- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
04-27-2020 07:11 PM
You shouldn't be looking at building out a port list, you should be looking at see what applications are being identified. Identify the applications that you are seeing come across the firewall and whether or not they should be allowed, and build out exceptions for any application that isn't being properly identified.
A couple notes:
- It's easiest if you simply build out two application-groups for sanctioned and unsanctioned applications.
- Your setup doesn't sound like they've done anything outside of just installing this box. Look at following the published best-practices and actually using your NGFW to its capabilities.