<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HTTP response code logging in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324936#M82903</link>
    <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/117806"&gt;@rKarki&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Palo Alto NGFW and proxies are similar in that they are both designed to protect the network ... that is where the similarities end.&lt;/P&gt;
&lt;P&gt;A proxy and a NGFW are 2 different things.&amp;nbsp; Don't use a NGFW as a proxy &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I think the following pages explain the differences and why not to use your NGFW as a proxy.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A title="What is a proxy server" href="https://www.paloaltonetworks.com/cyberpedia/what-is-a-proxy-server" target="_blank" rel="noopener"&gt;What is a proxy server&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A title="palo-alto-networks-vs-proxy-based-products" href="https://www.paloaltonetworks.com/resources/techbriefs/palo-alto-networks-vs-proxy-based-products" target="_blank" rel="noopener"&gt;palo-alto-networks-vs-proxy-based-products&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Did you check this previous discussion on the same topic ? :&lt;/P&gt;
&lt;P&gt;&lt;A title="Palo-Alto-firewall-vs-Web-Proxy" href="https://live.paloaltonetworks.com/t5/General-Topics/Palo-Alto-firewall-vs-Web-Proxy/td-p/259634" target="_blank" rel="noopener"&gt;Palo-Alto-firewall-vs-Web-Proxy&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
    <pubDate>Sun, 26 Apr 2020 18:35:08 GMT</pubDate>
    <dc:creator>kiwi</dc:creator>
    <dc:date>2020-04-26T18:35:08Z</dc:date>
    <item>
      <title>HTTP response code logging</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324902#M82895</link>
      <description>&lt;P&gt;So PAN doesn't log HTTP response code, at least I do not seem to find one under URL Filtering logs, and if it doesn't, then how Palo could claim that it is the replacement of proxy?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 26 Apr 2020 04:36:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324902#M82895</guid>
      <dc:creator>rKarki</dc:creator>
      <dc:date>2020-04-26T04:36:57Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP response code logging</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324936#M82903</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/117806"&gt;@rKarki&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Palo Alto NGFW and proxies are similar in that they are both designed to protect the network ... that is where the similarities end.&lt;/P&gt;
&lt;P&gt;A proxy and a NGFW are 2 different things.&amp;nbsp; Don't use a NGFW as a proxy &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I think the following pages explain the differences and why not to use your NGFW as a proxy.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A title="What is a proxy server" href="https://www.paloaltonetworks.com/cyberpedia/what-is-a-proxy-server" target="_blank" rel="noopener"&gt;What is a proxy server&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A title="palo-alto-networks-vs-proxy-based-products" href="https://www.paloaltonetworks.com/resources/techbriefs/palo-alto-networks-vs-proxy-based-products" target="_blank" rel="noopener"&gt;palo-alto-networks-vs-proxy-based-products&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Did you check this previous discussion on the same topic ? :&lt;/P&gt;
&lt;P&gt;&lt;A title="Palo-Alto-firewall-vs-Web-Proxy" href="https://live.paloaltonetworks.com/t5/General-Topics/Palo-Alto-firewall-vs-Web-Proxy/td-p/259634" target="_blank" rel="noopener"&gt;Palo-Alto-firewall-vs-Web-Proxy&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Sun, 26 Apr 2020 18:35:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324936#M82903</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2020-04-26T18:35:08Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP response code logging</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324952#M82907</link>
      <description>&lt;P&gt;Hello Kiwi,&lt;/P&gt;&lt;P&gt;I am pretty sure I did read the comparison docs once before and I should have acknowledged from the start that "PAN is NGFW and a proxy is a proxy". At that time I just thought that I could easily replace proxy with PAN, but after knowing some of it's fact, I figured I was wrong. Every company's requirements are different so do we. Anyway, PAN is a great FW and I am not looking this discussion to go towards NGFW vs Proxy particularly.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Mon, 27 Apr 2020 01:53:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/324952#M82907</guid>
      <dc:creator>rKarki</dc:creator>
      <dc:date>2020-04-27T01:53:36Z</dc:date>
    </item>
    <item>
      <title>Re: HTTP response code logging</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/325260#M82968</link>
      <description>&lt;P&gt;Do anyone in this community care about the the http response code on the PAN URL logs? If you do and getting it today, then can you please let me know how you did it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found this workaround and have implemented also but the log is a bit mess. This is about creating vulnerability custom signatures and for sure, it fires up event/logs based on a traffic match. The problem that I am having with this is to create a report based on response and that is for URL (http/s) only. This is even harder from a remote log collector eg. Splunk.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Community-Skillets/HTTP-Response-Codes/ta-p/314255" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Community-Skillets/HTTP-Response-Codes/ta-p/314255&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks!&lt;/P&gt;</description>
      <pubDate>Wed, 29 Apr 2020 01:22:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/http-response-code-logging/m-p/325260#M82968</guid>
      <dc:creator>rKarki</dc:creator>
      <dc:date>2020-04-29T01:22:26Z</dc:date>
    </item>
  </channel>
</rss>

