This website uses cookies essential to its operation, for analytics, and for personalized content. By continuing to browse this site, you acknowledge the use of cookies.
For details on cookie usage on our site, read our
Privacy Policy
Accept
Reject
Register
·
Sign In
·
FAQs
(English) USA
(English) USA
(简体中文) China
(日本語) Japan
(繁體中文) Taiwan
Get Started
Welcome Guide
LIVEcommunity Support Info
FAQ
News & Events
Events
Ask Me Anything (AMA) Events
Ask Me Anything (AMA) Event Discussions
Interactive Events
Social Feed
News
Discussions
Network Security
Next-Generation Firewall Discussions
VM-Series in the Public Cloud
VM-Series in the Private Cloud
CN-Series Discussions
AIOps for NGFW Discussions
Panorama Discussions
GlobalProtect Discussions
Cloud NGFW Discussions
Cloud Delivered Security Services
Threat & Vulnerability Discussions
Endpoint (Traps) Discussions
Enterprise Data Loss Prevention Discussions
Next-Generation CASB Discussions
IoT Security Discussions
Secure Access Service Edge
Prisma Access Discussions
Prisma Access Insights Discussions
Prisma Access for MSPs and Distributed Enterprises Discussions
Prisma Access Cloud Management Discussions
Prisma SD-WAN Discussions
Prisma SD-WAN CloudBlades Discussions
Prisma SD-WAN AIOps Discussions
Autonomous DEM Discussions
Cloud Native Application Protection
Prisma Cloud Discussions
Cloud Identity Engine Discussions
Security Operations
Cortex XDR Discussions
Cortex XSOAR Discussions
Cortex Xpanse Discussions
Cortex XSIAM Discussions
General Topics
Best Practice Assessment Discussions
Configuration Wizard Discussions
Custom Signatures
VirusTotal
Articles
General Articles
PSIRT Articles
Products
Network Security
GlobalProtect
Next-Generation Firewall
Cloud NGFW for AWS
Cloud NGFW for Azure
AIOps for NGFW
Getting Started With VM-series
Private Cloud
Oracle Cloud Infrastructure
Alibaba Cloud
AWS
GCP
Azure
CN-Series
Panorama
Threat Prevention Services
Endpoint Protection
SSL Decryption
App-ID
Content-ID
User-ID
5G
Cloud Delivered Security Services
Next-Generation CASB
IoT Security
Enterprise Data Loss Prevention
Secure Access Service Edge
Prisma Access
Prisma Access Insights
Autonomous Digital Experience Management
Prisma Access Cloud Management
Prisma Access for MSPs and Distributed Enterprises
Prisma SD-WAN
Prisma SD-WAN CloudBlades
Prisma SD-WAN AIOps
Cloud Native Application Protection
Prisma Cloud
Cloud Identity Engine
Security Operations
Cortex XDR
Cortex XSOAR
Cortex Data Lake
Cortex Xpanse
Cortex XSIAM
Hub
Tools
Integration Resources
App for QRadar
Automation / API
Ansible
Palo Alto Networks Device Framework
Terraform
Cloud Integration
Expedition
HTTP Log Forwarding
Maltego for AutoFocus
Best Practice Assessment
Configuration Wizard
Quickplay Solutions
Education Services
Certification
Instructor-Led Training
Digital Learning
Education Services Help Center
Education Services Upcoming Events
Education Services Articles
Podcasts
PANCast
PANCast: Episode Ideas Submission
Member Recognition
Spotlight News
Member Spotlights
Member Testimonials
Cyber Elite Program
Customer
Partner
Employee
About juzhang
All community
Articles
juzhang
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Show
only
|
Search instead for
Did you mean:
LIVEcommunity
About juzhang
05-30-2023
juzhang
since
10-24-2021
L2 Linker
4
Posts
0
Likes
0
Solutions
May 30, 2023
Last Visited
User Activity
User Profile
Latest posts by juzhang
Subject
Views
Posted
无法访问Prisma云计算部分,出现错误 "您的Prisma云计算控制台配置失败。请联系您的Palo Alto Networks客户服务团队"
配置和实施
276
01-19-2023
04:09 AM
规则名称为 "bioc.vulnerable_driver_dropped_$name "的BTP警报是否为假阳性检测?
配置和实施
284
01-19-2023
03:53 AM
Cortex XDR云的状态和维护活动
配置和实施
256
01-19-2023
03:39 AM
如何提出功能要求
配置和实施
281
01-19-2023
01:41 AM
View All
My LIVEcommunity Articles Contributions
Subject
Likes
Author
Latest Post
无法访问Prisma云计算部分,出现错误 "您的Prisma云计算控制台配置失败。请联系您的Palo Alto Networks客户服务团队"
配置和实施
0
juzhang
01-19-2023
04:09 AM
by
juzhang
规则名称为 "bioc.vulnerable_driver_dropped_$name "的BTP警报是否为假阳性检测?
配置和实施
0
juzhang
01-19-2023
03:53 AM
by
juzhang
Cortex XDR云的状态和维护活动
配置和实施
0
juzhang
01-19-2023
03:39 AM
by
juzhang
如何提出功能要求
配置和实施
0
juzhang
01-19-2023
01:41 AM
by
juzhang
View All
User Badges
View All
Community Statistics
Member Since
10-24-2021
08:21 PM
Date Last Visited
05-30-2023
02:25 AM
Posts
4
Latest Contributions by juzhang
Topics juzhang has Participated In
Latest Contributions by juzhang
无法访问Prisma云计算部分,出现错误 "您的Prisma云计算控制台配置失败。请联系您的Palo Alto Networks客户服务团队"
by
juzhang
in
配置和实施
01-19-2023
04:09 AM
01-19-2023
04:09 AM
现象: 新租户拥有活跃的Prisma云和计算许可证。 用户有系统管理权限。 然而,用户无法访问Prisma云计算部分,出现错误 "您的Prisma云计算控制台配置失败。请联系您的Palo Alto Networks客户服务团队"。 环境: Prisma Cloud Enterprise Edition (SAAS) 原因: 这很可能是租户ID在后台的CSP ID问题。 解决方案: 通过PCSUP(JIRA)与工程团队联系,更新面临该问题的相关租户ID的CSP ID。 这将更新后台的计算模块以解决这个问题。
... View more
规则名称为 "bioc.vulnerable_driver_dropped_$name "的BTP警报是否为假阳性检测?
by
juzhang
in
配置和实施
01-19-2023
03:53 AM
01-19-2023
03:53 AM
总结: 这篇文章描述了BTP警报的情况,它的规则名称如下。 bioc.vulnerable_driver_dropped_$name bioc.sync.vulnerable_driver_loaded_$name bioc.sync.vulnerable_driver_by_original_name_loaded_$name bioc.sync.vulnerable_driver_by_signer_name_loaded_$name bioc.sync.malicious_driver_by_signer_name_loaded_$name bioc.sync.malicious_driver_by_original_name_loaded__$name 环境: Cortex XDR for Windows Behavioral Threat Protection (BTP) 答案: 这不是一个假阳性检测。 这是一个易受攻击的驱动程序,正在被客户机器上的一个应用程序使用。所以我们阻止了它。 这个驱动程序可以被攻击者滥用,以获得权限的提升。 注意:如果一个规则名称有这些内容,它不是一个假阳性。它们也是由有漏洞的驱动文件引起的。 bioc.vulnerable_driver_dropped_$name bioc.sync.vulnerable_driver_loaded_$name bioc.sync.vulnerable_driver_by_original_name_loaded_$name bioc.sync.vulnerable_driver_by_signer_name_loaded_$name bioc.sync.malicious_driver_by_signer_name_loaded_$name bioc.sync.malicious_driver_by_original_name_loaded__$name
... View more
Cortex XDR云的状态和维护活动
by
juzhang
in
配置和实施
01-19-2023
03:39 AM
01-19-2023
03:39 AM
关于Cortex XDR状态和计划维护活动的信息可以在以下网站找到: https://status.paloaltonetworks.com 该页面提供Palo Alto Networks云服务的状态信息。这意味着你也能找到其他云服务的信息,如Cortex数据湖和云身份引擎。 其他信息 状态页面的右上角是订阅更新的选项,它将有以下选项。 当Palo Alto Networks云服务创建、更新或解决一个事件时,获得电子邮件通知。 每当Palo Alto Networks云服务创建或解决一个事件时,获得文本信息通知 获取Atom Feed或RSS Feed
... View more
如何提出功能要求
by
juzhang
in
配置和实施
01-19-2023
01:41 AM
01-19-2023
01:41 AM
客户的任何产品功能要求都应该被引导到他们的SE(销售工程师)那里。 新的请求可以被提交和实施,待定的请求可以在下面的链接中查看。 有关功能请求的任何信息都不应与客户分享,任何疑问都应直接向SE提出。 http://intranet2.paloaltonetworks.local/requests/
... View more
Contact Me
Online Status
Offline
Date Last Visited
05-30-2023
02:25 AM
Latest Tags
No tags yet