cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Who Me Too'd this topic

Identify Policy Deny Source

L1 Bithead

I am seeing some decrypted sessions hitting an allow rule, but the session end reason gets logged as a "policy-deny".  Here is a screenshot of one example:

policy deny.PNG

In the above example, rule "outbound" is configured as:

Source Zone: MSUN

Source Address: Any

Destination Zone: Charter

Destination Address: Any

Application: Any

Service: Any

Action: Allow

Security Profile: Security Group 1

 

How do I go about finding the reason this traffic is getting denied?  I've been told to check the URL Filtering log, but I'm not finding any matching logs for this session there.

Who Me Too'd this topic