Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Resolved! Broker VM connection issue

Hi Community

 

We're facing an connection issue with Endpoints using Broker VMs (agent proxy). We opened a TAC case, but it's stuck. There is no useful help yet.

- Endpoints are isolated from the internet (no direct or webproxy access)
- Endpoints are

...

Rocky-25 by L2 Linker
  • 2644 Views
  • 2 replies
  • 0 Likes

Resolved! Cortex XDR Prevent to Pro

Hi,

 

ill soon have to migrate a customer from prevent to pro. My question is i heard, that Palo just has to change the license in the background and that would be all i just have to enable the pro feature in the policy. My only concern is, that the

...

Resolved! The query is w.r.t API operation

Hello,

Is the API function available to run the "File Search" operation? --> (“Incident Response --> Action Centre --> File Search- Sha256”). Did not find this option in the Cortex XDR API documentation, however, wanted to confirm and check if this c

...

Resolved! Exception Exploit Module

Hello Community,

 

I would like to create an exception rule for an IIS worker process w3wp.exe, which module would be the appropriate one where the exception would reside.

 

Based on the documentation here EXPLOIT SECURITY POLICY offers protection ag

...

brownchris_0-1692392318707.png

Resolved! Server in the DMZ- unable to Live Terminal Into

All,

 

When looking through the log file of the agent, I ran across this. Can anyone tell me what its for and why is it missing? This was a fresh install of the latest Cortex agent. Thanks.

 

Payload archive file \"C:\\ProgramData\\Cyvera\\LocalSyste

...

  • 2027 Posts
  • 81 Subscriptions
Top Solution Authors