Deploy Broker VM
Hello,
Is there any document regarding the steps to Deploy Cortex XDR Broker VM through VMWARE ESXI.
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.
Hello,
Is there any document regarding the steps to Deploy Cortex XDR Broker VM through VMWARE ESXI.
Hello
I would like to customize the standard "Detections By Actions" widget to filter only on true positive (resolved) incidents - for the last 30 days.
And I would like to customize the standard "Open incidents by severity" widget to apply on all in
...
I want to process the alarms received by XDR. To do this, I first need to separate the incoming alarms according to their class. If I separate them according to source, I should examine them in 4 classes as "XDR IOC, XDR BIOC, XDR Agents, XDR Analyti
...
Hello dear community!
I whish there could be a column, which could make us see, if the file is quarantined. It just exists in the Executions index tab and there you cannot see in one step if the file is quarantined or not.
It would be very helpful,
...
Hi, I'm looking at doing a review on our Cortex policies and we currently have weekly scanning enabled. I know scanning for Cortex is not a traditional antivirus scan, but more for creating a benchmark for your endpoints.
After it does a scan, alerts
...
Hello,
How Legacy Exceptions are different from Policy/profiles in Policy management.
Hi,
Hi have this personal computer which I used for work several years ago (5). I started working for another company and stopped using this computer for work stuff.
Recently, about a year ago, I started using it again for all kind of things (str
...
Hello everyone,
I need your help because I want to create a BIOC deletion rule, I have the hash, the username and the path but I would like this deletion to be effective during a specific time slot, can it be configured?
Hello,
We have noticed that the user can simply exit the XDR on the system tray. Is there any way to block the exit button with admin rights or any way possible to avoid stopping the app?
Hello,
i know that i can block specific files in cortex but i am looking for a solution how i can block only .exe files in Users download folder.
In the Malware Profiles i can see that there is only a allow list where i can write single filenames t
...
In a document provided by my company some time ago, we were asked to install Traps on our personal computer, however, I found that it blocks certain programs(video game) when I'm not working. It seems it's not possible to uninstall this and a supervi
...
Hello,
What exactly is the use of the feature called active assets and active managed assets in the IP ranges section under the Network configuration module.
Hello dear community,
what is your expirience with slow applications when printing, saving documents (not responding) on a terminal server?
Yes, there are over 30 users on it and it was a bit slow before cortex xdr pro rollout. But now it is terri
...
Hello,
1. If we create a policy related to scanning of endpoints and apply that policy in all the machine and run it on all the machine at the same time. Is it this method possible? Will it create any issue?
2. Pop up messages to users for malicious
Subject | Likes |
---|---|
4 Likes | |
2 Likes | |
2 Likes | |
2 Likes | |
2 Likes |
User | Likes Count |
---|---|
5 | |
4 | |
4 | |
4 | |
4 |