<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Best Practice - Blocking Applications at Certain times. in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234799#M67315</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;While I have not seen an article on this yet. I am in favor of the whitelist approach method. In your example it would be option 2. This way its still DENY ALL and allow by exception.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps!&lt;/P&gt;</description>
    <pubDate>Wed, 10 Oct 2018 15:07:17 GMT</pubDate>
    <dc:creator>OtakarKlier</dc:creator>
    <dc:date>2018-10-10T15:07:17Z</dc:date>
    <item>
      <title>Best Practice - Blocking Applications at Certain times.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234772#M67298</link>
      <description>&lt;P&gt;Greetings&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to find a Best Practice for blocking applications at certain times for a certain group of users.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As i see it&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I create a policy for these users allowing them access to a few applications. now if i wanted to allow them acces to Instagram or Netlix as an example.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I could&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) add Netflix in tho the allowed group, then&lt;/P&gt;&lt;P&gt;A) Create a block Policy on a schedual AFTER the allow Policy.&lt;/P&gt;&lt;P&gt;B) Create a block Policy on a schedual BEFORE the allow Policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) Create a an ALLOW Policy for Netflix on a schedual.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But i dont really know which option works Best.&lt;/P&gt;&lt;P&gt;Can someone provide some insight&amp;nbsp;or point me to a Knowledge base that might explain the best way to do this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Wed, 10 Oct 2018 13:48:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234772#M67298</guid>
      <dc:creator>Wykeham</dc:creator>
      <dc:date>2018-10-10T13:48:25Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice - Blocking Applications at Certain times.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234799#M67315</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;While I have not seen an article on this yet. I am in favor of the whitelist approach method. In your example it would be option 2. This way its still DENY ALL and allow by exception.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps!&lt;/P&gt;</description>
      <pubDate>Wed, 10 Oct 2018 15:07:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234799#M67315</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2018-10-10T15:07:17Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice - Blocking Applications at Certain times.</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234846#M67329</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/98887"&gt;@Wykeham&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;This is one of those 'depends on environment/people' type of things. I would personally go with option 2, knowing that if it didn't match the allow policy it would hit the interzone-default policy. However, I'm also envolved in enviroments where the other administrators can't seem to visulize how the traffic is supposed to process unless I did something like option 1. Either one obviously works perfectly fine.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Oct 2018 19:08:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/best-practice-blocking-applications-at-certain-times/m-p/234846#M67329</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-10-10T19:08:42Z</dc:date>
    </item>
  </channel>
</rss>

