<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: New Feature Request in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41139#M30218</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Whats the possibility to get some GUI grouping similar to Juniper NSM (and others for that matter)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So one can expand/compact each group of rules (for example if you group the rules as inbound rules to each zone).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The look would be something like:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE1&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE2&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE3&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;click on the DMZ-ZONE1 and you will see the rules you need to see:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[-] DMZ-ZONE1&lt;/P&gt;&lt;P&gt;rule1&lt;/P&gt;&lt;P&gt;rule2&lt;/P&gt;&lt;P&gt;rule3&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE2&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE3&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 14 Jan 2012 08:52:34 GMT</pubDate>
    <dc:creator>mikand</dc:creator>
    <dc:date>2012-01-14T08:52:34Z</dc:date>
    <item>
      <title>New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41137#M30216</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I don't know if this would be classified as a new feature, but it would be nice if on the policies/security if there was a separation of the inbound rules and the outbound rules.&amp;nbsp; Right now these rules are all thrown in the same view.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jan 2012 08:40:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41137#M30216</guid>
      <dc:creator>snormoyle</dc:creator>
      <dc:date>2012-01-13T08:40:54Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41138#M30217</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In PAN-OS 4.0 and higher, there is a tag column that you can use to group rules together.&amp;nbsp; Simply add 'inbound' as the tag for all inbound rules, and so on.&amp;nbsp; Then you can filter on the tag to display only the rules you want.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jan 2012 22:33:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41138#M30217</guid>
      <dc:creator>rmonvon</dc:creator>
      <dc:date>2012-01-13T22:33:23Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41139#M30218</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Whats the possibility to get some GUI grouping similar to Juniper NSM (and others for that matter)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So one can expand/compact each group of rules (for example if you group the rules as inbound rules to each zone).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The look would be something like:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE1&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE2&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE3&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;click on the DMZ-ZONE1 and you will see the rules you need to see:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[-] DMZ-ZONE1&lt;/P&gt;&lt;P&gt;rule1&lt;/P&gt;&lt;P&gt;rule2&lt;/P&gt;&lt;P&gt;rule3&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE2&lt;/P&gt;&lt;P&gt;[+] DMZ-ZONE3&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 08:52:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41139#M30218</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2012-01-14T08:52:34Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41140#M30219</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you tried using the search bar and/or 'Filter' feature in 4.0? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It accomplishes what you're suggesting here through a search function rather than a grouping function, but is just as effective.&amp;nbsp; Hover over and click the drop down arrow in say the dest zone field for "DMZ-ZONE1" and you'll see a "Filter" button.&amp;nbsp; Click this and a query will appear in the search field at top "(to/member eq 'DMZ-ZONE1')".&amp;nbsp; Click the Go (green arrow to the right) and you've filtered on all rules for dest zone DMZ-ZONE1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You could equally just type "DMZ-ZONE1" in the search field and find all rules with DMZ-ZONE1 in it, source or dest.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, tagging works great too, and is a great way to search and filter rules. It's doubtful that expand/collapsed rule groups are on the roadmap, but if I had my choice between collapsible rule groups and a search bar with filters, I'd take the flexibility of the search bar 8 days a week.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 14 Jan 2012 23:39:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41140#M30219</guid>
      <dc:creator>spolo</dc:creator>
      <dc:date>2012-01-14T23:39:22Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41141#M30220</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The search thingy doesnt work since you need to tag EACH AND EVERY rule and thats just retarded (or at least not as fun as if you just drag and drop the rule to the correct grouping directly in the view of security policies).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But dont get me wrong, the tag method is better than nothing but it would be far better if one could group directly in the GUI aswell.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this perhaps a patent limitation that stops PAN from being able to fix grouping in the GUI directly in the view of security policies?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 15 Jan 2012 09:45:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41141#M30220</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2012-01-15T09:45:59Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41142#M30221</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I can completely see the idea behind the tagging and searching based on tags etc but I think grouping serves a different purpose and would be a great addition. I really don't think it would be a case of either or.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you're working with a long rule base if you are working through where traffic would get allowed or denied the ability to remove or return a group of rules from view at the click of a button is very handy. Yes, the rules can achieve the same but there is more clicking or changing of search expression to add 'not' for example and you have to wait for the web page to update which hasn't always been that quick.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I know there is the risk that it is seen as a copy of Check Point or Juniper etc but loads of applications allow such behaviour and not just firewall interfaces. It would certainly be a shame is discount it entirely.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Jan 2012 12:35:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41142#M30221</guid>
      <dc:creator>UKRB</dc:creator>
      <dc:date>2012-01-16T12:35:51Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41143#M30222</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your inputs.&amp;nbsp; Please submit a feature request with your local Palo Alto account team so they can track it and keep you updated.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 16 Jan 2012 15:14:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41143#M30222</guid>
      <dc:creator>rmonvon</dc:creator>
      <dc:date>2012-01-16T15:14:14Z</dc:date>
    </item>
    <item>
      <title>Re: New Feature Request</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41144#M30223</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I just added a possible alternative -&amp;gt; &lt;A _jive_internal="true" href="https://live.paloaltonetworks.com/docs/DOC-5108"&gt;https://live.paloaltonetworks.com/docs/DOC-5108&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 May 2013 17:21:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/new-feature-request/m-p/41144#M30223</guid>
      <dc:creator>K_Celenza</dc:creator>
      <dc:date>2013-05-17T17:21:26Z</dc:date>
    </item>
  </channel>
</rss>

