<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Threat log in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305470#M79378</link>
    <description>&lt;P&gt;I also tested yesterday with yahoo account it does not work.&lt;/P&gt;&lt;P&gt;For testing purposes you can use my email info.&lt;/P&gt;&lt;P&gt;You need to have Internet connection with them in order to create an email account.&lt;/P&gt;</description>
    <pubDate>Thu, 02 Jan 2020 18:31:54 GMT</pubDate>
    <dc:creator>MP18</dc:creator>
    <dc:date>2020-01-02T18:31:54Z</dc:date>
    <item>
      <title>Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305248#M79314</link>
      <description>&lt;P&gt;Hello Team,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the firewall, it is showing around 4000 threat logs of brute force threat and I am receiving 4000 mail in my mailbox.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there any way for specific threat I will receive only one email&lt;/P&gt;</description>
      <pubDate>Mon, 30 Dec 2019 21:18:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305248#M79314</guid>
      <dc:creator>dmodi</dc:creator>
      <dc:date>2019-12-30T21:18:56Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305257#M79317</link>
      <description>&lt;P&gt;As per My experience you can config alerts with severity high or critical.&lt;/P&gt;&lt;P&gt;If any user try to access the same url or file or anyone try brute force attempt you will get email alerts.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no way as per my knowledge that for any severity Alert you can get only 1 Email alert.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 30 Dec 2019 21:48:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305257#M79317</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2019-12-30T21:48:01Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305264#M79319</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I would recommend sending the logs to your SIEM and set thresholds there. Also you can set the PAN to block these attempts for up to an hour. This is configured in you Anti-spyware policy as well as Zone Protection policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Mon, 30 Dec 2019 23:06:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305264#M79319</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2019-12-30T23:06:01Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305266#M79321</link>
      <description>&lt;P&gt;I want to replicate so please let me how I can configure email forwarding with trail email gateway. Let me know any website providing email gateway trial&lt;/P&gt;</description>
      <pubDate>Mon, 30 Dec 2019 23:27:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305266#M79321</guid>
      <dc:creator>dmodi</dc:creator>
      <dc:date>2019-12-30T23:27:57Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305276#M79322</link>
      <description>&lt;P&gt;You can use any website like&lt;/P&gt;&lt;P&gt;yahoo.com&lt;/P&gt;&lt;P&gt;gmail.com&lt;/P&gt;&lt;P&gt;I am using my webmail. shaw.ca as long as you know the email gateway. for example for my email at shaw.ca the email gateway is&amp;nbsp;&lt;/P&gt;&lt;P&gt;mail.shaw.ca&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Try this with yahoo.com email address if you have ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Dec 2019 01:01:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305276#M79322</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2019-12-31T01:01:58Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305375#M79352</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2.PNG" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23284iE08380CC90F0A59C/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="2.PNG" alt="2.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.PNG" style="width: 792px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23285i7BA2EC6A7948B1BD/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="1.PNG" alt="1.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jan 2020 18:00:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305375#M79352</guid>
      <dc:creator>dmodi</dc:creator>
      <dc:date>2020-01-01T18:00:49Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305376#M79353</link>
      <description>&lt;P&gt;IT should work as long as email server is reachable and traffic is allowed from your Firewall.&lt;/P&gt;&lt;P&gt;This email alert will go via Management plane of the firewall.&lt;/P&gt;&lt;P&gt;Please check below link&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClUiCAK" target="_blank" rel="noopener"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClUiCAK&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jan 2020 18:51:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305376#M79353</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2020-01-01T18:51:46Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305378#M79354</link>
      <description>&lt;P&gt;Tried with yahoo gmail but still getting same issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please let me know how i can configure local mail server then i want to use that email server as an gateway or http server will also work to check the behavior of log forwarding&lt;/P&gt;</description>
      <pubDate>Wed, 01 Jan 2020 20:08:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305378#M79354</guid>
      <dc:creator>dmodi</dc:creator>
      <dc:date>2020-01-01T20:08:19Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305385#M79355</link>
      <description>&lt;P&gt;My Internet Provider&amp;nbsp; it works as shown below&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MP18_0-1577925451823.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23287iA7B556FEE082BE27/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="MP18_0-1577925451823.png" alt="MP18_0-1577925451823.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MP18_0-1577925331318.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/23286i79F2FBB95A2C5980/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="MP18_0-1577925331318.png" alt="MP18_0-1577925331318.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For Yahoo and Gmail I do not know their settings.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2020 00:37:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305385#M79355</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2020-01-02T00:37:56Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305465#M79377</link>
      <description>&lt;P&gt;I tried with yahoo and Gmail but not worked. I tried to create an account in mail.shaw.ca but they need some account number and info. Anyone, please provide mail.shaw.ca account for testing purpose or let me know any other free service provider to replicate the issue&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2020 18:19:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305465#M79377</guid>
      <dc:creator>dmodi</dc:creator>
      <dc:date>2020-01-02T18:19:07Z</dc:date>
    </item>
    <item>
      <title>Re: Threat log</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305470#M79378</link>
      <description>&lt;P&gt;I also tested yesterday with yahoo account it does not work.&lt;/P&gt;&lt;P&gt;For testing purposes you can use my email info.&lt;/P&gt;&lt;P&gt;You need to have Internet connection with them in order to create an email account.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2020 18:31:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/threat-log/m-p/305470#M79378</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2020-01-02T18:31:54Z</dc:date>
    </item>
  </channel>
</rss>

