- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
12-22-2014 11:08 PM
Hi There,
i my specific example i blocked the category Online-storage and Backup but white-listed www.slideshare.net. But apparently slideshare.net looks like crap. I guess it's because of restrictions fromthe category but not pretty sure.
The site seems to have problems with CSS cause i can see the content, but without any style. Anybody of you experiencing the same issue or can give me a hint? Honestly I'm a bit stuck here right now, any idea what i can do would be great.
Thanks in advance,
Kai
12-23-2014 08:36 AM
Hi MFB,
I have replicated the same in my lab device and everything is working as expected. I have tested with and without decryption. Just added below is the screenshot for the URL filter object I have used, hope this should help you. I am using brightcloud as my DB. Also you can try a different browser to see if you are having the same behavior
12-23-2014 09:34 AM
Hi sbadu, smalayappan,
i tried both, not with any success.. please find attached the screenshot from the (i guess) missing CSS on the page.
Thanks,
Kai
12-23-2014 10:59 AM
Hi MFB, I think I know where you are having the issue, it is nothing to do with the URL filter profile, it is purely with the IE compatibility issue that is happening on the browser. Try on a different browser to see if it is working. In the meantime I was able to get the same issue when I added the site to the compatible view settings option in IE. Screenshot for your reference.
12-23-2014 11:18 AM
Hi there,
just doublecheckt... Chrome, IE and Firefox both Show the same (missorganized) content. As soon as i bypass the PaloAlto i get everything in a correct view.
sbabu, good thinking. Any idea what application this could be? Otherwise i will check and let you know as soon as is found the application that is blocked.
Thanks,
Kai
12-23-2014 11:21 AM
I am currently having my traffic flow through the firewall running PAN OS 6.0.6 and App version 477-2502, and have not called any security profile in the rule.
12-23-2014 12:25 PM
Could you try that website in Chrome (or Firefox) then go to More tools > Developer Tools (Click on Network tab).
Now click on Network, refresh the page and see what elements are not being loaded (those will be in red).
12-29-2014 03:20 PM
As mentioned before, if the site is whitelisted, then it will not be blocked. I don't believe this is an issue with the URL filtering profile, but possible something else.
I would be curious to see if the firewall is dropping anything, since you mentioned that the website loads correctly if you bypass the firewall.
I would setup filters under 'Monitor > Packet Captures' along with turning filtering and capturing on. While you are doing this, reference the filters, generate traffic, and run the following command twice. (Once to zero out all the flags, and once again to show you any changes since the last time you ran this command. Zero it out by running twice, then generate some traffic that will match the filters you specified.)
'show counter global filter packet-filter yes delta yes'
If there are any drops, it should trigger a flag and tell you why.
You can also look at the session info to verify a few other things.
'show session all filter source x.x.x.x destination x.x.x.x' (can use a combination of filters for this command)
Find the session ID then run:
'show session id #####'
This may help determine if the Firewall is dropping anything, but it doesn't appear to be an issue with the URL filtering profile.
Let us know,
Thanks!
12-29-2014 05:19 PM
Often times web pages fetch content from other websites to compose a full web page.
Your URL filtering may be stripping out content.
You can see if this is the case with the "Log container page only" checkbox on the URL Filtering profile. Uncheck it, so you will begin logging on the URL filtering logs, if you're filtering sub-webpages from the same site.
Since this option will generate a lot of logging for every webpage that needs URL Filtering actions, it is recommended to be unchecked only for troubleshooting purposes, so leave it checked when you're done troubleshooting.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!