Variations on a Theme

In the music world, variations on a theme is loosely defined as, “material repeated but in an altered form.” This is an apt description of the regional findings from the latest Application Usage and Threat Report published a few weeks ago. There are regional differences when compared to the global dataset, but they are very subtle, a fact that can be partially attributed to the size of the sample. The data encompasses more than 3,000 networks (regional breakdown shown in the graphic below) where we analyzed 1,395 applications consuming 12.6 petabytes of bandwidth and more than 5,000 unique threats generating 260 million associated logs.

…Continue reading

Share

Applications and Threats – Analyzed Together for the First Time.

This edition of the Application Usage and Threat Report marks an evolution and an associated name change. For the first time, the report maps application usage and threat activity as seen on enterprise networks between May and December 2012. This report summarizes network traffic assessments performed on more than 3,000 networks, encompassing 1,395 applications, 12.6 petabytes of bandwidth, 5,307 unique threats and 264 million threat logs.

…Continue reading

Share

posted by: on January 1, 2013 10:56 AM


filed in: Uncategorized

App-ID Cache Pollution Update

March 27, 2013 Update: I wanted give you all an update to the App-ID cache pollution issue that was discovered earlier this year. First off, we should have managed this issue more effectively – we learned from the experience and we will be customer-focused in our comments moving forward. As promised back in January, the App-ID cache function in PAN-OS is no longer used for security policy.

  • PAN-OS 5.0.2 and subsequent releases posted to support site on or after January 15, 2013.
  • PAN-OS 4.1.11 and subsequent releases posted to support site on or after February 6, 2013.

We still recommend that you use the following security policy best-practices:

  • For applications that you are enabling, you should assign a specific port (default or custom).
  • For applications that you explicitly want to block, expand the policy to any port, to maximize the identification footprint.

For any further updates, please work with your local Palo Alto Networks sales team and channel partner.

Nir …Continue reading

Share

Older posts →