Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Upgrade agent failed

I have encountered the following issue of failed agent upgrade on a Windows laptop, showing the following message:

 

XDR Agent failed to upgrade from version 8.4.0.51691 to version 8.5.0.624 on LAPTOP-xxxxxxx with error: Windows Installer DB: Current

...

BIOC RULE Creation - Workstation IP changed

Hi,

 

How we can monitor the scenario like,  when a cortex connected workstation's IP address change?

 

Whether it is possible to create a rule/bioc in cortex xdr for monitoring the above mentioned scenario ?

Cortex XDR Cortex Data Lake 

 

Thanks

Chr

...

Christy7 by L0 Member
  • 256 Views
  • 1 replies
  • 0 Likes

Resolved! Customize the Endpoint Isolation message

Hello once again,

 

 

Does anyone know if it is possible to customize the message that is sent to the endpoint when it is isolated?
Currently XDR just displays a message for 5 seconds that says 'The Cortex XDR agent has stopped network access on your

...

Email Alerts

The alerts we receive in email are detailed with a code box that can be very long and difficult to read especially through a mobile device. Is there options to make these alerts more user and mobile friendly?

TGroleau by L0 Member
  • 375 Views
  • 3 replies
  • 0 Likes

XDR Agent Stop 8.3.0

Hi, I would like to know if anyone has experienced this problem. Sometimes, without any apparent reason, the Cortex XDR Agent version 8.3.0 stops responding on Windows Server 2016 servers. When we check the services, the service is stopped

We restart

...

Panorama integration

Hello,

 

Have anybody integrate with Panorma? There is an option to do so under the NGFW integration:

How exactly does it work? 

I have integrated XDR with NGFW and everything works fine, logs are collected, but I am wondering what is the use case t

...

xdrxdrxdr_0-1711041502188.png
  • 1897 Posts
  • 78 Subscriptions
Top Solution Authors
Top Liked Authors