Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Welcome to the Cortex XDR Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 1834 Views
  • 0 replies
  • 3 Likes

Resolved! XDR Agent version naming convention

Hi all,

 

I am a bit confused with the new Agent version numbers. So to be sure:

 

Taking the naming convention into account, isn't the XDR Agent version 8.5.0.624. higher and newer then version 8.5.0.3639?

 

8.5.0.3639 is recently released to suppor

...

AbdBgc by L2 Linker
  • 1625 Views
  • 1 replies
  • 0 Likes

Cortex XDR Agent certificate enforcement

Hi Team,

I have enabled the Cortex XDR agent settings for certificate enforcement. However, endpoints are showing as only partially protected, and the Operational Status Details indicate that certificate enforcement is disabled against policy (Failed

...

Resolved! Network Configuration - WAN IP

Hi Community, 

 

Would it be correct to register the IP addresses of the firewall's WAN interfaces in Cortex's network configuration -> Internal IP range?

 

I ask this question because I have a Fortigate sending the logs to Crotex and always the IP t

...

Group events with xql bin stage

Hi everyone

 

I try to count some events per day and used the bin stage to do this. It does work to group the events together but the time is wrong. For example an event at 00:30 will count for the day before (probably because of the timezone). I tri

...

micomi by L3 Networker
  • 2883 Views
  • 5 replies
  • 0 Likes

Create link on the dashboard

Hi all,

 

I have created a simple custom Dashboard using a custom Widget. I want to put a link to endpoint table filtered by the result (result is the agent name), like the links on the default "Agent Management" dashboard. Does anyone know how to?

 

...

Dashboard_01.JPG
AbdBgc by L2 Linker
  • 1513 Views
  • 4 replies
  • 0 Likes

Can't uninstall old cortex xdr version

i have install cortex xdr on linux (7.9 version) ,  the service can't start. i try to uninstall old version or upgrade the version to 8.1.1 , but it show below error. Pls help me to fix the error. 

 

[root@MOFVM068 bin]# ./cytool runtime start all
Red

...

Resolved! Adding file and folder exclusions

We have  a security camera server that's been throwing out low memory resource messages and the company that provides the software claims that Cortex XDR endpoint client is causing memory leaks. There are no incidents being triggered by this server a

...

Disabled Capabilities of XDR on instaallation

Hi all,

 

in one of our customers with the installation of XDR agent version 8.5 the Response Capabilities (File Retrieval, Live Terminal, Script Execution) were disabled from the very beginning on many of the endpoints. As there is no other way, the

...

AbdBgc by L2 Linker
  • 1955 Views
  • 2 replies
  • 0 Likes
  • 2481 Posts
  • 88 Subscriptions
Top Solution Authors
Top Liked Authors