paloaltonetworks:logs:syslog:url-filtering
Table of Contents
URL Filtering Syslog
Medium
( subtype eq url-filtering ) and ( severity eq medium )
( eventid eq url-cloud-connection-failure ) and ( description contains 'CURL ERROR: bind failed with errno 124: Address family not supported by protocol' )
( eventid eq url-cloud-connection-failure ) and ( description contains 'CURL ERROR: bind failed with errno 97: Address family not supported by protocol' )
( eventid eq url-cloud-connection-failure ) and ( description contains 'CURL ERROR: Could not resolve host: s0000.urlcloud.paloaltonetworks.com' )
( eventid eq url-cloud-connection-failure ) and ( description contains 'CLOUD CONNECTION: cloud not OK' )
( eventid eq cloud-election ) and ( description contains 'CLOUD ELECTION: cannot elect a cloud' )
( eventid eq url-cloud-connection-failure ) and ( description contains 'Cloud is not ready, There was no update from the cloud in the last 90 minutes.' )
( eventid eq url-download-failure ) and ( description contains 'PAN-DB cloud list loading failed (ERROR:Failed binding local connection end).' )
( eventid eq url-download-failure ) and ( description contains 'PAN-DB cloud list loading failed (ERROR:Couldn\'t resolve host name).' )
( eventid eq starts-from-empty-seed ) and ( description contains 'Failed to load the URL seed database, starting with an empty database.' )
( eventid eq starts-from-download-seed ) and ( description contains 'Failed to start with the backup seed (seed may be corrupted).' )
Informational
( subtype eq url-filtering ) and ( severity eq informational )
( eventid eq upgrade-url-database-success ) and ( description contains 'PAN-DB was upgraded to version 20200509.20138.' )
( eventid eq url-backup-seed-success ) and ( description contains 'Backup of PAN-DB finished successfully.' )
( eventid eq cloud-election ) and ( description contains 'CLOUD ELECTION: serverlist.urlcloud.paloaltonetworks.com IP: 11.22.33.44 was elected, measured alive test 18849583.' )
( eventid eq url-cloud-connection-failure ) and ( description contains 'Failed to open connection with the cloud after 10 consecutive tries.' )
( eventid eq rfs-process-stopped ) and ( description contains 'PAN-DB refresh agent is going down.' )
( eventid eq url-engine-starts ) and ( description contains 'PAN-DB engine started.' )
( eventid eq url-engine-starts ) and ( description contains 'PAN-DB engine is starting...' )
( eventid eq starts-from-empty-seed ) and ( description contains 'Starting with an empty SEED.' )
paloaltonetworks/logs/syslog/url-filtering.txt · Last modified: by 127.0.0.1
