I'm wondering if it is possible to define an 'application' based on an SMB URI path?
Example - I have two shares on a SMB SAN server \\san\public and \\san\secret; is it possible to apply a firewall rule to a Palo device that sits between this server and clients such that access to the shares can be restricted based the destination path, not just the server identity/IP?
The intent is that this would supplement the core ACL functionality on the datastore, serving as a failsafe way of restricting access to network storage in the event that inappropriate ACL rights are granted in error.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!