<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic wildcard fqdn for destination in security policy, custom URL category in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215071#M62441</link>
    <description>&lt;P&gt;Hello folks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to use a wildcard for a FQDN, e.g.&amp;nbsp; &amp;nbsp; *.paloaltonetworks.com&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to use this as an object with a FQDN for the destination.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I read in the following article I need to create a custom URL category, and use that in the "service/URL category" as part of the security policy. I was hoping to use this as a destination IP address but it looks like you cant do that, as you need to specify the FQDN as a URL catergory. My question is, what do I use for the destination IP address in the securty policy??? I am guessing it would be any IP adresses, and the limiting factor will be the URL category.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-FQDN-Policy/ta-p/65110" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-FQDN-Policy/ta-p/65110&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help appreciated.... we live in a complicated world!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;D&lt;/P&gt;</description>
    <pubDate>Tue, 22 May 2018 19:47:14 GMT</pubDate>
    <dc:creator>Jedi_D</dc:creator>
    <dc:date>2018-05-22T19:47:14Z</dc:date>
    <item>
      <title>wildcard fqdn for destination in security policy, custom URL category</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215071#M62441</link>
      <description>&lt;P&gt;Hello folks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to use a wildcard for a FQDN, e.g.&amp;nbsp; &amp;nbsp; *.paloaltonetworks.com&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to use this as an object with a FQDN for the destination.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I read in the following article I need to create a custom URL category, and use that in the "service/URL category" as part of the security policy. I was hoping to use this as a destination IP address but it looks like you cant do that, as you need to specify the FQDN as a URL catergory. My question is, what do I use for the destination IP address in the securty policy??? I am guessing it would be any IP adresses, and the limiting factor will be the URL category.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-FQDN-Policy/ta-p/65110" target="_blank"&gt;https://live.paloaltonetworks.com/t5/Featured-Articles/DotW-FQDN-Policy/ta-p/65110&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help appreciated.... we live in a complicated world!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;D&lt;/P&gt;</description>
      <pubDate>Tue, 22 May 2018 19:47:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215071#M62441</guid>
      <dc:creator>Jedi_D</dc:creator>
      <dc:date>2018-05-22T19:47:14Z</dc:date>
    </item>
    <item>
      <title>Re: wildcard fqdn for destination in security policy, custom URL category</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215092#M62449</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/52883"&gt;@Jedi_D&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;You would either use the Destination address ANY, or you would utilize the wider IP Range/Cidr that you expect this service to be using. Sometimes you can setup the destination IP as a range, sometimes you'll only be able to use any. Depends on the service you actually wish to utilize.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 May 2018 20:13:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215092#M62449</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-05-22T20:13:19Z</dc:date>
    </item>
    <item>
      <title>Re: wildcard fqdn for destination in security policy, custom URL category</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215142#M62458</link>
      <description>&lt;P&gt;I just use ANY as the FQDN lookup of the URL is the limiting factor.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you wanted to prevent specific URLS on the domain then you would need a blocking blacklist rule with the specific URLS before the whitlisitng rule.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rob&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 May 2018 07:59:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215142#M62458</guid>
      <dc:creator>RobinClayton</dc:creator>
      <dc:date>2018-05-23T07:59:39Z</dc:date>
    </item>
    <item>
      <title>Re: wildcard fqdn for destination in security policy, custom URL category</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215144#M62459</link>
      <description>&lt;P&gt;thank you people, I appreciate all the answers. But I can only accept one solution.... thank to you all.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 May 2018 08:24:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/wildcard-fqdn-for-destination-in-security-policy-custom-url/m-p/215144#M62459</guid>
      <dc:creator>Jedi_D</dc:creator>
      <dc:date>2018-05-23T08:24:35Z</dc:date>
    </item>
  </channel>
</rss>

