How to notice network admin if someone tries to browse certain websites?

Announcements

ATTENTION Customers, All Partners and Employees: The Customer Support Portal (CSP) will be undergoing maintenance and unavailable on Saturday, November 7, 2020, from 11 am to 11 pm PST. Please read our blog for more information.

Reply
Highlighted
L2 Linker

How to notice network admin if someone tries to browse certain websites?

Hi Guys,

Our customer uses Palo Alto in an education institute. They want to find out if Palo Alto firewall provides features such that if someone try to access certain website, for example, adult site, suicide site, the firewall will automatically send email to alert the network admin.

So far, I haven't found any document about this. But what I can think of, is to configure url filtering profile with action continue, then the admin can filter on the url filtering logs to find out these behaviors.

Is there a specific feature we can use to achieve the above requirements, sending automatic alert message to admin via email or other ways?

Thanks.


Cheers,

Mel

Tags (1)

Accepted Solutions
Highlighted
L7 Applicator

Hello Mel,

Please find below mentioned feature request details:

Description: Granular log forwarding

FR ID: 1263

Email Alert for Custom or Specific Threat ID or Data Pattern (URL logs)

FR ID: 1477

The best avenue for information on this type of issue will be your PA sales team.  They can get you the roadmap for the feature and add you to any pending feature request.


Thanks

View solution in original post


All Replies
Highlighted
L6 Presenter

Hi Mel,

Either you can forward all the URL filtering logs or none. As of now selective forwarding is not possible. There is a open feature request for the same.

Regards,

Hardik Shah

Highlighted
L2 Linker

Hi Hardik,

Thanks for your reply. May I know the feature request number?

Thank you.

Cheers,

Mel

Highlighted
L7 Applicator

Hello Mel,

Please find below mentioned feature request details:

Description: Granular log forwarding

FR ID: 1263

Email Alert for Custom or Specific Threat ID or Data Pattern (URL logs)

FR ID: 1477

The best avenue for information on this type of issue will be your PA sales team.  They can get you the roadmap for the feature and add you to any pending feature request.


Thanks

View solution in original post

Highlighted
L2 Linker

Hi Hulk,

Thanks so much for the answer.

Cheers,

Mel

Highlighted
L7 Applicator

You are welcome Mel :smileyhappy:

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!