This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

TOR Traffic

Hi,

We have deployed a block rule in firewall (Palo ALto) for a internal IP. I could see deny logs as well as allow logs for the same IP to different target addresses(In SIEM),could any one please reply,what could be the reason behind this.

 

Allow:- I could see 54 logs for different target address

Deny:- I could see 26 logs for different target address

 



This thread was automatically locked due to age.