Does Cortex XDR run the Malware scan if the USB device is inserted into the endpoint?
Hi everyone,
Does Cortex XDR run the malware scan on the USB device immediately when it is inserted into the endpoint?
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.
Hi everyone,
Does Cortex XDR run the malware scan on the USB device immediately when it is inserted into the endpoint?
Hi all,
We're trying to bring our few Macs into the systems management fold, and being a Microsoft shop we want to use InTune to manage them.
Most Mac packages install files and then are configured in a separate set of commands after install. The XDR
...
Hello dear community,
what use cases are there for the network Location Configuraiton and is there a simple documentation about this topic?
If there is a connection to the host firewall topic, we have a use case, because our laptops get a public i
...
Hi,
We are trying to uninstall and install XDR on a Windows server but getting a prompt during uninstallation that reboot is required.
Will reboot be necessary after uninstallation?
Regards,
Shahwaz
Hello dear community,
We noticed a feature called Cloud Compliance on Cortex XDR, but we don't see any details.
What is this feature related to and from where to collect data?
Is there any documentation available about this feature since I couldn
Hello all,
I am currently looking into creating a Device Restriction Policy in which I block a physical connection of a Mobile Phone to MacOS endpoint. Once blocked I would expect to receive an alert on the Device Policy Violation page. Is this poss
...
Can you confirm whether XDR can block "Brute Ratel C4" tool executing threats.
Hi There,
We've got the XDR Agent for mobile devices deployed in our environment for both Android and iOS.
I've noticed after some time these devices stop checking in with Cortex in the Endpoints dashboard.
The devices will first say 'disconnected'
...
Hi Community,
Good day!
We are unable to see the logs in the Cloud identity engine log viewers. if possible, Could you please suggest a way to get logs from the Directories?
Thanks in advance.
Cortex XDR Cloud Identity Cloud Identity Engine
...
Hi Community,
Good day!
In the cloud identity engine for an Azure directory, we have the option of application. In that application option its showing as Not Consented.
Could you please tell us why it shows like that and how to rectify the not
...
Hello, just want to showed the Malware incidents and the related-malware filename in the dashboard, what should i choose for the XQL.
thanks
Palo Alto docs say this:
The Cortex XDR agent registers with the Windows Security Center as an official Antivirus (AV) software product. As a result, Windows shuts down Microsoft Defender on the endpoint automatically, except for endpoints that are
...
Hello
I'm looking for an autmoatisation, where I'm able to download the freshly created xdr-distribution-file.
In my Playbook I've created following steps:
xdr-get-distribution-versions
xdr-create-distribution
xdr-get-distribution-url
Now, the last step
...
Hi,
We can see user details are not getting captured in the XDR endpoints details, how does logged-in user details are captured?
Thanks
Dear Sir,
Please if anyone can help to advise the XQL query to create a custom report to capture the "File Delete" activities in one particular server?
I know we can create the same from Query Builder, but from Query Builder it will only return 10,00
...User | Likes Count |
---|---|
4 | |
4 | |
3 | |
2 | |
2 |