Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Welcome to the Cortex XDR Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 1375 Views
  • 0 replies
  • 3 Likes

Allow users to change the Timezone

Hello,

 

We have users from different places and different timezone. We noticed that it is not possible for a user to change their timezone if they don't have the General Configuration View/edit permission. Is there any other way to allow a user to c

...

atayar by L0 Member
  • 2284 Views
  • 2 replies
  • 0 Likes

Resolved! Can't find logged in users from Endpoint Asset View

Hello all, 

I find it strange that I cannot easily check the connected or previously logged in users on an endpoint. For example on Asset View or from Endpoints view I cannot see that.

There is the possibility to see it only on an incident I guess. But

...

Panagiss by L1 Bithead
  • 1639 Views
  • 1 replies
  • 0 Likes

Resolved! Detail Description of Alert Log Fields XDR API

Hello Everyone, 

 

We are pulling alerts from the XDR API using below endpoint:

/public_api/v1/alerts/get_alerts
 
We query based on creation time which is shown as detection_timestamp in the log. 
I am looking for clarity on below points: 
 
1. what
...

Resolved! Requesting Clarity on XDR XQL API Logging

Hello Everyone, 

 

For one of the client, we need to fetch logs from XDR API using XQL. Currently, the ask is for windows event logs only, but later they want IIS logs as well. 

Any help in below queries would be appreciated:

 

1. There are two queri

...

Check Cortex XDR Agent status

Is it still possible to check the status of Cortex agent in registry? I want to check the status on the client side periodically. I know it is possible via cytool but i need to do this periodically on a lot of computers.

I know there was a way on Tra

...

Nazlikul by L1 Bithead
  • 4032 Views
  • 4 replies
  • 0 Likes

Cortex XDR Block List isolating machines

Hi all,

 

I'm running into this issue where some personnel do not want to add malicious hashes to the XDR block list as it will isolate the machine. As far as I can tell, adding a hash to the block list will only remove the file on execution or scan,

...

Resolved! Problem bei Installation eines Cortex XDR Clients 8.0.1.33809 (Win, 64 Bit, msi) auf Microsoft Surface Pro 9 5G ,Prozessor: Microsoft SQ3 (ARM64)

Wir haben Probleme bei der Installation eines Cortex XDR Clients 8.0.1.33809 (Win, 64 Bit, msi) auf einem Rechner Microsoft Surface Pro 9 5G (Prozessor: Microsoft SQ3 (ARM64) / OS: Windows 11 22H2)

Installation des Cortex beginnt,  Cortex-Installatio

...

  • 2421 Posts
  • 88 Subscriptions
Top Solution Authors
Top Liked Authors