Block all internet-facing queries for a specific application in host level firewall for a specific host.

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Block all internet-facing queries for a specific application in host level firewall for a specific host.

L2 Linker

Hi family, 

I want to block internet-facing queries for a specific application ( 3Ds max.exe). But there is an option on host firewall for all endpoints. How can configured host firewall rules groups for specific on that endpoint not for all.

Thanks, and regards.

1 REPLY 1

L5 Sessionator

Hi @Prashanta, thanks for reaching us using the Live Community.

 

The Firewall profiles are managed like the other Endpoint profiles. You create the profile under Endpoints - Policy Management - Extensions - Profiles with the required firewall rules, then this is applied to the endpoints that you select in the target section using any of the usual filters available.

 

Select the created profile on a Policy Rule:

 

jmazzeo_0-1710446629616.png

Select the target using the filters on the top:

jmazzeo_1-1710446699366.png

 

In this way, the firewalls rules configured in your profile will apply only to the targeted endpoints.

This is the official doc about using Host Firewall for Windows: https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-Prevent-Administrator-Guide/Host-Fi...

 

If this post aswers your question, please mark it as the solution.

JM
  • 556 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!