Hi Team,
Need your suggestion on below. We have created a policy to allow access to a site with URL filtering.
Created new category to the specific set of URL and then allowed the same in URL Filtering Profile and called the same in ACL. Source is set to LAN Range, Destination is set to Any, Application is set to Any, Service is set to Any, URL Category is set to the specific category, Action Allow.
So while users try to access the URL i can see Insufficient data(App) is hitting the correct rule though, and then Unknown-TCP(App) hitting the interzone-default rule and getting dropped.
As per my understanding the packets should hit the rule i created as i have allowed Any application but it is being denied by default rule. I run the packet capture i can see some of the packets are getting Reset.Not understanding what could be the reason. I went through the below KB
https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClibCAC#:~:text=Unknown%2Dtcp%20means%20the%20firewall,firewall%20does%20not%20have%20signatures.
Though it is relavent not giving enough info to solve this issue. Please suggest how i can proceed further.
... View more