Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Search instead for 
Did you mean: 
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Cortex Subscription license doubt

We have deployed more than 800 agents in the network. Currently, we have a trial license but they will purchase the license the next month. 

 

If the actual license will come did we have to again reinstall the agents. 

 

 

Resolved! check cortex xdr agent status

Hi everyone,

 

I have a doubt

how can I check the status of the cortex xdr service / agent in windows 10 ?

cause my client won't synchronize with server 

Thanks in advance.

 

greetings.

Seka by L1 Bithead
  • 1925 Views
  • 6 replies
  • 0 Likes

Resolved! XDR 3.2 Broker VM Kernel version

Hello ,

We are using Cortex XDR Prevent 3.2 with 2 Broker VMs for Proxy access  .

I guess Broker VMs are Linux appliance . So is there any way to find the Linux kernel version which these VMs are running ?

Thanks in advance for response

Balaraju by L2 Linker
  • 820 Views
  • 2 replies
  • 0 Likes

XdrAgentCleaner Execution Monitoring

Is anyone monitoring XdrAgentCleaner execution? And if so i have a question, lets say when we run the XdrAgentCleaner, before the agent cleans all the Cortex traces, does it sends the EDR telemetry to cloud so in case if XdrAgentCleaner is used malic

...

Resolved! Submissions to VirusTotal? VT Licence ?

Hello!

 

As I know, samples which are provided to VT, are "lost" in the endless VT world. VT can do with the files what they want. (Sharing, etc.). 

When we connect Cortex XDR with VT, what will be transfered to VT? 

What are the limitiations with Cortex

...

Palp alto TRAP XDR cortex

Is it safe to install paloalto cortex XDR solution?

If we install in our premises then our client machine data may get compromised if cortex scan for  malware on cloud. Then what is the use of proxy broker server. I want my data must be safe and it sh

...

Whitelist IP from XDR anlysis

Hello,

 

We would ike to know if it is possible to create a list of IP's that will not be analysed by any of the XDR protection modules.We have a vulnerability scanning tool that uses all sorts of scripts to perform its tasks, At the moment, most of th

...

Resolved! Ingest Logs from Cisco ISE to Cortex XDR

Hi 

 

Anyone successfully ingest logs from Cisco ISE to Cortex XDR via syslog?

 

I've activated the syslog collector of broker VM for TCP514 and format set to auto detect, following this documentation, and configured the Cisco ISE to forward the logs to

...

weejh_0-1647926849547.png
weejh by L1 Bithead
  • 1068 Views
  • 4 replies
  • 0 Likes