp;gt; Profile Type &amp;lt;select profiles&amp;gt;, select the url filtering profile "Baidu-URL."&lt;BR /&gt;&lt;STRONG&gt;Note:&lt;/STRONG&gt; This rule should only permit access to *.baidu.com.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;owner:&amp;nbsp; bpappas&lt;/P&gt;</description>
      <pubDate>Wed, 20 Mar 2019 20:28:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254433#M72214</guid>
      <dc:creator>amocherla</dc:creator>
      <dc:date>2019-03-20T20:28:20Z</dc:date>
    </item>
    <item>
      <title>Re: Query on URL filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254445#M72217</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Looks like a typo in the document.&amp;nbsp;&lt;SPAN&gt;*.baidu.com would allow mp3.baidu.com or news.baidu.com.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Good catch!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Mar 2019 21:01:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254445#M72217</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2019-03-20T21:01:45Z</dc:date>
    </item>
    <item>
      <title>Re: Query on URL filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254452#M72218</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/109271"&gt;@amocherla&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;As&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27580"&gt;@OtakarKlier&lt;/a&gt;&amp;nbsp;mentioned the document is wrong. *.baidu.com would still allow&amp;nbsp;&lt;EM&gt;anything&lt;/EM&gt;.baidu.com. You can however do this easily enough, you simply need to keep in mind the order of the firewall processes the request:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;URL Filtering&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;1) Block List&lt;/P&gt;&lt;P&gt;2) Allow List&lt;/P&gt;&lt;P&gt;3) Custom Categories&lt;/P&gt;&lt;P&gt;4) Cache&lt;/P&gt;&lt;P&gt;5) Pre-Defined Categories&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;URL Categorie Actions:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;1) Block&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;2) Override&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;3) Continue&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;4) Alert&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;5) Allow&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think this is what the article was trying to get at; one thing to keep in mind with the knowledgebase is that any Palo employee can make an entry, so they aren't always actually&amp;nbsp;&lt;EM&gt;&lt;STRONG&gt;right&lt;/STRONG&gt;&lt;/EM&gt;&lt;EM&gt;.&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Mar 2019 23:11:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254452#M72218</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2019-03-20T23:11:32Z</dc:date>
    </item>
    <item>
      <title>Re: Query on URL filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254476#M72222</link>
      <description>&lt;P&gt;Thank you for the explanation Bpry.&lt;/P&gt;&lt;P&gt;Is there any scenraio where you would right a URL rule like&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Both in Allow rule,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;sega.com&amp;nbsp;&lt;/P&gt;&lt;P&gt;*.sega.com/*. &amp;nbsp; "This statement includes the First URL right, correct me If I am wrong.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Thu, 21 Mar 2019 04:26:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/query-on-url-filtering/m-p/254476#M72222</guid>
      <dc:creator>amocherla</dc:creator>
      <dc:date>2019-03-21T04:26:25Z</dc:date>
    </item>
  </channel>
</rss>

