Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Change Management Server for offline agents

Dear XDR gurus,

We want to change the management server from an old tenant to a new tenant, it is simple for the agents are online by selecting the agent, Alt+Right click and select change management server.

However, it is possible  a way to change m

...

Cytool stops scanning and times out

Hello everyone,

I'm trying to create a gold image in an AWS AppsStream 2.0 environment. I'm following the steps listed here:

https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/8.1/Cortex-XDR-Agent-Administrator-Guide/Cortex-XDR-Agent-for-Virtual-E

...

J.Isaias by L1 Bithead
  • 437 Views
  • 3 replies
  • 0 Likes

XDR Agent Auto Upgrade installer has timed out.

Hi everyone,

 

I have a customer who has configured the automatic upgrade of XDR Agent, when the new version is released, only a small number of Agents have completed the upgrade, a large number of Linux hosts have failed to upgrade, and the Last Upg

...

yuyangab by L1 Bithead
  • 700 Views
  • 3 replies
  • 0 Likes

Resolved! XQL Help - Any AI tools, query library?

Wondering if there are plans to help build queries? Something as simple as looking for a file called "testfile" requires the query with the below code:


|preset = xdr_file
|filter action_file_name contains "testfile"

Another example that we are current

...

J.Suter by L1 Bithead
  • 545 Views
  • 2 replies
  • 0 Likes

Resolved! Defender remains running on Windows 11

Hi Everony

 

We've noticed that under Windows 11 the MS Defender Antivirus remains running in passive mode even after Cortex XDR is installed. The Cortex integration in Windows security center works, but Defender services are still running.

 

Does an

...

Rocky-25 by L2 Linker
  • 775 Views
  • 3 replies
  • 0 Likes

API BLOCK LIST

Hello,

By doing or achieving different automations I have managed to add hashes to the block list in the action center section via API, but as in this console I see that it is blocked with 15,000 entries, let me explain when adding 15,000 hashes I un

...

Unable to parse the time stamp

I have tried to create a new field with an existing string field (createdDate), which is already in an ISO 8601 format. unable to parse it

sample value of feild createdDate=2019-08-29T10:10:26.608Z

 

Here below the query I have used

| alter filedate

...

Unable to parse the time stamp

I have trying to create a new field with existing string field (cretedDate) which is already in a ISO 8601 format but. unable to parse it

sample value of feild createdDate=2019-08-29T10:10:26.608Z

 



here below the query i have used


| alter filedate

...

  • 2019 Posts
  • 81 Subscriptions
Top Solution Authors