- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
08-08-2013 01:01 PM
Is there a way other than waiting for the timeout to expire to remove an ip from the list of blocked ip's once it is blocked by a rule with an action of block-ip? I hope that makes sense .
Thanks,
Jim
08-08-2013 01:14 PM
Are you looking for something similar to https://live.paloaltonetworks.com/message/19545#19545 ?
There is also a clear command : > clear dos-protection zone <zone name> blocked source <IP>
08-08-2013 01:14 PM
Are you looking for something similar to https://live.paloaltonetworks.com/message/19545#19545 ?
There is also a clear command : > clear dos-protection zone <zone name> blocked source <IP>
08-08-2013 01:22 PM
Yes that was what I was looking for. I will second the feature request to display and remove entries that have been blocked either by a vulnerability or a zone protection rule.
Thanks,
Jim
08-08-2013 01:33 PM
Hi,
Please try the show command: 'ash@bv-tx1-pa200> show dos-protection zone <ingress_zone> blocked source ' and check if your profile blocked IP is listed. If it is listed here, then the following clear command should be able to clear it:
clear dos-protection zone <zone name> blocked source <IP>'
I havnt tested it recently but I think the above show / clear command may work for IPs blocked by brute force vulnerability signatures as well.
08-08-2013 07:24 PM
Achitwadgi,
The command:
clear dos-protection zone (zone name) blocked source (IP address)
works fine for sources that are blocked as a result of the action Block IP regardless of the signature used to trigger the action. You can either clear all IP addresses in the zone or just an individual IP address.
Phil
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!