Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Resolved! Ingest Logs from Cisco ISE to Cortex XDR

Hi 

 

Anyone successfully ingest logs from Cisco ISE to Cortex XDR via syslog?

 

I've activated the syslog collector of broker VM for TCP514 and format set to auto detect, following this documentation, and configured the Cisco ISE to forward the logs to

...

weejh_0-1647926849547.png
weejh by L1 Bithead
  • 3153 Views
  • 4 replies
  • 0 Likes

'Hijacked DLL Injection' alerts

Greetings ,

 

The single most common and repeating alert which we are getting is like below :

'' 173 'Hijacked DLL Injection' alerts detected by XDR Agent on 24 hosts ''

Explanation is 'DLL attempted to load from blacklisted location' .So 2 questions her

...

Balaraju by L2 Linker
  • 2757 Views
  • 5 replies
  • 0 Likes

API Pagination

Hi community, I am new here.

 

I am trying to integrate the Cortex XDR API for incidents into Azure Sentinel using the new Codeless Connector Platform (CCP).  The challenge I have is that the Cortex API doesn't appear to have any indicator as to where

...

Phil007 by L0 Member
  • 1973 Views
  • 3 replies
  • 0 Likes

Resolved! What is the relationship between XDR and Datalake

I saw that there is datalake in the official admin guide structure, but I don't know what datalake does. I bought 200 XDR pro licence and found that my account has more datalake, which has 1TB of storage space. I am very confused. What data is it use

...

Grady by L2 Linker
  • 3445 Views
  • 5 replies
  • 0 Likes

deploy broker vm proxy configuration

hello, 

 

i want to install cortexXDR throught SCCM on my servers but i'm facing an issue with setting the proxy parameters also to type the confirmation password.

 

How it's possible to do it?

any help please?

 

BR.

NCherbib by L2 Linker
  • 2330 Views
  • 4 replies
  • 0 Likes

Cortex XdR

Is it possible to set a policy for the file size  in cortex Xdr /Cortex Xdr pro? 

Requirement: The limited size(configured size if possible to set policy)  of file can only be shared between the endpoint 

  • 1645 Posts
  • 79 Subscriptions
Top Liked Authors