<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: test security-policy-match shows blank output instead of &amp;quot;No rule in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/349209#M86811</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;- Thanks for taking the time to respond with your answer. I can see you have solid experience, so I have gone ahead and accepted your response as the solution. Kudos&lt;/P&gt;</description>
    <pubDate>Mon, 14 Sep 2020 18:48:11 GMT</pubDate>
    <dc:creator>gb2057</dc:creator>
    <dc:date>2020-09-14T18:48:11Z</dc:date>
    <item>
      <title>test security-policy-match shows blank output instead of "No rule matched"</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/348637#M86755</link>
      <description>&lt;P&gt;Hello to the community,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;First I'd like to thank everyone for contributing. The community is invaluable.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was wondering if anybody have any ideas why I always see this behavior? Reading through the discussions and doing my own research, I have seen it result showing "No rule matched" whereas my output is always just blank when no rule is matched.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I enabled override on the interzone-default, and I do see the logs appear in "monitor" in the GUI. But executing test security-policy-match in CLI for the same traffic results in no output at all.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Example of blank output:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;admin@f1-nttptc-dmz-pa(active)&amp;gt; test security-policy-match from DMZ to IPAM source 155.16.250.9 destination 155.16.38.141 destination-port 53 protocol 17&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;EM&gt;admin@f1-nttptc-dmz-pa(active)&amp;gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have always seen this behavior over numerous versions of PA 8.x / 9.x. Is this the expected behavior? Why do I see other posts with output results showing the helpful "No Rule Found" message? The only way I can get output from this command in CLI is if I add an explicit "deny any any" at the bottom, but this comes with its own set of issues as it overrides the default allow for "intrazone" traffic, affecting stuff like BGP, IPSec, Interface Mgmt, etc.,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I appreciate any feedback from others' experiences and whether this is the expected behavior?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks to all in advance,&lt;/P&gt;&lt;P&gt;G&lt;/P&gt;</description>
      <pubDate>Fri, 11 Sep 2020 16:37:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/348637#M86755</guid>
      <dc:creator>gb2057</dc:creator>
      <dc:date>2020-09-11T16:37:40Z</dc:date>
    </item>
    <item>
      <title>Re: test security-policy-match shows blank output instead of "No rule</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/349203#M86810</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/144072"&gt;@gb2057&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;At least for me, this would be expected behavior. It used to be on older releases I would get the "No rule matched", but that changed with a later release and I simply don't get anything until it matches a rulebase entry. I'm not sure exactly when this change was introduced, or really if it's expected behavior, but I deal with enough environments that I can tell you it's standard from what I've seen.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 14 Sep 2020 17:38:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/349203#M86810</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2020-09-14T17:38:03Z</dc:date>
    </item>
    <item>
      <title>Re: test security-policy-match shows blank output instead of "No rule</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/349209#M86811</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;- Thanks for taking the time to respond with your answer. I can see you have solid experience, so I have gone ahead and accepted your response as the solution. Kudos&lt;/P&gt;</description>
      <pubDate>Mon, 14 Sep 2020 18:48:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/test-security-policy-match-shows-blank-output-instead-of-quot-no/m-p/349209#M86811</guid>
      <dc:creator>gb2057</dc:creator>
      <dc:date>2020-09-14T18:48:11Z</dc:date>
    </item>
  </channel>
</rss>

