<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: URGENT:  Custom Application issue. in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/313442#M80933</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yeah, exactly. i do agree that. There is no other option or a way to workaround, that is how the packets get processed in Firewall during the APP inspection. Either we have to map the signature to the custom App or we can do App override.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 28 Feb 2020 07:17:33 GMT</pubDate>
    <dc:creator>sahithyan.subbu</dc:creator>
    <dc:date>2020-02-28T07:17:33Z</dc:date>
    <item>
      <title>URGENT:  Custom Application issue.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312239#M80761</link>
      <description>&lt;P&gt;Hi peeps,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have created a custom application for a particular TCP port and added that particular application in to my security policy, but traffic gets hit to deny policy. It works only when i do App override but it is not recommended to do app override. Is there any way to achieve it without App-Override or its mandatory to create a App-Override for custom applications. ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also Please Share me the KB articles if it got any info's related to my query.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Feb 2020 15:38:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312239#M80761</guid>
      <dc:creator>sahithyan.subbu</dc:creator>
      <dc:date>2020-02-20T15:38:53Z</dc:date>
    </item>
    <item>
      <title>Re: URGENT:  Custom Application issue.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312263#M80763</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Could be something wrong with the regex? I honestly dont use any custom apps or app overrides because they are more hassle for me anyway.However here are a few articles that I'm sure you've already gone over that may help?&lt;/P&gt;&lt;P&gt;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRoCAK" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRoCAK&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/u-v/custom-app-id-and-threat-signatures/custom-application-and-threat-signatures/create-a-custom-application-signature.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/u-v/custom-app-id-and-threat-signatures/custom-application-and-threat-signatures/create-a-custom-application-signature.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Thu, 20 Feb 2020 17:59:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312263#M80763</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-02-20T17:59:40Z</dc:date>
    </item>
    <item>
      <title>Re: URGENT:  Custom Application issue.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312365#M80780</link>
      <description>&lt;P&gt;I had a similar issue where I have a main rule to allow Facetime, itunes etc. For some reason even I had stun added to the same security rule, it was getting denied by the default rule. So what I did was created a another security rule on top and added the stun app seperately which fixed the issue.May be you can try this.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 08:41:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312365#M80780</guid>
      <dc:creator>umar00o</dc:creator>
      <dc:date>2020-02-21T08:41:11Z</dc:date>
    </item>
    <item>
      <title>Re: URGENT:  Custom Application issue.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312465#M80793</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/126959"&gt;@sahithyan.subbu&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;I would look at the information that&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/27580"&gt;@OtakarKlier&lt;/a&gt;&amp;nbsp;linked too, but the most important thing is just to identify that your signature/s are properly being matched to the traffic.&lt;/P&gt;&lt;P&gt;If you haven't configured any signatures on your custom application, you'll need to utilize application override to actually get things to map correctly. Without a signature assigned to the custom application there isn't anything to tell the firewall that the traffic is supposed to match this application.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 21:45:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/312465#M80793</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2020-02-21T21:45:42Z</dc:date>
    </item>
    <item>
      <title>Re: URGENT:  Custom Application issue.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/313442#M80933</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yeah, exactly. i do agree that. There is no other option or a way to workaround, that is how the packets get processed in Firewall during the APP inspection. Either we have to map the signature to the custom App or we can do App override.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Feb 2020 07:17:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/urgent-custom-application-issue/m-p/313442#M80933</guid>
      <dc:creator>sahithyan.subbu</dc:creator>
      <dc:date>2020-02-28T07:17:33Z</dc:date>
    </item>
  </channel>
</rss>

