This website uses cookies essential to its operation, for analytics, and for personalized content. By continuing to browse this site, you acknowledge the use of cookies. For details on cookie usage on our site, read our Privacy Policy
Can anyone point to a diagram of a Finite State Machine for HA failover scenarios? It would be good to have for consultation and understanding of the different behaviors.
... View more
In the Checkpoint firewall, you'll create a port-based rule that permits outbound TCP/80, TCP/443 traffic. Then, you'll leave the firewall policy and go to the AppBlade and create a 2nd policy that deals with applications. It's quite the pain.
... View more
I'm an eval custom as well, so I don't have an extremely detailed answer. The way that Palo Alto works is that they inspect the packets and determine that they belong to Facebook, which then gets allowed in. Other firewalls will require you to open up port 80/443, which means you either need to limit that rule to all of Facebook's IPs, or allow those ports in general.
... View more