<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Url filtering in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/435467#M96078</link>
    <description>&lt;P&gt;thanks&lt;/P&gt;</description>
    <pubDate>Tue, 21 Sep 2021 10:29:51 GMT</pubDate>
    <dc:creator>KashifSh</dc:creator>
    <dc:date>2021-09-21T10:29:51Z</dc:date>
    <item>
      <title>Url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/432788#M95788</link>
      <description>&lt;P&gt;When user asks for providing full access what categories needed to b allowed &amp;amp; Blocked in URL filtering ?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 11:47:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/432788#M95788</guid>
      <dc:creator>KashifSh</dc:creator>
      <dc:date>2021-09-09T11:47:12Z</dc:date>
    </item>
    <item>
      <title>Re: Url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/432844#M95797</link>
      <description>&lt;P&gt;Our best practices guide is &lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/url-filtering/url-filtering-best-practices.html" target="_self"&gt;here&lt;/A&gt;. At a minimum, all categories should be set to "alert."&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For malware, grayware, high-risk, extremism, phishing most customers always set to block.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For newly-registered, medium risk, parked, not-resolvable, proxy-avoidance many of my customers set that to "continue," which gives the user a popup on their browser asking if they are sure they want to go there.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In general, "full access" shouldn't ever be the mindset of protecting a network. You should identify acceptable risk, many of the categories have no use in enterprise capacity. Block as much as you can, put continue on the ones you frown on, alert for all the ones that you know to be good.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For a detailed report, contact your account team about scheduling a BPA.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 16:16:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/432844#M95797</guid>
      <dc:creator>LAYER_8</dc:creator>
      <dc:date>2021-09-09T16:16:08Z</dc:date>
    </item>
    <item>
      <title>Re: Url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/432990#M95815</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/190637"&gt;@KashifSh&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/160615"&gt;@LAYER_8&lt;/a&gt;&amp;nbsp;did a great job answering your question with the little information present. If that didn't answer your question or you have any additional questions, it's always best to be as descriptive as possible. Your question doesn't really go into what you are actually looking to do, which would go a long way in properly answering it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;If a user truly&amp;nbsp;&lt;EM&gt;needed&amp;nbsp;&lt;/EM&gt;full access then you would just have every single category set to 'alert', and therefore they would be able to access anything they needed, and while logs would record where they are going, url-filtering would never prevent them from getting to a resource. As&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/160615"&gt;@LAYER_8&lt;/a&gt;&amp;nbsp;rightfully pointed out that isn't a great option, and I would generally respond by asking the user what they were attempting to access that was blocked. It's possible they simply got blocked from access a resource that was mis-categorized, but that isn't a reason to lower your security posture. You'd just submit a categorization change request to have it placed in the proper category.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 10 Sep 2021 03:41:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/432990#M95815</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2021-09-10T03:41:22Z</dc:date>
    </item>
    <item>
      <title>Re: Url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/435466#M96077</link>
      <description>&lt;P&gt;THANKS&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 10:28:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/435466#M96077</guid>
      <dc:creator>KashifSh</dc:creator>
      <dc:date>2021-09-21T10:28:53Z</dc:date>
    </item>
    <item>
      <title>Re: Url filtering</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/435467#M96078</link>
      <description>&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Tue, 21 Sep 2021 10:29:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/url-filtering/m-p/435467#M96078</guid>
      <dc:creator>KashifSh</dc:creator>
      <dc:date>2021-09-21T10:29:51Z</dc:date>
    </item>
  </channel>
</rss>

