The PAN only know of certain filetypes. That said here are a few things to think about:
Sorry its not a direct answer. Perhaps others may have other insights.
The firewall isn't the answer to all problems; it's relatively seamless to block the execution of file types on macOS, Linux, and Windows on managed endpoints. That's really the "answer" here instead of attempting to do it at the network level. Because the firewall file-blocking is type based and needs specific decoders, the capabilities there are limited.
You could potentially try looking at custom threat signatures to see if they could potentially be used to rig something up, but last I looked this wasn't really a clear cut solution and wasn't accurately blocking files completely.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!