<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How can I allow an application on default and a non-standard port? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338769#M85144</link>
    <description>&lt;P&gt;I have a Security rule that allows Oracle traffic between two subnets.&amp;nbsp; The problem is that three Oracle servers use standard port 1521, and another Oracle Server uses a non-standard port 13062.&amp;nbsp; I know that I need to allow the non-standard port in the rule, but that breaks traffic on the standard port.&amp;nbsp; For now, I have explicitly added the standard port, so both ports are explicitly allowed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to allow application-default + defined services in a single rule?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Wed, 15 Jul 2020 21:05:35 GMT</pubDate>
    <dc:creator>kcampion</dc:creator>
    <dc:date>2020-07-15T21:05:35Z</dc:date>
    <item>
      <title>How can I allow an application on default and a non-standard port?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338769#M85144</link>
      <description>&lt;P&gt;I have a Security rule that allows Oracle traffic between two subnets.&amp;nbsp; The problem is that three Oracle servers use standard port 1521, and another Oracle Server uses a non-standard port 13062.&amp;nbsp; I know that I need to allow the non-standard port in the rule, but that breaks traffic on the standard port.&amp;nbsp; For now, I have explicitly added the standard port, so both ports are explicitly allowed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to allow application-default + defined services in a single rule?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jul 2020 21:05:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338769#M85144</guid>
      <dc:creator>kcampion</dc:creator>
      <dc:date>2020-07-15T21:05:35Z</dc:date>
    </item>
    <item>
      <title>Re: How can I allow an application on default and a non-standard port?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338771#M85145</link>
      <description>&lt;P&gt;By the way, I have the same problem with ping.&amp;nbsp; As soon as I define the non-standard port, ping breaks, and I haven't found ay way to explicitly include a "service" for ping in the same rule.&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jul 2020 21:06:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338771#M85145</guid>
      <dc:creator>kcampion</dc:creator>
      <dc:date>2020-07-15T21:06:55Z</dc:date>
    </item>
    <item>
      <title>Re: How can I allow an application on default and a non-standard port?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338827#M85151</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/109899"&gt;@kcampion&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Your only option for this is either the way you are doing it currently where you manually specify the default ports as a service/member along with your custom ports, or to split the entry into two separate rulebase entires. I know there's an FR to allow exactly what you are asking for, but I can't recall what it was off-hand.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jul 2020 02:34:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338827#M85151</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2020-07-16T02:34:34Z</dc:date>
    </item>
    <item>
      <title>Re: How can I allow an application on default and a non-standard port?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338829#M85152</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/109899"&gt;@kcampion&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;As for ping that's ICMP traffic and doesn't really fit the same model and you should never really have non-standard ping traffic.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jul 2020 02:36:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/338829#M85152</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2020-07-16T02:36:10Z</dc:date>
    </item>
    <item>
      <title>Re: How can I allow an application on default and a non-standard port?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/339006#M85193</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;, I thought that was the case for mixing standard and non-standard ports.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the reply on the ping issue too.&amp;nbsp; I'm not trying to allow ping on non-standard, but I can't find a way to get the standard method for ping to work when mixed my non-standard Oracle.&amp;nbsp; Not a big deal, I'm OK with splitting the ping from the Oracle rule.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Jul 2020 16:47:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-can-i-allow-an-application-on-default-and-a-non-standard/m-p/339006#M85193</guid>
      <dc:creator>kcampion</dc:creator>
      <dc:date>2020-07-16T16:47:42Z</dc:date>
    </item>
  </channel>
</rss>

