Cortex XDR Discussions
Showing results for 
Search instead for 
Did you mean: 
Cortex XDR Discussions
About Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Forum Posts

XDR Network location configuration & VPN

Hello! On all our endpoints we are using XDR with firewall(Uses built in Windows firewall) and Palo Alto GlobalProtect VPN connecting to PanOS devices at our office. We use split tunneling for the VPN, that means that only specified traffic goes thro...

mdsgn1 by L0 Member
  • 2 replies

XDR policy targeting using AD

Hi there, When we are trying to target a policy using AD group some of the listed endpoints is not a member of selected group.To get more clarity we selected a group which only contains users and even then the result listing some random endpoints.Is ...

HafisM by L0 Member
  • 2 replies

Cortex XDR with Carbon Black

Hi All, I know it is a stupid question but I am encountering this situation that we need to install Cortex XDR working with Carbon Black (it's a long story). May I know if anyone experienced this before or any suggestions on exclusion? Thank you so m...

Cortex XDR report

Hello Live community, I have a question about the report on Cortex, i want to know if the “Infected Endpoints” comes as default in Cortex reports or if we need to configure something to show that option?Do the widgets "incidents by source" or "Top in...

Device Control

Can Cortex XDR prevent the use of other USB devices other than Disk Drives, CD-Rom Drives, and Floppy Disk Drives? If one of my users plugs in a printer, can that be denied? Can the same be done with SD cards?

Using Windows environment variables in XDR Firewall

Hello, Configuring host firewall via XDR and I cannot seem to get the Windows environment variables running.Basically, there's an implicit deny for inbound/outbound connections, so there are applications that require some internal/localhost connectio...

nikoo by L3 Networker
  • 1 replies

Log storage and resources usage

Hi everyone! How much space do the cortex xdr agent records use? I understand that in the agent profile configurations you can set the quota for log storage, by decreasing the quota the logs are automatically purged ??, for the last one on my machine...

Directory Sync usage

Hello everyone,Just curious who uses the Directory Sync tool out there? If you use it would you mind sharing a quick like/dislike about it? I really want to incorporate it into our environment but not entirely sold on it... yet. Any feedback about it...