<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Flood event threat logs in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420166#M93855</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/182578"&gt;@SurajN&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did you have DDos Protection enabled?&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Seems you have that configured and now getting flooded and PA&amp;nbsp; is recording them as&amp;nbsp; threat with a Severity rating of critical under Threat logs.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Please open TAC case ASAP.&lt;/P&gt;</description>
    <pubDate>Sat, 17 Jul 2021 17:17:33 GMT</pubDate>
    <dc:creator>MP18</dc:creator>
    <dc:date>2021-07-17T17:17:33Z</dc:date>
    <item>
      <title>Flood event threat logs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420162#M93854</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Flood event.PNG" style="width: 851px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/35101iCA2C548A562E5529/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Flood event.PNG" alt="Flood event.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;In this flood event count is showing, please what is the explanation of this Colum in threat logs report.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 17 Jul 2021 15:37:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420162#M93854</guid>
      <dc:creator>SurajN</dc:creator>
      <dc:date>2021-07-17T15:37:10Z</dc:date>
    </item>
    <item>
      <title>Re: Flood event threat logs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420166#M93855</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/182578"&gt;@SurajN&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did you have DDos Protection enabled?&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Seems you have that configured and now getting flooded and PA&amp;nbsp; is recording them as&amp;nbsp; threat with a Severity rating of critical under Threat logs.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Please open TAC case ASAP.&lt;/P&gt;</description>
      <pubDate>Sat, 17 Jul 2021 17:17:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420166#M93855</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2021-07-17T17:17:33Z</dc:date>
    </item>
    <item>
      <title>Re: Flood event threat logs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420181#M93857</link>
      <description>&lt;P&gt;Thank you for update. but i want explanation of count column .whta extactly showing in that column signature match packet or drop packet .so I'm little bit confused.&lt;/P&gt;</description>
      <pubDate>Sun, 18 Jul 2021 05:02:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420181#M93857</guid>
      <dc:creator>SurajN</dc:creator>
      <dc:date>2021-07-18T05:02:30Z</dc:date>
    </item>
    <item>
      <title>Re: Flood event threat logs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420445#M93878</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/182578"&gt;@SurajN&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;The count is mapped to the repeat_count in the context that you are displaying, which is how the firewall essentially groups log files for flood alerts. So instead of getting 154 logs for your first entry, it'll only generate 1 log entry and the repeat count will tell you it was triggered for 154 sessions.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Jul 2021 17:38:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/flood-event-threat-logs/m-p/420445#M93878</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2021-07-19T17:38:03Z</dc:date>
    </item>
  </channel>
</rss>

