Alto MS Series User Manual Page 61

  • Download
  • Add to my manuals
  • Print
  • Page
    / 108
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 60
Getting Started Guide 57
Protect Your Network Against Threats Enable WildFire
For more information on WildFire, refer to the Palo Alto Networks WildFire Administrator’s Guide.
Step 3 Set up a file blocking profile to forward
files to WildFire.
1. Select Objects > Security Profiles > File Blocking and click
Add.
2. Enter a
Name and optionally a Description for the profile.
3. Click
Add to create a forwarding rule and enter a name.
4. In the
Action column, select forward.
5. Leave the other fields set to
any to forward any supported file
type from any application.
6. Click
OK to save the profile.
Step 4 Attach the file blocking profile to the
security policies that allow access to the
Internet.
1. Select
Policies > Security and either select an existing policy or
create a new policy as described in Create Security Rules.
2. Click the
Actions tab within the security policy.
3. In the Profile Settings section, click the drop-down and select
the file blocking profile you created for WildFire forwarding. (If
you don’t see a drop-down for selecting a profile, select
Profiles
from the Profile Type drop-down.
Step 5 Save the configuration. Click
Commit.
Step 6 Verify that the firewall is forwarding files
to WildFire.
1. Select
Monitor > Logs > Data Filtering.
2. Check the
Action column for the following actions:
Forward— Indicates that the file was successfully forwarded
by the file blocking profile attached to the security policy.
Wildfire-upload-successIndicates that the file was sent to
WildFire. This means the file is not signed by a trusted file
signer and it has not been previously analyzed by WildFire.
Wildfire-upload-skip—Indicates that the file was identified
as eligible to be sent to WildFire by a file blocking
profile/security policy, but did not need to be analyzed by
WildFire because it has already been analyzed previously. In
this case, the action will display as
forward in the Data
Filtering log because it was a valid forward action, but it was
not sent to WildFire and analyzed because the file has already
been sent to the WildFire cloud from another session,
possibly from another firewall.
3. View the WildFire logs by selecting
Monitor > Logs > WildFire
Submissions
. If new WildFire logs appear, the firewall is
successfully forwarding files to WildFire and WildFire is
returning file analysis reports.
Enable WildFire (Continued)
Page view 60
1 2 ... 56 57 58 59 60 61 62 63 64 65 66 ... 107 108

Comments to this Manuals

No comments