<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Policy Based Forwarding PBF based on destination country or self defined region? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46359#M34083</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bspilde,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Its correct, regions are not supported in PBF rules. Kindly follow FR ID: 1497.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can see "Region" as source or destination in configuration guide. But it would be just a typo or error. Kindly ignore it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hardik Shah&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 15 Nov 2014 00:19:54 GMT</pubDate>
    <dc:creator>hshah</dc:creator>
    <dc:date>2014-11-15T00:19:54Z</dc:date>
    <item>
      <title>Policy Based Forwarding PBF based on destination country or self defined region?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46356#M34080</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Can this be accomplished without something like a Performance Routing service or hybrid WAN systems a couple companies offer? Is it a roadmap feature of PAN-OS PBF? PBF seems to be one of few things that do NOT support Regions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd like to PBF my connections to Country A through a different path than directly out my Country B firewall to achieve lower latency connections on MPLS.&lt;SPAN style="font-size: 10pt; line-height: 1.5em;"&gt; I'm trying to have fewer devices in my network vs adding more. &lt;/SPAN&gt;&lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://live.paloaltonetworks.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 14 Nov 2014 23:52:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46356#M34080</guid>
      <dc:creator>bspilde</dc:creator>
      <dc:date>2014-11-14T23:52:13Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Based Forwarding PBF based on destination country or self defined region?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46357#M34081</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi &lt;A href="https://live.paloaltonetworks.com/u1/2105"&gt;bspilde&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't think it is currently possible to achieve this. There is a feature request for this :&lt;/P&gt;&lt;P&gt;FR ID: 1497&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can get in touch with your SE to vote for the above feature request.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps !&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 14 Nov 2014 23:55:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46357#M34081</guid>
      <dc:creator>bat</dc:creator>
      <dc:date>2014-11-14T23:55:15Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Based Forwarding PBF based on destination country or self defined region?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46358#M34082</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is a quote from the Help Guide on PAN-OS 6.1 in the PBF section that clearly specifies that Regions is an option for the Destination:&lt;/P&gt;&lt;P class="H3_Head3" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 14pt; font-weight: bold; margin: 17pt 0 7pt;"&gt;&lt;A class="vt-p" name="1857212"&gt;Destination/Application/Service Tab&lt;/A&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Times New Roman'; font-size: 12pt; margin: 0 0 3pt;"&gt;&lt;SPAN style="font-size: 12pt;"&gt;Use the &lt;/SPAN&gt;&lt;SPAN style="font-weight: bold;"&gt;Destination/Application/Service&lt;/SPAN&gt; tab to define the destination settings that will applied to traffic that matches the forwarding rule.&lt;/P&gt;&lt;TABLE cellspacing="0" class="TW_TableWide" style="margin: 10pt 0 12pt; padding: 5pt 6pt 3pt; color: #000000; font-family: Times; font-size: medium;" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857215"&gt;Field&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857217"&gt;Description&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1858250"&gt;Destination Address&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1858252"&gt;Click &lt;/A&gt;&lt;SPAN style="font-weight: bold;"&gt;Add&lt;/SPAN&gt; to add destination addresses, address groups, or regions (default is any). Select from the drop-down list, or click the &lt;SPAN style="font-weight: bold;"&gt;Address&lt;/SPAN&gt;,&lt;SPAN style="font-weight: bold;"&gt;Address Group&lt;/SPAN&gt;, :smileyshocked:&lt;STRONG style="text-decoration: underline;"&gt;&lt;EM&gt;or Regions:smileyshocked: &lt;/EM&gt;&lt;/STRONG&gt;link at the bottom of the drop-down list, and specify the settings.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;Full Section::smileyshocked:&lt;/P&gt;&lt;P class="H2_Head2" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 18pt; font-weight: bold; margin: 22pt 0 5pt;"&gt;&lt;A class="vt-p" name="1864436"&gt;Policy-Based Forwarding Policies&lt;/A&gt;&lt;/P&gt;&lt;P class="NV_Navigation" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 10pt; font-style: italic; font-weight: bold; margin: 0 0 10pt;"&gt;&lt;SPAN class="Wingdings" style="font-family: 'Wingdings 3'; font-size: 10pt; font-style: normal;"&gt;&lt;/SPAN&gt;&lt;A class="vt-p" name="1904481"&gt;Policies &amp;gt; Policy Based Forwarding&lt;/A&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: Palatino; font-size: 10pt; margin: 0 0 3pt;"&gt;&lt;SPAN style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;Normally, when traffic enters the firewall, the ingress interface virtual router dictates the route that determines the outgoing interface and destination security zone based on destination IP address. With policy-based forwarding (PBF), you can specify other information to determine the outgoing interface, including source zone, source address, source user, destination address, destination application, and destination service. The initial session on a given destination IP address and port that is associated with an application will not match an application-specific rule and will be forwarded according to subsequent PBF rules (that do not specify an application) or the virtual router’s forwarding table. All subsequent sessions on that destination IP address and port for the same application will match an application-specific rule. To ensure forwarding through PBF rules, application-specific rules are not recommended.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: Palatino; font-size: 10pt; margin: 0 0 3pt;"&gt;&lt;SPAN style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;When necessary, PBF rules can be used to force traffic through an additional virtual system using the Forward-to-VSYS forwarding action. In this case, it is necessary to define an additional PBF rule that will forward the packet from the destination virtual system out through a particular egress interface on the firewall.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 10pt; margin: 0 0 3pt;"&gt;&lt;A class="vt-p" name="1486462"&gt;For configuration guidelines and information on other policy types, refer to &lt;/A&gt;&lt;A class="vt-p" style="color: #9999cc;" title="Policies and Security Profiles"&gt;“Policies and Security Profiles”&lt;/A&gt;.&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 10pt; margin: 0 0 3pt;"&gt;&lt;A class="vt-p" name="1991302"&gt;For information on defining policies on Panorama, see &lt;/A&gt;&lt;A class="vt-p" style="color: #9999cc;" title="Policies and Security Profiles"&gt;“Defining Policies on Panorama”&lt;/A&gt;.&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 10pt; margin: 0 0 3pt;"&gt;&lt;A class="vt-p" name="1851670"&gt;The following tables describe the policy-based forwarding settings:&lt;/A&gt;&lt;/P&gt;&lt;P class="B1_Bullet_outer" style="margin: 0 0 8pt; color: #000000; font-family: Times; font-size: medium;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;SPAN class="Bullet" style="font-size: 11pt;"&gt;•&lt;/SPAN&gt;&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;A class="vt-p" name="1855270" style="color: #9999cc;" title="Policies and Security Profiles"&gt;“General Tab”&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="B1_Bullet_outer" style="margin: 0 0 8pt; color: #000000; font-family: Times; font-size: medium;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;SPAN class="Bullet" style="font-size: 11pt;"&gt;•&lt;/SPAN&gt;&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;A class="vt-p" name="1858818" style="color: #9999cc;" title="Policies and Security Profiles"&gt;“Source Tab”&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="B1_Bullet_outer" style="margin: 0 0 8pt; color: #000000; font-family: Times; font-size: medium;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;SPAN class="Bullet" style="font-size: 11pt;"&gt;•&lt;/SPAN&gt;&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;A class="vt-p" name="1862197" style="color: #9999cc;" title="Policies and Security Profiles"&gt;“Destination/Application/Service Tab”&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="B1_Bullet_outer" style="margin: 0 0 8pt; color: #000000; font-family: Times; font-size: medium;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;SPAN class="Bullet" style="font-size: 11pt;"&gt;•&lt;/SPAN&gt;&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="B1_Bullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;&lt;A class="vt-p" name="1862201" style="color: #9999cc;" title="Policies and Security Profiles"&gt;“Forwarding Tab”&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="H3_Head3" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 14pt; font-weight: bold; margin: 17pt 0 7pt;"&gt;&lt;A class="vt-p" name="1862600"&gt;General Tab&lt;/A&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 10pt; margin: 0 0 3pt;"&gt;&lt;A class="vt-p" name="1863795"&gt;Use the General tab to configure a name and description for the PBF policy. A tag can also be configured to allow you to sort or filter policies when a large number of policies exist&lt;/A&gt;&lt;SPAN style="font-family: 'Times New Roman'; font-size: 12pt;"&gt;.&lt;/SPAN&gt;&lt;/P&gt;&lt;TABLE cellspacing="0" class="TW_TableWide" style="margin: 10pt 0 12pt; padding: 5pt 6pt 3pt; color: #000000; font-family: Times; font-size: medium;" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862780"&gt;Field&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862782"&gt;Description&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862784"&gt;Name&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862786"&gt;Enter a name to identify the rule (up to &lt;/A&gt;&lt;SPAN class="Bold"&gt;31&lt;/SPAN&gt; characters). The name is case-sensitive and must be unique. Use only letters, numbers, spaces, hyphens, and underscores. Only the name is required.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862788"&gt;Description&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862790"&gt;Enter a description for the policy (up to 255 characters).&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862792"&gt;Tag&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862794"&gt;If you need to tag the policy, click &lt;/A&gt;&lt;SPAN style="font-weight: bold;"&gt;Add&lt;/SPAN&gt; to specify the tag.&lt;/P&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1862795"&gt;A policy tag is a keyword or phrase that allows you to sort or filter policies. This is useful when you have defined many policies and want to view those that are tagged with a particular keyword. For example, you may want to tag certain security policies with Inbound to DMZ, decryption policies with the words Decrypt and No-decrypt, or use the name of a specific data center for policies associated with that location.&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="H3_Head3" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 14pt; font-weight: bold; margin: 17pt 0 7pt;"&gt;&lt;A class="vt-p" name="1862799"&gt;Source Tab&lt;/A&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Times New Roman'; font-size: 12pt; margin: 0 0 3pt;"&gt;&lt;SPAN style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt;Use the &lt;/SPAN&gt;&lt;SPAN style="font-family: 'Microsoft Sans Serif'; font-size: 10pt; font-weight: bold;"&gt;Source&lt;/SPAN&gt;&lt;SPAN style="font-family: 'Microsoft Sans Serif'; font-size: 10pt;"&gt; tab to define the source zone or source address that defines the incoming source traffic to which the forwarding policy will be applied&lt;/SPAN&gt;&lt;/P&gt;&lt;TABLE cellspacing="0" class="TW_TableWide" style="margin: 10pt 0 12pt; padding: 5pt 6pt 3pt; color: #000000; font-family: Times; font-size: medium;" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857068"&gt;Field&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857070"&gt;Description&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857334"&gt;Source Zone&lt;BR /&gt;&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857336"&gt;To choose source zones (default is any), click &lt;/A&gt;&lt;SPAN style="font-weight: bold;"&gt;Add&lt;/SPAN&gt; and select from the drop-down list. To define new zones, refer to &lt;A class="vt-p" style="color: #9999cc;" title="Network Settings"&gt;“Defining Security Zones”&lt;/A&gt;.&lt;/P&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857340"&gt;Multiple zones can be used to simplify management. For example, if you have three different internal zones (Marketing, Sales, and Public Relations) that are all directed to the untrusted destination zone, you can create one rule that covers all cases.&lt;/A&gt;&lt;/P&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;SPAN style="font-weight: bold;"&gt;Note:&lt;/SPAN&gt; Only Layer 3 type zones are supported for policy-based forwarding.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857343"&gt;Source Address&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857345"&gt;Click &lt;/A&gt;&lt;SPAN style="font-weight: bold;"&gt;Add&lt;/SPAN&gt; to add source addresses, address groups, or regions (default is any). Select from the drop-down list, or click the &lt;SPAN style="font-weight: bold;"&gt;Address&lt;/SPAN&gt;, &lt;SPAN style="font-weight: bold;"&gt;Address Group&lt;/SPAN&gt;, or &lt;SPAN style="font-weight: bold;"&gt;Regions&lt;/SPAN&gt; link at the bottom of the drop-down list, and specify the settings.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857347"&gt;Source User&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1940137"&gt;Click &lt;/A&gt;&lt;SPAN style="font-weight: bold;"&gt;Add&lt;/SPAN&gt; to choose the source users or groups of users subject to the policy. The following source user types are supported:&lt;/P&gt;&lt;P class="TB1_TableBullet_outer" style="margin: 0 0 3pt;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;•&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;&lt;SPAN style="font-weight: bold;"&gt;any&lt;/SPAN&gt;—Include any traffic regardless of user data.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="TB1_TableBullet_outer" style="margin: 0 0 3pt;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;•&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;&lt;SPAN style="font-weight: bold;"&gt;pre-logon&lt;/SPAN&gt;—Include remote users that are connected to the network using GlobalProtect, but are not logged into their system. When the Pre-logon option is configured on the Portal for GlobalProtect clients, any user who is not currently logged into their machine will be identified with the username pre-logon. You can then create policies for pre-logon users and although the user is not logged in directly, their machines are authenticated on the domain as if they were fully logged in.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="TB1_TableBullet_outer" style="margin: 0 0 3pt;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;•&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;&lt;SPAN style="font-weight: bold;"&gt;known-user&lt;/SPAN&gt;—Includes all authenticated users, which means any IP with user data mapped. This option is equivalent to the “domain users” group on a domain.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="TB1_TableBullet_outer" style="margin: 0 0 3pt;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;•&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;&lt;SPAN style="font-weight: bold;"&gt;unknown&lt;/SPAN&gt;—Includes all unauthenticated users, which means IP addresses that are not mapped to a user. For example, you could use unknown for guest level access to something because they will have an IP on your network, but will not be authenticated to the domain and will not have IP to user mapping information on the firewall.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="TB1_TableBullet_outer" style="margin: 0 0 3pt;"&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="0" cellspacing="0" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;DIV class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;•&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;TD width="100%"&gt;&lt;P class="TB1_TableBullet_inner" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt;"&gt;&lt;SPAN style="font-weight: bold;"&gt;Select&lt;/SPAN&gt;—Includes selected users as determined by the selection in this window. For example, you may want to add one user, a list of individuals, some groups, or manually add users.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="NT_NoteTable" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; font-style: italic; margin: 0 0 7pt; text-indent: 0pt;"&gt;&lt;SPAN class="Bold" style="font-weight: bold;"&gt;Note: &lt;/SPAN&gt;&lt;A class="vt-p" name="1940143"&gt;If you are using a RADIUS server and not the User-ID Agent, the list of users is not displayed, and you must enter user information manually.&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P class="FA_FigureAnchor" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 2pt; font-weight: bold;"&gt;&lt;A class="vt-p" name="1857001"&gt; &lt;/A&gt;&lt;/P&gt;&lt;P class="H3_Head3" style="color: #000000; font-family: 'Microsoft Sans Serif'; font-size: 14pt; font-weight: bold; margin: 17pt 0 7pt;"&gt;&lt;A class="vt-p" name="1857212"&gt;Destination/Application/Service Tab&lt;/A&gt;&lt;/P&gt;&lt;P class="T_Text" style="color: #000000; font-family: 'Times New Roman'; font-size: 12pt; margin: 0 0 3pt;"&gt;&lt;SPAN style="font-size: 12pt;"&gt;Use the &lt;/SPAN&gt;&lt;SPAN style="font-weight: bold;"&gt;Destination/Application/Service&lt;/SPAN&gt; tab to define the destination settings that will applied to traffic that matches the forwarding rule.&lt;/P&gt;&lt;TABLE cellspacing="0" class="TW_TableWide" style="margin: 10pt 0 12pt; padding: 5pt 6pt 3pt; color: #000000; font-family: Times; font-size: medium;" summary=""&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857215"&gt;Field&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 2pt; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TH_TableHeading" style="font-family: 'Microsoft Sans Serif'; font-size: 11pt; font-weight: bold; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1857217"&gt;Description&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1858250"&gt;Destination Address&lt;/A&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD style="border-bottom-color: #000000; border-bottom-style: solid; border-bottom-width: 1px; border-top-color: #000000; border-top-style: solid; border-top-width: 1px; padding: 5pt 6pt 3pt;"&gt;&lt;P class="TB_TableBody" style="font-family: 'Microsoft Sans Serif'; font-size: 9pt; margin: 0 0 3pt; text-indent: 0pt;"&gt;&lt;A class="vt-p" name="1858252"&gt;Click &lt;/A&gt;&lt;SPAN style="font-weight: bold;"&gt;Add&lt;/SPAN&gt; to add destination addresses, address groups, or regions (default is any). Select from the drop-down list, or click the &lt;SPAN style="font-weight: bold;"&gt;Address&lt;/SPAN&gt;,&lt;SPAN style="font-weight: bold;"&gt;Address Group&lt;/SPAN&gt;, &lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;&lt;EM&gt;or &lt;/EM&gt;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;SPAN style="text-decoration: underline; font-weight: bold;"&gt;&lt;STRONG&gt;&lt;EM&gt;Regions&lt;/EM&gt;&lt;/STRONG&gt;&lt;/SPAN&gt; link at the bottom of the drop-down list, and specify the settings.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 15 Nov 2014 00:03:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46358#M34082</guid>
      <dc:creator>bspilde</dc:creator>
      <dc:date>2014-11-15T00:03:17Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Based Forwarding PBF based on destination country or self defined region?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46359#M34083</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bspilde,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Its correct, regions are not supported in PBF rules. Kindly follow FR ID: 1497.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can see "Region" as source or destination in configuration guide. But it would be just a typo or error. Kindly ignore it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Hardik Shah&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 15 Nov 2014 00:19:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/46359#M34083</guid>
      <dc:creator>hshah</dc:creator>
      <dc:date>2014-11-15T00:19:54Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Based Forwarding PBF based on destination country or self defined region?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/306639#M79650</link>
      <description>&lt;P&gt;A better question would be, why CAN'T PBF be formed around destination region.&amp;nbsp; It would be useful to be able to route some internet destinations one way, and others another way.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It seems to me it would be minimally difficult for the Palo Team to permit this, since they already have RBLs full of regional addressing by country anyway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 11:50:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/policy-based-forwarding-pbf-based-on-destination-country-or-self/m-p/306639#M79650</guid>
      <dc:creator>NathanHughes</dc:creator>
      <dc:date>2020-01-14T11:50:52Z</dc:date>
    </item>
  </channel>
</rss>

