paloaltonetworks:configuration:http_calls
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| paloaltonetworks:configuration:http_calls [2020/05/30 15:51] – bstafford | paloaltonetworks:configuration:http_calls [2022/11/23 12:49] (current) – external edit 127.0.0.1 | ||
|---|---|---|---|
| Line 4: | Line 4: | ||
| ===== Slack ===== | ===== Slack ===== | ||
| - | [[https:// | + | [[https:// |
| [[https:// | [[https:// | ||
| Line 15: | Line 15: | ||
| ==== PAN-OS Options for HTTP Requests ==== | ==== PAN-OS Options for HTTP Requests ==== | ||
| + | - On '' | ||
| + | - Add a new server with the following values | ||
| + | * **Name** : hooks.slack (or anything you like) | ||
| + | * **Address** : hooks.slack.com | ||
| + | * **Protocol** : HTTPS | ||
| + | * **Port** : 443 | ||
| + | * **TLS Version** : 1.2 | ||
| + | * **Certificate Profile** : None | ||
| + | * **HTTP Method** : POST | ||
| + | * **Username** : Blank | ||
| + | * **Password** : Blank | ||
| + | - You then set a payload format. You can create a seperate server profile for each type of message though if you want to get very specific. Each payload format consists of the following | ||
| + | * **Name** : describe the action (e.g. // | ||
| + | * **URI Format** : / | ||
| + | * **HTTP Headers** : | ||
| + | * **Header** : content-type | ||
| + | * **Value** : application/ | ||
| + | * **Payload** : < | ||
| + | " | ||
| + | { | ||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | } | ||
| + | ] | ||
| + | }</ | ||
| + | |||
| === System Logs === | === System Logs === | ||
| ^ Variable Name ^ Example Output ^ | ^ Variable Name ^ Example Output ^ | ||
| Line 148: | Line 181: | ||
| ] | ] | ||
| }</ | }</ | ||
| - | === System === | + | |
| + | === System | ||
| + | < | ||
| + | " | ||
| + | { | ||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | } | ||
| + | ] | ||
| + | }</ | ||
| + | |||
| + | === System - Critical Event=== | ||
| + | < | ||
| + | " | ||
| + | { | ||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | } | ||
| + | ] | ||
| + | }</ | ||
| + | |||
| + | === System - VPN Down === | ||
| + | < | ||
| + | " | ||
| + | { | ||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | } | ||
| + | ] | ||
| + | }</ | ||
| + | |||
| + | === System - VPN Up === | ||
| + | < | ||
| + | " | ||
| + | { | ||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | |||
| + | " | ||
| + | } | ||
| + | ] | ||
| + | }</ | ||
| === Threat - Alert on Threat Detected === | === Threat - Alert on Threat Detected === | ||
| < | < | ||
paloaltonetworks/configuration/http_calls.1590853918.txt.gz · Last modified: (external edit)
