MineMeld Discussions
cancel
Showing results for 
Search instead for 
Did you mean: 
MineMeld Discussions
About MineMeld Discussions

Welcome to the MineMeld discussion forum. Please feel free to ask questions and engage with other community members. Ideas, questions, research, and observations regarding MineMeld are all actively encouraged.

Note: Participation in the discussion forum requires a Live Community account. Registration is free and easy! Simply click here to sign up.

Forum Posts

Deploying Minemeld Using Vagrant and Virtualbox

Hello All, Based on @lmori's great guide for doing a manual install of Minemeld on Ubuntu 14.04, I have taken his configurations and wrapped them in a Vagrantfile for easy foolproof deployment of Minemeld. It's a simple 3 step process: Install latest...

nbilal by L3 Networker
  • 10106 Views
  • 2 replies
  • 9 Likes

CERTIFICATE VERIFY FAILED

Hello, I created a custom taxii client node type using cabby. But I get an ssl certificate error. I'm behind a proxy. When I run a test py using cabby, everthing works fine. But the node shows error. As you can see, I've set verify_ssl=False. Could a...

zulaa by L1 Bithead
  • 2994 Views
  • 1 replies
  • 0 Likes

Resolved! Azure DC : Creating a MineMeld feed from an XML file

Hello I'm trying to create a mine meld feed that will somehow download and read an XML file (or just read and xml) which contains a list of Azure datacenter IP addresses , which I can use to apply to my PAN firewall. Any help/direction is appreciated...

carysoc by L1 Bithead
  • 2588 Views
  • 2 replies
  • 0 Likes

Regex expressions/appending to output txt

Hi, I'm fairly new to Minemeld so trying to figure out a few things I seem to be stuck on. We currently pull Office365 URLs into Panorama as an EDL and I am trying to append a \ to the end of every URL in the EDL within Minemeld. I went over the docu...

MoeJomha by L0 Member
  • 1347 Views
  • 0 replies
  • 0 Likes

Using MineMeld to block ads

Hi, I've just setup MineMeld (MindMelt ;-)) in my environment. The installation (XenServer/Ubuntu/MineMeld) and configuration was quite straightforward and easy. Then I have configured the Office 365 lists and connected them on th PaloAlto Firewall. ...

Where to mine all O365 endpoints?

Hi dear community, I just implemented MineMeld server and configured EDLs and test policies. For the MineMeld I used "o365-api-any-any.txt" from https://paloaltonetworks.app.box.com/s/ywkh7rc2rj0kyl0qetr6m6ag3akxvvx6/folder/51988433336. Does anybody ...

Importing o365-api-any-any.txt

I'm trying to append o365-api-any-any.txt to my existing config. The top 5 miners are displaying a red x thus I can't append them. If I remove them I can append however then I can't commit as they're missing. What am I doing wrong? Sorry, new to mine...

Chad00 by L0 Member
  • 2194 Views
  • 4 replies
  • 0 Likes

Office 365 URL feeds include Dropbox and itunes?

Just started going through the new miners and looking over docs, we are not in production on our deployment for O365 yet. I understand there are app-Id's that would catch most of these, but I noticed that the URL Minemeld feed for the "any-any" versi...

Sec101 by L4 Transporter
  • 4562 Views
  • 7 replies
  • 0 Likes

General troubleshooting for Office 365

I have set up the feeds, and the EDLs and added the EDLs into a policy. Whenk I run the command in the CLI "request system external-list show type url name o365-URLs", I retrieve the list in the PA firewall, and the list there matches the list in Min...

Minemeld.JPG

Resolved! celery-worker 100% cpu usage

Hi I've had 100% CPU usage from the celery-worker processes for a few weeks now, I spent some time trying to resolve this but without resolution. I'm using a standard Ubuntu 14 appliance build. The issue is a looping of emerging threats downloading, ...

Resolved! O365 URL rewrite

I'm using minemeld to pull the O365 urls into my PAN. I get a list that has entries like*.domain.comsub.domain1.com I need to import those entries and rewrite them so they look like*.domain.com/domain.com/*.sub.domain1.com/sub.domain1.com/ Any pointe...

ckemp by L2 Linker
  • 4885 Views
  • 25 replies
  • 0 Likes

Installation Problem - Ansible

I'm trying to build a new Minemeld box on a fresh install of Ubuntu 16.04 (also tried Centos too) and wehn I run the ansible installer I get to a poin tthen the installer fails with this output, any ideas what's wrong? FWIW, I've tried installing as ...

ethiSEC by L2 Linker
  • 4028 Views
  • 12 replies
  • 0 Likes

EBL size limit - sorting output feed

I'm using a minemeld server to generate an external dynamic list for a PA-5220 runing version 8.1.4. The dynamic URL list exceeds the 50,000 entry limit. I've seen other posts recommending to use URL parameters to limit the list to the first 50,000 a...

dhenke by L1 Bithead
  • 1600 Views
  • 1 replies
  • 0 Likes
Top Liked Authors