Advanced WildFire Powered by Precision AI™
View WildFire Logs and Analysis Reports (Cloud Management)
Table of Contents
Expand All
|
Collapse All
Advanced WildFire
-
-
- Forward Files for Advanced WildFire Analysis
- Manually Upload Files to the WildFire Portal
- Forward Decrypted SSL Traffic for Advanced WildFire Analysis
- Enable Advanced WildFire Inline Cloud Analysis
- Enable Advanced WildFire Inline ML
- Enable Hold Mode for Real-Time Signature Lookup
- Configure the Content Cloud FQDN Settings
- Sample Removal Request
- Firewall File-Forwarding Capacity by Model
-
-
-
- set deviceconfig cluster
- set deviceconfig high-availability
- set deviceconfig setting management
- set deviceconfig setting wildfire
- set deviceconfig system eth2
- set deviceconfig system eth3
- set deviceconfig system panorama local-panorama panorama-server
- set deviceconfig system panorama local-panorama panorama-server-2
- set deviceconfig system update-schedule
- set deviceconfig system vm-interface
-
- clear high-availability
- create wildfire api-key
- delete high-availability-key
- delete wildfire api-key
- delete wildfire-metadata
- disable wildfire
- edit wildfire api-key
- load wildfire api-key
- request cluster decommission
- request cluster reboot-local-node
- request high-availability state
- request high-availability sync-to-remote
- request system raid
- request wildfire sample redistribution
- request system wildfire-vm-image
- request wf-content
- save wildfire api-key
- set wildfire portal-admin
- show cluster all-peers
- show cluster controller
- show cluster data migration status
- show cluster membership
- show cluster task
- show high-availability all
- show high-availability control-link
- show high-availability state
- show high-availability transitions
- show system raid
- submit wildfire local-verdict-change
- show wildfire
- show wildfire global
- show wildfire local
- test wildfire registration
View WildFire Logs and Analysis Reports (Cloud Management)
If you’re using Panorama to manage Prisma Access,, you can follow the process
below to access content in Prisma Access or toggle over to the PAN-OS
tab and follow the guidance there.
- Use the credentials associated with your Palo Alto Networks support account and log in to the Strata Cloud Manager application on the hub.For more information on using Activity, refer to the Log Viewer.
- Filter threat logs to display your WildFire sample submissions in Prisma Access.
- Select Incidents and AlertsLog Viewer.
- Change the log type to be searched to Threat.
- Create a search filter using the WildFire subtype used to indicate a WildFire sample submission using the query builder. For example, you can use sub_type.value = 'wildfire' to view your WildFire logs. Adjust the search criteria as necessary for your search, including additional query parameters (such as the severity level and action) along with a date range.To view the WildFire analysis report, you must log in to the WildFire portal and use the hash value or file name to retrieve the report file. For more information, refer to View Reports on the WildFire Portal.
- Run the query after you have finished assembling your filter.
- Select a log entry from the results to view the log details.
- The threat log Subtype is displayed in the General pane along with other information about the sample. Other relevant details about the threat are displayed in their corresponding windows.