<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Allow outbound web traffic by exception by session while utilizing authentication in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/allow-outbound-web-traffic-by-exception-by-session-while/m-p/273661#M75065</link>
    <description>&lt;P&gt;Is it possible to block all outbound http/https traffic on an authenticated per-session basis instead of a per-client basis? I currently have my PA setup so that it will only permit web traffic after authentication (using captive portal), however this appears to allow all outbound web traffic on the client, whereas I'm looking for it to continue blocking outbound web traffic except for the browser that initiated the authentication session.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For example, if I've authenticated via Firefox, I'm able to get to outbound sites, however I'd like to have Chrome/Windows Updates/other services that utilize http/https on the same box to still require authentication.&lt;/P&gt;</description>
    <pubDate>Thu, 27 Jun 2019 19:59:10 GMT</pubDate>
    <dc:creator>Garrett.Sears</dc:creator>
    <dc:date>2019-06-27T19:59:10Z</dc:date>
    <item>
      <title>Allow outbound web traffic by exception by session while utilizing authentication</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/allow-outbound-web-traffic-by-exception-by-session-while/m-p/273661#M75065</link>
      <description>&lt;P&gt;Is it possible to block all outbound http/https traffic on an authenticated per-session basis instead of a per-client basis? I currently have my PA setup so that it will only permit web traffic after authentication (using captive portal), however this appears to allow all outbound web traffic on the client, whereas I'm looking for it to continue blocking outbound web traffic except for the browser that initiated the authentication session.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For example, if I've authenticated via Firefox, I'm able to get to outbound sites, however I'd like to have Chrome/Windows Updates/other services that utilize http/https on the same box to still require authentication.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jun 2019 19:59:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/allow-outbound-web-traffic-by-exception-by-session-while/m-p/273661#M75065</guid>
      <dc:creator>Garrett.Sears</dc:creator>
      <dc:date>2019-06-27T19:59:10Z</dc:date>
    </item>
    <item>
      <title>Re: Allow outbound web traffic by exception by session while utilizing authentication</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/allow-outbound-web-traffic-by-exception-by-session-while/m-p/273685#M75067</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/96310"&gt;@Garrett.Sears&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;That level of granularity isn't available and would be easy enough to bypass if you knew what you were doing and could fake an agent string. But to directly answer your question, no this isn't something that can be done from the firewall.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jun 2019 21:21:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/allow-outbound-web-traffic-by-exception-by-session-while/m-p/273685#M75067</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2019-06-27T21:21:41Z</dc:date>
    </item>
  </channel>
</rss>

