<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PA 3000 Make users accept TOS before browsing the web in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379464#M89571</link>
    <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167976"&gt;@Jenkins&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I guess you could use captive portal for that.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The default redirect page has something like "The resource you are trying to access requires proper user identification" but you could easily edit and upload your custom response page which includes your TOS.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
    <pubDate>Wed, 13 Jan 2021 10:24:27 GMT</pubDate>
    <dc:creator>kiwi</dc:creator>
    <dc:date>2021-01-13T10:24:27Z</dc:date>
    <item>
      <title>PA 3000 Make users accept TOS before browsing the web</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379369#M89563</link>
      <description>&lt;P&gt;Hello, we use our PA 3000 as a router to distribute our ISP to multiple locations. Is there a way that I can make it so when a user try's to browse to the web either a pop up or a redirect happens so that they have to accept terms of service prior to being allowed to continue?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jan 2021 21:39:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379369#M89563</guid>
      <dc:creator>Jenkins</dc:creator>
      <dc:date>2021-01-12T21:39:19Z</dc:date>
    </item>
    <item>
      <title>Re: PA 3000 Make users accept TOS before browsing the web</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379464#M89571</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/167976"&gt;@Jenkins&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I guess you could use captive portal for that.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The default redirect page has something like "The resource you are trying to access requires proper user identification" but you could easily edit and upload your custom response page which includes your TOS.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Wed, 13 Jan 2021 10:24:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379464#M89571</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2021-01-13T10:24:27Z</dc:date>
    </item>
    <item>
      <title>Re: PA 3000 Make users accept TOS before browsing the web</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379539#M89583</link>
      <description>&lt;P&gt;here's a fancy way of accomplishing that:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;create 2 rules,&lt;/P&gt;&lt;P&gt;top rule allows internet http access to all url categories (except undesirable) but source contains a dynamic object using a tag&lt;/P&gt;&lt;P&gt;bottom rule allows all internet http access, but url filtering profile is set to continue for all url categories&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;add a log forwarding profile to the bottom rule that is set with built-in action to tag traffic as the tag used in the dynamic object in rule1, set the log forwarding filter to trigger on action 'continue'&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2021-01-13_14-21-15.jpg" style="width: 799px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/29486iE62C6062BE2FA739/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="2021-01-13_14-21-15.jpg" alt="2021-01-13_14-21-15.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when new users open a webpage they'll hit rule 2, get served a continue-block page, if they hit continue their IP will get tagged and from there on out they'll hit rule 1 until the tag expires&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Jan 2021 13:24:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/pa-3000-make-users-accept-tos-before-browsing-the-web/m-p/379539#M89583</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2021-01-13T13:24:05Z</dc:date>
    </item>
  </channel>
</rss>

