<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Traffic Thourhg the intended Security Rule in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/415446#M93259</link>
    <description>&lt;P&gt;Hi Kiwi,&lt;/P&gt;&lt;P&gt;&amp;nbsp; Thank you ..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Actually, I have setup/added an application under Applications tab, to the same, so since I am not using this application to connect to the internet, then the conditions were never met, i.e., the traffic was not matching this rule and the traffic was intercepted by next rule!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now everything is fine, after removing the Application and kept the URL Profile.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 27 Jun 2021 16:19:54 GMT</pubDate>
    <dc:creator>mshamsan</dc:creator>
    <dc:date>2021-06-27T16:19:54Z</dc:date>
    <item>
      <title>Traffic Thourhg the intended Security Rule</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/414120#M93050</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have configured a new Security Rule on top (#9 in the picture down) to Block traffic intended to a Custom URL configured in the profile&amp;nbsp; &lt;STRONG&gt;Block_Files&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;* TOP RULE *&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Source Zone:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; any&lt;/LI&gt;&lt;LI&gt;Source Address:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; any&lt;/LI&gt;&lt;LI&gt;Destination Zone:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; any&lt;/LI&gt;&lt;LI&gt;Destination Address:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; any&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;* NEXT RULE *&lt;/STRONG&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Source Zone:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Trust&lt;/LI&gt;&lt;LI&gt;Source Address:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10.10.10.10&lt;/LI&gt;&lt;LI&gt;Destination Zone:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Internet&lt;/LI&gt;&lt;LI&gt;Destination Address:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; any&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But the problem when I try to connect to the Custom URL defined in&amp;nbsp; &lt;STRONG&gt;Block_Files&lt;/STRONG&gt;&amp;nbsp; the request goes through the next Security Rule set for 10.10.10.10, i.e., although the traffic or URL is matching the Custom URL defined in Block_Files, but it does not go through nor blocked by the Security Rule on top!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is the above Rule valid/correct&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jun 2021 10:34:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/414120#M93050</guid>
      <dc:creator>mshamsan</dc:creator>
      <dc:date>2021-06-18T10:34:41Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic Thourhg the intended Security Rule</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/414130#M93052</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/63861"&gt;@mshamsan&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;There is no picture ?&lt;/P&gt;
&lt;P&gt;How have you setup the rules exactly (applications, ports, services, etc... ) ? How is the traffic identified ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Fri, 18 Jun 2021 11:44:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/414130#M93052</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2021-06-18T11:44:38Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic Thourhg the intended Security Rule</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/414152#M93057</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/63861"&gt;@mshamsan&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;In addition to what&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/11943"&gt;@kiwi&lt;/a&gt;&amp;nbsp;has already asked, if you setup a URL-Filtering profile with all categories set to "alert" (or just setup your custom category with the alert action) you'll be able to look at your URL logs to see how the firewall is categorizing the traffic.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jun 2021 14:00:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/414152#M93057</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2021-06-18T14:00:35Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic Thourhg the intended Security Rule</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/415446#M93259</link>
      <description>&lt;P&gt;Hi Kiwi,&lt;/P&gt;&lt;P&gt;&amp;nbsp; Thank you ..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Actually, I have setup/added an application under Applications tab, to the same, so since I am not using this application to connect to the internet, then the conditions were never met, i.e., the traffic was not matching this rule and the traffic was intercepted by next rule!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now everything is fine, after removing the Application and kept the URL Profile.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 27 Jun 2021 16:19:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/traffic-thourhg-the-intended-security-rule/m-p/415446#M93259</guid>
      <dc:creator>mshamsan</dc:creator>
      <dc:date>2021-06-27T16:19:54Z</dc:date>
    </item>
  </channel>
</rss>

