Hi,
We have deployed a block rule in firewall (Palo ALto) for a internal IP. I could see deny logs as well as allow logs for the same IP to different target addresses(In SIEM),could any one please reply,what could be the reason behind this.
Allow:- I could see 54 logs for different target address
Deny:- I could see 26 logs for different target address
This thread was automatically locked due to age.