Thinking of policy PAN-style (instead of Cisco-style)

Reply
Highlighted
L0 Member

Re: Thinking of policy PAN-style (instead of Cisco-style)

Grant,

Do you know if jblum ever shared the base template he talks about?  I sent him a message but didn't get a response yet.

Bill

L3 Networker

Re: Thinking of policy PAN-style (instead of Cisco-style)

Very nice. You could also add "encrypted tunnels" to your block application filter. Another nice application filter is to create an app filter that only contains browser based applications. Restricts general user internet access only to browser based applications and not any of the client server or network protocol applications.

browser based applications.PNG

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!