Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Welcome to the Cortex XDR Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating: Rules and Best Practices Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussions are encouraged; disrespectful or inflammatory comments are not. Stay On-Topic: This board is d...

JayGolf by Community Team Member
  • 4356 Views
  • 0 replies
  • 3 Likes

Traps agent install issue

Hi All:I have a problem when installing Traps Agent.Does anyone know why it cannot be installed?The error message is as follows Windows could not start the Traps service on Local Computer.Error 1068: The dependency service or group failed to start Richard

Linux scheduled scans

I have just configured XDR and I can't seem to find anything linked to setting up scheduled daily / weekly scans. Is this feature available?

bartek by L0 Member
  • 3170 Views
  • 1 replies
  • 0 Likes

Windows daily scan configuration

I have just configured the Malware policy and set up weekly scans as a schedule, however I haven't found a way how to configure daily scans. Is this feature available as I can't seem to find it.

bartek by L0 Member
  • 3005 Views
  • 1 replies
  • 0 Likes

Resolved! Cortex xdr 2.3-Custom user role

Hi Team, My organization asked me to give help desk team access to cortex xdr only to initiate malware scan and and see the results, and they should be restricted from seeing all other options .Is it is possible to create such user role?

Anti-tamper protection preventing uninstall

I installed the 7.1 agent on Windows 10 1909, but I ran into issues with sysprep so I'm trying to uninstall it. I'm getting the message that it can't be uninstalled unless I disable Anti-Tamper protection. I was able to disable it with cytool protect disable, but I've never run into this message with Traps. Is it normal to need to disable anti-t...

Maxstr by L3 Networker
  • 20772 Views
  • 2 replies
  • 0 Likes

Resolved! Agent 702 on Server 2003?

This is embarrassing, but part of the mess I inherited were four Win2003 boxes still in production. They are currently using the old on-prem endpoint security manager setup and agent 3.4.3. Until I get get rid of these liabilities, at the very least I'd like to get the new agent on them and retire the on-prem ESM. Does anyone have any suggestio...

Dealing with Execution Vulnerability in Cortex XDR

Hi Everyone, How do you guys deal with Vulnerability reports in Cortex XDR?After we got Cortex XDR integrated with out PA firewall, I can see some high alerts associated with different vulnerabilities.The traffic is dropped, thanks to PA firewall. But, what is the best way to approach this.I can block the host IP's who are performing the attack....

Resolved! Will there be a Cortex-management-service?

Hello, everybody,I have not found any information in the FAQ (about Cortex migration).The "Traps-Management-Service Application" already impliesssl and web-browsing.For some clients that are not allowed to access the internet, I have only allowed this application to run traps. This works fine too. But the new "Cortex-XDR Application" requires ss...

Hodor by L1 Bithead
  • 18642 Views
  • 8 replies
  • 1 Likes

Resolved! Cortex XDR 2.0 migration, Broker VM upgrade question

Hi,Recently I watched the Cortex XDR 2.0 migration information video and there was mention of having to need to upgrade the on-premise Broker VM.I wanted to make sure we are ready for the migration and, if necessary, prepare our environment where needed. In the updated Broker VM installation documentation, I saw some new things, like configurati...

Traps to Cortex Migration

Hello Community, We are trying to prepare for the inevitable traps to cortex migration. In our present TMS console we have approx. 3500 win 10 systems, approx 700 linux,mac os systems. When the migration starts, will the migration mechanism just start systematically going through the devices in TMS? The reason I ask is, we only want the 700 li...

Cortex XDR 2.0 event 12/10

Just a small FYI to all if you are wondering about all of the new features and enhancements that are going to be in the new Cortex XDR 2.0.. There are going to be many new features.. and you can learn all about them in an upcoming Online event happening on Dec 10th. To read my blog that I wrote, please visit here: Cortex XDR 2.0 Livestream E...

jdelio by L7 Applicator
  • 6008 Views
  • 2 replies
  • 2 Likes

Resolved! Cortex XDR and Data Lake activation

Hi everyone, sorry if posting in the wrong place. I'm reading through the XDR and Data Lake documentation to understand how to proceed with the product activation. About Data Lake (formerly logging service), the documentation states that:if you are using Traps Management Service and/or firewalls that are not managed by Panorama, you should act...

grenzi by L3 Networker
  • 9306 Views
  • 1 replies
  • 0 Likes
  • 2599 Posts
  • 98 Subscriptions
Top Solution Authors