Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Cortex XDR - All Actions export

Greeting to all!

I have faced an interesting use case with Cortex XDR and I haven't seen solution to it ever before. 

Short description of the situation - We have a successful vulnerability exploitation event. We know for sure, that it was exploited an

...

Resolved! Inquiry: URL IOC Capability in Cortex XDR

Dear Palo Alto Community,

 

I hope this message finds you well. As an active member of the community, I would like to reach out and seek your expertise regarding the capabilities of Cortex XDR, specifically in relation to the integration of URL Indic

...

Tracking Cortex XDR Corrupted Agents

Dear Community,

 

When I first started the Cortex XDR Project and started installing the agents, I made a mistake and deleted the outdated installation packages from the portal.

After that I started getting a lot of disconnected agents as if they try

...

AmmarJi by L1 Bithead
  • 939 Views
  • 4 replies
  • 0 Likes

Allow users to change the Timezone

Hello,

 

We have users from different places and different timezone. We noticed that it is not possible for a user to change their timezone if they don't have the General Configuration View/edit permission. Is there any other way to allow a user to c

...

atayar by L0 Member
  • 674 Views
  • 2 replies
  • 0 Likes

Resolved! Detail Description of Alert Log Fields XDR API

Hello Everyone, 

 

We are pulling alerts from the XDR API using below endpoint:

/public_api/v1/alerts/get_alerts
 
We query based on creation time which is shown as detection_timestamp in the log. 
I am looking for clarity on below points: 
 
1. what
...

Performance Optimization Strategies

Hello,

 

I have a system running workloads that is sensitive to CPU usage. The primary users have raised an issue that our currently applied XDR profile is causing detrimental delays in job processing. I confirmed this by disabling the agent to obser

...

  • 1767 Posts
  • 79 Subscriptions
Top Liked Authors