Thanks a lot for the answer.
I assume you're referring to the filter under "custom group", is that correct? If so, wouldn't that bundle all users inside all the AD groups that start with cn=app-palo-* into one single group? I want to still keep the AD groups as single entities, but I don't want to update the firewall local config or the panorama network/device template every time i create an AD group.
Feature Requests need to be submitted through your SE. Once they have submitted or added your vote to an existing feature request, please let us know what the FR number is so that it can be added to this list.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!
The Live Community thanks you for your participation!