<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Can NGFW Block Trafic Depending on the client and source IP in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234569#M6116</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We have a requirement to control connections from local virtual machines (VMs) to public endpoints. Specifically, we need to enforce access policies based on:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;The type of client submitting the request (e.g., web browser vs. desktop tool)&lt;/LI&gt;&lt;LI&gt;The IP address of the VM from which the request originates&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible to implement such granular controls?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your insights!&lt;/P&gt;</description>
    <pubDate>Wed, 23 Jul 2025 19:37:32 GMT</pubDate>
    <dc:creator>pan_iv</dc:creator>
    <dc:date>2025-07-23T19:37:32Z</dc:date>
    <item>
      <title>Can NGFW Block Trafic Depending on the client and source IP</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234569#M6116</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We have a requirement to control connections from local virtual machines (VMs) to public endpoints. Specifically, we need to enforce access policies based on:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;The type of client submitting the request (e.g., web browser vs. desktop tool)&lt;/LI&gt;&lt;LI&gt;The IP address of the VM from which the request originates&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it possible to implement such granular controls?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your insights!&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jul 2025 19:37:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234569#M6116</guid>
      <dc:creator>pan_iv</dc:creator>
      <dc:date>2025-07-23T19:37:32Z</dc:date>
    </item>
    <item>
      <title>Re: Can NGFW Block Trafic Depending on the client and source IP</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234662#M6123</link>
      <description>&lt;P&gt;Source IP address is easy, just put that in a security rule.&lt;/P&gt;
&lt;P&gt;You should be able to create a custom application with signatures based on header information to identify the type of client. You would just have to inspect the traffic to find something to match that differentiates between browser vs tool.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jul 2025 21:28:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234662#M6123</guid>
      <dc:creator>rmfalconer</dc:creator>
      <dc:date>2025-07-24T21:28:35Z</dc:date>
    </item>
    <item>
      <title>Re: Can NGFW Block Trafic Depending on the client and source IP</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234686#M6128</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/55733"&gt;@rmfalconer&lt;/a&gt;&amp;nbsp; suggestion is good as the User-Agent header can be used in such cases but don't think that this is a good security as there are dedicated WAF systems that use javascripts to verify if a user is bot/tool or web browser like the one in Prisma Cloud product.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For custom signatures you can take a look at:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/general-articles/how-to-write-palo-alto-networks-custom-vulnerability-and/ta-p/1228494" target="_blank"&gt;How to Write Palo Alto Networks Custom Vulnerability and Application Signatures with Examples | Palo Alto Networks&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 25 Jul 2025 07:37:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/can-ngfw-block-trafic-depending-on-the-client-and-source-ip/m-p/1234686#M6128</guid>
      <dc:creator>nikoolayy1</dc:creator>
      <dc:date>2025-07-25T07:37:05Z</dc:date>
    </item>
  </channel>
</rss>

