<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Security Policy Search Results in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290966#M77227</link>
    <description>&lt;P&gt;I didn't think of that and there is an object with a 10.100.100.0/24. I checked the other rules and they do have this object as either source or destination.&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jeff&lt;/P&gt;</description>
    <pubDate>Wed, 02 Oct 2019 19:34:19 GMT</pubDate>
    <dc:creator>jeff6strings</dc:creator>
    <dc:date>2019-10-02T19:34:19Z</dc:date>
    <item>
      <title>Security Policy Search Results</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290826#M77190</link>
      <description>&lt;P&gt;We have a 3020 firewall with version 8.0.10 and&amp;nbsp;need to allow a new server access to resources in other zones. An existing server, 10.100.100.10 already has this access, so I need to mimic the access of this server.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In Objects\Addresses there is an entry for 10.100.100.10 with the name Server1.&lt;BR /&gt;In Objects\Address Groups there are a couple of groups in which server name Server1 belongs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In Policies\Security, when I search for Server1, four Security Policy Rules result. When I check them, all have Server1 in either Source or Destination.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When I search Policies\Security using the Server1 IP address, 10.100.100.10, a half dozen result, two of the results have Server1 name, but the other four don't. I checked these four, and they don't have the server name or IP address anywhere in the rule.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I appreciate any help in understanding the logic of how the other four policies result by IP address.&lt;BR /&gt;Thank you.&lt;/P&gt;&lt;P&gt;Jeff&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2019 01:01:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290826#M77190</guid>
      <dc:creator>jeff6strings</dc:creator>
      <dc:date>2019-10-02T01:01:32Z</dc:date>
    </item>
    <item>
      <title>Re: Security Policy Search Results</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290892#M77200</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/42264"&gt;@jeff6strings&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Maybe you have another object in there that contains the private address space range ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For example if you have an object or a group that contains the private range 10.0.0.0/8 then 10.100.100.10 would also return in your search result while not having the IP address explicitly configured.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers !&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Wed, 02 Oct 2019 09:53:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290892#M77200</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2019-10-02T09:53:31Z</dc:date>
    </item>
    <item>
      <title>Re: Security Policy Search Results</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290894#M77201</link>
      <description>&lt;P&gt;with "Object NAME" just the server is found.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;with "IP" the server and any groups it belongs to are returned.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's just the way the search works, not sure if it's different in later versions.&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2019 11:28:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290894#M77201</guid>
      <dc:creator>RobinClayton</dc:creator>
      <dc:date>2019-10-02T11:28:13Z</dc:date>
    </item>
    <item>
      <title>Re: Security Policy Search Results</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290966#M77227</link>
      <description>&lt;P&gt;I didn't think of that and there is an object with a 10.100.100.0/24. I checked the other rules and they do have this object as either source or destination.&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jeff&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2019 19:34:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-search-results/m-p/290966#M77227</guid>
      <dc:creator>jeff6strings</dc:creator>
      <dc:date>2019-10-02T19:34:19Z</dc:date>
    </item>
  </channel>
</rss>

