Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Welcome to the Cortex XDR Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 1025 Views
  • 0 replies
  • 2 Likes

Resolved! XDR API File Retrieval

Hello,

 

I'm trying to connect an integration with our Cortex XDR for retrieving a file and its details. The only endpoint I see in the API docs that reference this action is the File Retrieval Details which uses the group_action_id from a different

...

Kevhardy by L0 Member
  • 2430 Views
  • 2 replies
  • 0 Likes

Resolved! Powershell Script and XDR

There is a PowerShell script that we would like to use within XDR. I understand that XDR currently is not able to run PowerShell scripts, the problem is I am not a coder. I have been trying to learn how to convert our script to Python but I am just a

...

Licence Cortex XDR Pro

Hello dear community, 

 

I know now, if you have less licences than installed agents, somehow they are degraded to Prevent. 

Can we see somewhere which one is degraded to Prevent version?

 

How is degrading happen and where can I see it?

 

BR

 

Rob 

RFeyertag by L4 Transporter
  • 1124 Views
  • 1 replies
  • 0 Likes

USB PRINTER

Hi 

 

I have a issue, In cortex XDR i have usb block policy in that if i remove the ip address then only usb printer is working. I want to block the USB in that pc and same time i want to use USB Printer also. pls give me solution

Resolved! API Cortex Disable Policy

Dear all,

 

Does anyone knows the specific endpoint to disable Policy Rule through the API?

In the API Doc only shows get-policy associated to endpoint.

 

Thanks in advance!

 

https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-API-Refer

...

luismianton_0-1677584651879.png

Malware Scan

Hello,

 

  • For Scans applied through polices for the pending machines how long the scan command remains upon scan initiation. for eg: I enabled scan policy on Monday the system was in disconnected state on that day and it comes back online on Thursday
...

  • 2342 Posts
  • 87 Subscriptions
Top Solution Authors
Top Liked Authors