<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Deep Packet inspection for Internal Vlan in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/362003#M88255</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp; thanks for your reply, really appreciate it.&lt;/P&gt;&lt;P&gt;Please, is IDP and IPS&amp;nbsp;under&lt;/P&gt;&lt;P&gt;Object,&lt;/P&gt;&lt;P&gt;security profile!&lt;/P&gt;&lt;P&gt;am i correct ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 10 Nov 2020 21:43:43 GMT</pubDate>
    <dc:creator>Mahmoud-Osama</dc:creator>
    <dc:date>2020-11-10T21:43:43Z</dc:date>
    <item>
      <title>Deep Packet inspection for Internal Vlan</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/361970#M88252</link>
      <description>&lt;P&gt;Dear All,&amp;nbsp;&lt;/P&gt;&lt;P&gt;First, I would like to thank the community for help us a lot of time. i have a question, is their feature in Palo Alto to inspect the internal traffic (IDS and IPS)?&lt;/P&gt;</description>
      <pubDate>Tue, 10 Nov 2020 20:26:56 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/361970#M88252</guid>
      <dc:creator>Mahmoud-Osama</dc:creator>
      <dc:date>2020-11-10T20:26:56Z</dc:date>
    </item>
    <item>
      <title>Re: Deep Packet inspection for Internal Vlan</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/361985#M88253</link>
      <description>&lt;P&gt;Yes, if you are unable reply the firewall "inline" (layer2 or vwire) you can still set up a TAP port, which acts as a sniffer port like an IDS&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can connect the tap to a span port on your switch and forward all traffic within a vlan to it for inspection&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do take into account the following things&lt;/P&gt;&lt;P&gt;- the span port must duplicate all inbound and outbound packets for.sessions to be 'complete'&lt;/P&gt;&lt;P&gt;- forward Ssl decryption is not possible, inbound inspection can be set up if you import the server certificate&lt;/P&gt;&lt;P&gt;- there needs to be a security rule from tapzone, to.tapzone, &lt;STRONG&gt;allow&lt;/STRONG&gt;, with security profiles&lt;/P&gt;&lt;P&gt;- take into account additional.bandwith and other resource usage on both firewall and switch&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Nov 2020 21:23:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/361985#M88253</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2020-11-10T21:23:00Z</dc:date>
    </item>
    <item>
      <title>Re: Deep Packet inspection for Internal Vlan</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/362003#M88255</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/7608"&gt;@reaper&lt;/a&gt;&amp;nbsp; thanks for your reply, really appreciate it.&lt;/P&gt;&lt;P&gt;Please, is IDP and IPS&amp;nbsp;under&lt;/P&gt;&lt;P&gt;Object,&lt;/P&gt;&lt;P&gt;security profile!&lt;/P&gt;&lt;P&gt;am i correct ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Nov 2020 21:43:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/362003#M88255</guid>
      <dc:creator>Mahmoud-Osama</dc:creator>
      <dc:date>2020-11-10T21:43:43Z</dc:date>
    </item>
    <item>
      <title>Re: Deep Packet inspection for Internal Vlan</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/362896#M88308</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;This is a combination of different settings. Lets say you want to inspect traffic between Zones A and B. Just create a security policy that allows the traffic to flow between those zones (specific applications, etc.). Then make sure you apply 'Profile Settings' for AntiVirus, AntiSpyware, Vulnerability protection, etc., just dont do internal URL Filtering, just eats up resources and creates a headache for you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Nov 2020 23:12:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/deep-packet-inspection-for-internal-vlan/m-p/362896#M88308</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-11-12T23:12:48Z</dc:date>
    </item>
  </channel>
</rss>

