Appendix

Appendix I

The following fields have been renamed:

Previously Used Field

Modified Field

Events

packet_count

packet

PAN-OS v8.1 TUNNEL and SCTP, PAN-OS v9.0 TUNNEL and SCTP, PAN-OS v9.1 TUNNEL, PAN-OS v10.1 TUNNEL, TRAFFIC, and SCTP

tunnel

tunnel_type

PAN-OS v10.0 DECRYPTION

hash

partial_hash

PAN-OS v10.0 THREAT

groupxff_address

xff_address

PAN-OS v10.0 THREAT

source_external_dynamic_list

source_list

PAN-OS v10.1 TRAFFIC, THREAT, TUNNEL, and DECRYPTION

destination_external_dynamic_list

destination_list

PAN-OS v10.1 TRAFFIC, THREAT, TUNNEL, and DECRYPTION

source_dynamic_address_group

source_policy_group

PAN-OS v10.1 TRAFFIC, THREAT, and DECRYPTION

destination_dynamic_address _group

destination_policy_group

PAN-OS v10.1 TRAFFIC, THREAT, and DECRYPTION

link_change_count

link_count

PAN-OS v10.1 TRAFFIC

source_country

source_location

PAN-OS v10.1 TRAFFIC

destination_country

destination_location

PAN-OS v10.1 TRAFFIC

severity

log_level

PAN-OS v10.1 THREAT, GTP, and TUNNEL

domain_edl

domain_list

PAN-OS v10.1 THREAT

sctp_association-id

sctp_association_id

PAN-OS v8.1, v9.0, v10.0 SCTP and v10.1 TRAFFIC and THREAT

serial_number

device_serial_number

PAN-OS v10.0 Global Protect, PAN-OS v10.1 TRAFFIC, THREAT, and Global Protect

application_saas

is_saas_application

PAN-OS v10.1 TRAFFIC

application_sanctioned_state

is_application_sanctioned

PAN-OS v10.1 TRAFFIC

application_sanctioned_state

is_application_sanctioned

PAN-OS v10.1 TRAFFIC

Appendix II

The command restarts the normalization service of Collector.

Note

Restarting the normalization service of Collector requires root access.

Version 6.12.2 and above

# /opt/logpoint/embedded/bin/sv restart /opt/immune/etc/service/norm*

Versions below 6.12.2

# sv restart /opt/immune/etc/service/norm*

Helpful?

We are glad this guide helped.


Please don't include any personal information in your comment

Contact Support