<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Palo Alto Networks Research Center</title>
	<atom:link href="http://www.paloaltonetworks.com/researchcenter/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.paloaltonetworks.com/researchcenter</link>
	<description>The Palo Alto Networks Research Center Blog</description>
	<lastBuildDate>Fri, 05 Mar 2010 22:01:02 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on Who’s the best illusionist? by Alfred</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/10/who%e2%80%99s-the-best-illusionist/comment-page-1/#comment-1326</link>
		<dc:creator>Alfred</dc:creator>
		<pubDate>Fri, 05 Mar 2010 22:01:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/researchcenter/?p=864#comment-1326</guid>
		<description>Thanks for your question Peter. TippingPoint describes DVLabs as a &quot;premier research organization for vulnerability analysis and discovery&quot;. I separated TippingPoint&#039;s Zero Day Initiative from the comparison because I wanted a like-for-like comparison of just the internal research organizations from all of the top IPS companies. There is no other major IPS company that pays for vulnerabilities like TippingPoint, so to compare all other vendors to it wouldn&#039;t be right.</description>
		<content:encoded><![CDATA[<p>Thanks for your question Peter. TippingPoint describes DVLabs as a &#8220;premier research organization for vulnerability analysis and discovery&#8221;. I separated TippingPoint&#8217;s Zero Day Initiative from the comparison because I wanted a like-for-like comparison of just the internal research organizations from all of the top IPS companies. There is no other major IPS company that pays for vulnerabilities like TippingPoint, so to compare all other vendors to it wouldn&#8217;t be right.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Is UTM an Enterprise Product? by Matt</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/10/is-utm-an-enterprise-product/comment-page-1/#comment-1297</link>
		<dc:creator>Matt</dc:creator>
		<pubDate>Thu, 04 Mar 2010 16:56:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/researchcenter/?p=870#comment-1297</guid>
		<description>Juniper did poorly in one test - that does not remove them from being a leader in the IPS market. I cannot comment on their results without more knowledge of the test environment, which platforms, the rules of engagement etc. Sorry.
Matt</description>
		<content:encoded><![CDATA[<p>Juniper did poorly in one test &#8211; that does not remove them from being a leader in the IPS market. I cannot comment on their results without more knowledge of the test environment, which platforms, the rules of engagement etc. Sorry.<br />
Matt</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Can Stateful Inspection Evolve? by Matt</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2010/01/can-stateful-inspection-evolve-2/comment-page-1/#comment-1296</link>
		<dc:creator>Matt</dc:creator>
		<pubDate>Thu, 04 Mar 2010 16:52:28 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/wp2/?p=805#comment-1296</guid>
		<description>Victor - thanks for the support. We continue to make progress great strides in demonstrating how we can help customers identify and control applications more effectively than any other product on the market. Do not let this award sway you. 

Matt</description>
		<content:encoded><![CDATA[<p>Victor &#8211; thanks for the support. We continue to make progress great strides in demonstrating how we can help customers identify and control applications more effectively than any other product on the market. Do not let this award sway you. </p>
<p>Matt</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Can Stateful Inspection Evolve? by victorhud</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2010/01/can-stateful-inspection-evolve-2/comment-page-1/#comment-1282</link>
		<dc:creator>victorhud</dc:creator>
		<pubDate>Wed, 03 Mar 2010 15:40:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/wp2/?p=805#comment-1282</guid>
		<description>Hi:
I reviewed the SC Magazine Awards 2010, and the Enterprise Firewall winner was ... CheckPoint? What?.

I dont know how they evaluate the appliances, i believe that the winner must be PA-4000, the xx-ID its a great innovation in Firewall technology.

When will begin the NGFW to replace the stateful inspection firewall only?

When the sc magazines editor read Gartners recommendations :)</description>
		<content:encoded><![CDATA[<p>Hi:<br />
I reviewed the SC Magazine Awards 2010, and the Enterprise Firewall winner was &#8230; CheckPoint? What?.</p>
<p>I dont know how they evaluate the appliances, i believe that the winner must be PA-4000, the xx-ID its a great innovation in Firewall technology.</p>
<p>When will begin the NGFW to replace the stateful inspection firewall only?</p>
<p>When the sc magazines editor read Gartners recommendations <img src='http://www.paloaltonetworks.com/researchcenter/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Who’s the best illusionist? by Peter</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/10/who%e2%80%99s-the-best-illusionist/comment-page-1/#comment-1143</link>
		<dc:creator>Peter</dc:creator>
		<pubDate>Thu, 25 Feb 2010 07:17:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/researchcenter/?p=864#comment-1143</guid>
		<description>Why do you exclude Zero Day Initiative? Aren´t those vulnerabilities discovered by TippingPoint´s initiative? Can you provide the number of Zero Day Initiative discovered vulnerabilities? Thanks</description>
		<content:encoded><![CDATA[<p>Why do you exclude Zero Day Initiative? Aren´t those vulnerabilities discovered by TippingPoint´s initiative? Can you provide the number of Zero Day Initiative discovered vulnerabilities? Thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Wireshark Plugin for Mariposa Botnet Command and Control by Week 6 in Review &#8211; 2010 &#124; Infosec Events</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/10/mariposa-tool/comment-page-1/#comment-995</link>
		<dc:creator>Week 6 in Review &#8211; 2010 &#124; Infosec Events</dc:creator>
		<pubDate>Mon, 15 Feb 2010 06:04:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/researchcenter/?p=842#comment-995</guid>
		<description>[...] Wireshark Plugin for Mariposa Botnet Command and Control &#8211; paloaltonetworks.com Yamata Li has developed a Wireshark plugin that will allow you to view obfuscated pcaps of traffic from a Mariposa infected client. [...]</description>
		<content:encoded><![CDATA[<p>[...] Wireshark Plugin for Mariposa Botnet Command and Control &#8211; paloaltonetworks.com Yamata Li has developed a Wireshark plugin that will allow you to view obfuscated pcaps of traffic from a Mariposa infected client. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Is UTM an Enterprise Product? by someone</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/10/is-utm-an-enterprise-product/comment-page-1/#comment-975</link>
		<dc:creator>someone</dc:creator>
		<pubDate>Sun, 14 Feb 2010 04:06:30 +0000</pubDate>
		<guid isPermaLink="false">http://www.paloaltonetworks.com/researchcenter/?p=870#comment-975</guid>
		<description>I am wondering if you would still consider the Juniper IDP blade a &quot;best of breed IPS&quot; given the NSS Labs results http://nsslabs.com/IPS-2009-Q4 ? Also will you be submitting the Palo Alto appliances to the same test ?</description>
		<content:encoded><![CDATA[<p>I am wondering if you would still consider the Juniper IDP blade a &#8220;best of breed IPS&#8221; given the NSS Labs results <a href="http://nsslabs.com/IPS-2009-Q4" rel="nofollow">http://nsslabs.com/IPS-2009-Q4</a> ? Also will you be submitting the Palo Alto appliances to the same test ?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Beyond Ports and Protocols by NoOneImportant</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/09/beyond-ports-and-protocols/comment-page-1/#comment-897</link>
		<dc:creator>NoOneImportant</dc:creator>
		<pubDate>Tue, 22 Sep 2009 16:22:34 +0000</pubDate>
		<guid isPermaLink="false">http://blog.paloaltonetworks.com/?p=765#comment-897</guid>
		<description>I agree so far the old firewalls and IPS and just not cut out for the job.
To control Web traffic (HTTP/HTTPS) you need a Web proxy like a BlueCoat/Websense.
To control SSH traffic you need a SSH proxy like a McAfee Sidewinder.
To control DNS traffic you need a DNS proxy like a InfoBlox/BlueCat.
To control SMTP traffic you need a Mail Proxy like a ProofPoint/IronMail.
To control IM traffic you need a IM proxy like a Barracuda IM FW.
and the list goes on and on......
or you can buy a Palo Alto....tada.</description>
		<content:encoded><![CDATA[<p>I agree so far the old firewalls and IPS and just not cut out for the job.<br />
To control Web traffic (HTTP/HTTPS) you need a Web proxy like a BlueCoat/Websense.<br />
To control SSH traffic you need a SSH proxy like a McAfee Sidewinder.<br />
To control DNS traffic you need a DNS proxy like a InfoBlox/BlueCat.<br />
To control SMTP traffic you need a Mail Proxy like a ProofPoint/IronMail.<br />
To control IM traffic you need a IM proxy like a Barracuda IM FW.<br />
and the list goes on and on&#8230;&#8230;<br />
or you can buy a Palo Alto&#8230;.tada.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Balancing the Risks and Benefits of Evasive Applications by Kanwal Sohal</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2009/09/controlling-evasive-applications/comment-page-1/#comment-698</link>
		<dc:creator>Kanwal Sohal</dc:creator>
		<pubDate>Sun, 13 Sep 2009 09:03:37 +0000</pubDate>
		<guid isPermaLink="false">http://blog.paloaltonetworks.com/?p=709#comment-698</guid>
		<description>The challenge with today’s perception of technology is that we should be able to access content and use applications without the fear of compromise and negative publicity. The reality of the matter is collaborative/user installed applications provide significant efficiency gains which cannot be ignored. The users/corporate desire to be better connected with web based applications is not the challenge here but the opportunity for cybercriminals to widen their malware net or infection platforms across the net. We now must provide safe use of such applications without prejudice. Delivering safe use of such applications is about gaining an understanding of the application pipe – “Do I know what is coming into my network vs. the potential associated threat”.</description>
		<content:encoded><![CDATA[<p>The challenge with today’s perception of technology is that we should be able to access content and use applications without the fear of compromise and negative publicity. The reality of the matter is collaborative/user installed applications provide significant efficiency gains which cannot be ignored. The users/corporate desire to be better connected with web based applications is not the challenge here but the opportunity for cybercriminals to widen their malware net or infection platforms across the net. We now must provide safe use of such applications without prejudice. Delivering safe use of such applications is about gaining an understanding of the application pipe – “Do I know what is coming into my network vs. the potential associated threat”.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on McAfee’s Acquisition Reminded Me That Proxies Generally Suck by Matt</title>
		<link>http://www.paloaltonetworks.com/researchcenter/2008/10/mcafee%e2%80%99s-acquisition-reminded-me-that-proxies-generally-suck/comment-page-1/#comment-92</link>
		<dc:creator>Matt</dc:creator>
		<pubDate>Fri, 24 Jul 2009 20:24:59 +0000</pubDate>
		<guid isPermaLink="false">http://securitynirvanablog.wordpress.com/?p=77#comment-92</guid>
		<description>As someone who has actually configured many Sidewinder firewalls, I have to say that you should try to use one before commenting on them.
Yes, application/proxy based firewalls are harder to implement, especially if you are a novice, but Secure/McCrappy makes this pretty straightforward. And yup, there are filters for those protocols you just can&#039;t get to work on a proxy.
The only real issue I have come apon is friggen Skype or FTPS. Skype will work via https, but will still try to hammer it&#039;s way though the firewall on other ports and FTP/FTPS is for the clueless...use SFTP instead.
I can&#039;t say much for other proxy based firewalls, as there really aren&#039;t any.</description>
		<content:encoded><![CDATA[<p>As someone who has actually configured many Sidewinder firewalls, I have to say that you should try to use one before commenting on them.<br />
Yes, application/proxy based firewalls are harder to implement, especially if you are a novice, but Secure/McCrappy makes this pretty straightforward. And yup, there are filters for those protocols you just can&#8217;t get to work on a proxy.<br />
The only real issue I have come apon is friggen Skype or FTPS. Skype will work via https, but will still try to hammer it&#8217;s way though the firewall on other ports and FTP/FTPS is for the clueless&#8230;use SFTP instead.<br />
I can&#8217;t say much for other proxy based firewalls, as there really aren&#8217;t any.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
