Running 3.1.2 and have quite a few instances in our PAN log where for some reason a URL (not noticed a pattern other than the URL preceding the problem URL is typically really damned long and some sort of query/search) is blocked and all that shows on the block page or in the PAN logs is ".com/" or ".net/", the category is typically spam-urls.
What's really weird is that the policy is applicable to all staff/machines yet on some machines this happens, on others it simply doesn't happen.
Any ideas please? It's logged with Vadition but any thoughts appreciated.
From reading the bug, it looks like the Host in the HTTP header is being split into two packets resulting in the .com or.net portion being processed indenpendant of the www.xxxx. The .com etc is then identified as spam. The problem is intermittant and doesn't specify which browsers work/don't work so it will be good to have your examples.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!